Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 1
IEEE 802.11 Radio Summary
Properties
Frequency 5.155.35,
2.4022.483
Range (GHz) 5.475.725*
Limited
Status Obsolete Worldwide Available Worldwide
Availability
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 2
IEEE 802.11b
Direct Sequence @ 2.4 GHz
Channels
1 2 3 4 5 6 7 8 9 10 11 12 13 14
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 4
Centralized Wireless LAN Architecture
What is CAPWAP ?
Data Plane
Access Point CAPWAP Controller
WiFi Client
Control Plane
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 5
What is DTLS ?
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 6
CAPWAP AP Discover / Join Process
Discovery Response
Join Request
Join Response
Configuration Request
Configuration Response
RUN State
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 7
CAPWAP State Machine
AP Boots UP
Reset
Discovery
Image Data
DTLS
Setup
Run
Join Config
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 8
Where to Place a Controller ?
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 9
Single Building Distribution/Core
WLC in distribution/core
Most of the time : L2 Roaming
CAPWAP
L2
WLC
WLC Si Si
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 10
Campus Centralized WLC
Overview
Centralized WLC
Concept of Wireless
Building Block
No Wireless VLANs Si Si Si Si
Building 1
everywhere L3 L3
Building 2
Si
Recommended design Si
Si Si
Data Center
L2
WLC WLC
Distributed WLC or
WiSM
Each building as its
own WLC
WLC WLC
Each building can have Si Si Si Si
Si Si
Several distributed Si
Core
Wireless VLANs Si
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 12
Campus Distributed WLC
Scalability & Failover
Using a Central
Backup WLC
Need for L3 roaming
and same Mobility
group across the WLC WLC
WLC
Campus Si Si Si Si
L3 L3
L3
Si Si
Seems to be like a Si
Core
Wireless Building Si
Block
Si
Data Center
Backup WLC
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 13
Campus Distributed WLC
Pros / Cons
Pros
No need for a wireless building block (cost ?)
No LWAPP traffic in core network in normal operation
Cons
If radio continuity between buildings, all WLC need to be in a
single mobility group
L3 roaming inside the building (less performance versus L2
roaming)
Control features (ACL, FW, NAC, ) need to be distributed in
each building
More complex Failover strategies, more complex to troubleshoot
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 14
Understanding H-REAP
Central Site
Centralized
Hybrid Architecture Traffic
Centralized
Traffic
Single Management & Control
point
Centralized Traffic (Split MAC)
Or
Local Traffic (Local MAC) WAN
Remote
Office
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 15
Deploying with RRM in Mind
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 16
RRMRadio Resource Management
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 17
How Does RRM Do This?
DCADynamic Channel Assignment
Each AP radio gets a transmit
channel assigned to it
Changes in air quality are monitored, AP
channel assignment changed when deemed
appropriate (based on DCA cost function)
TPCTransmit Power Control
Tx Power assignment based on
radio to radio pathloss
TPC is in charge of reducing Tx on some APs
but may also increase Tx by defaulting back to
power level higher than the current Tx level
CHDMCoverage Hole Detection and
Mitigation
Detecting clients in coverage holes
Deciding on Tx adjustment (typically Tx increase)
on certain APs based on (in)adequacy of
estimated downlink client coverage
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 18
RRMDCA
Dynamic Channel Assignment
New Access Point Causes System Optimizes Channel
Co-Channel Interference Assignments to Decrease Interference
RF Channel 1
RF Channel 6
RF Channel 11
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 19
DCA in a Nutshell
Who calculates DCA
It runs on the RF Group
Leader WLC
Decisions on channel assignment
change made on a per AP, per
radio basis
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 20
RRM-Transmit Power Control
Power Not OptimizedRF Signal Decreased Power Limits Interference
BleedsCauses Interference and Improves Application Performance
RF Channel 1
RF Channel 6
RF Channel 11
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 21
TPC in a Nutshell
Who calculates TPC
It runs on the RF Group Leader WLC
Decisions on TX power assignment change made on a per AP, per
radio basis
TPC viewed as a two-stage process
Determining the ideal Tx for a radio given neighboring AP info
Deciding if making the change from Tx_current to Tx_ideal is actually
worth ones while
Determining Tx_ideal for a radio
Tx_ideal = Tx_max + (TPC_Threshold RSSI_3rd)
Comparing the tentative improvement vs. the hysteresis
If change from Tx_current to Tx_ideal is small, since Tx changes can be
disruptive, it may be better to leave APs Tx as is
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 22
Radio Resource Management
Coverage Hole Detection and Mitigation
Normal Operation Access Point Failure
Coverage Hole Detected and Filled
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 25
Agenda
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 26
802.11n Advantages
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 27
Technical Elements of 802.11n
Packet Backward
MIMO 40Mhz Channels
Aggregation Compatibility
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 28
MIMO (Multiple Inputs Multiple Outputs)
Radio
D
Radio S
Radio P
Radio
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 30
MIMO Radio Terminology
TxR:S
Transmit Antennas x Receive Antennas : Spatial Streams
T Transmit Antennas
R Receive Antennas
S Spatial Streams (1 = 150Mbps, 2 = 300Mbps)
The 1250 and 1140 are 2x3:2
Two Transmit, Three Receive, Two Spatial Streams
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 31
Maximum Ratio Combining
Packet Backward
MIMO 40Mhz Channels
Aggregation Compatibility
Without MRC
Multiple Signals Sent;
One Signal Chosen
SISO AP
Performance
With MRC
Multiple Signals Sent and Combined
at the Receiver Increasing Fidelity
MIMO AP
Performance
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 32
Maximum Ratio Combining
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 33
Illustration of Three Multipath
Reflections to SISO AP
Radio
Radio Switches
to Best Signal
Signal Each
with Least
Antenna Sees
Multipath Effect
Due to
Multipath Multipath Effect
Reflections of
Original Signal
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 34
Illustration of Three Multipath
Reflections to MIMO AP with MRC
Radio
D
S
Radio P
Radio
stream 1
MIMO AP stream 2
Performance
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 36
SISO Data Transmission
Time Period 1
Data
The Data
quick Radio The Radio
brown The
fox
Time Period 2
Data
quick Data
Radio quick Radio
brown The
fox quick
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 37
MIMO Spatial Multiplexing
Data Transmission
Time Period 1
Data The
TX RX Data
The D
Radio Radio D
S The
quick S P
P
TX quick RX quick
brown Radio Radio
fox
Time Period 2
brown Data
RX
Data TX
D
Radio Radio D
S
The
brown S P quick
P
fox TX fox RX
Radio brown
Radio
fox
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 38
More Efficient Spectrum Utilization
with MIMO Spatial Multiplexing
Stream A
TX Radio
Data D Data
D Radio S
Data
S Data Radio P
P Stream B
TX
Radio Radio
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 39
Technical Elements of 802.11n
Packet Backward
MIMO 40Mhz Channels
Aggregation Compatibility
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 40
40-MHz Channels
Packet Backward
MIMO 40Mhz Channels
Aggregation Compatibility
MIMO (Multiple
40Mhz Input,
Channels
Multiple Output)
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 41
Double Wide Channel
40-MHz Wide Channel Support
20-MHz
Gained Space 40-MHz
20-MHz
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 44
Aspects of 802.11n
Packet Backward
MIMO 40Mhz Channels
Aggregation Compatibility
Packet
40MhzAggregation
Channels
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 45
Packet Aggregation
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 46
Technical Elements of 802.11n
Packet Backward
MIMO 40Mhz Channels
Aggregation Compatibility
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 47
Aspects of 802.11n
Packet Backward
MIMO 40Mhz Channels
Aggregation Compatibility
Backward
Packet Aggregation
Compatibility
2.4GHz 5GHz
11n Operates
in Both
Frequencies
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 48
802.11n HT PHY
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 49
Backward Compatibility & Co-Existence
Co-existence of ABG/N APs
Benefits of 11n accrue to ABG clients
MIMO benefits ABG clients on the AP receive side from MRC
Co-Existence at Controller Level Backwards Compatibility
Roam
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 50
802.11n Data Rates
MCSModulation and Coding Scheme
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 51
MCS Chart
802.11n Data Rate
MCS Modul- Spatial
Index
20 MHz 40 MHz
ation Streams
L-GI S-GI L-GI S-GI
0 BPSK 1 6.5 7.2 13.5 15
1 QPSK 1 13 14.4 27 30
2 QPSK 1 19.5 21.7 40.5 45
3 16-QAM 1 26 28.9 54 60
4 16-QAM 1 39 43.3 81 90
Maximum
5 64-QAM 1 52 57.8 108 120 with 1 spatial
6 64-QAM 1 58.5 65 122 135 stream
7 64-QAM 1 65 72.2 135 150
8 BPSK 2 13 14.4 27 30
9 QPSK 2 26 28.9 54 60
10 QPSK 2 39 43.3 81 90
11 16-QAM 2 52 57.8 108 120
12 16-QAM 2 78 86.7 162 180 Maximum
13 64-QAM 2 104 116 216 240 with 2 spatial
14 64-QAM 2 117 130 243 270
streams
15 64-QAM 2 130 144 270 300
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 52
A Few More 802.11n Features
Used to Increase Performance
Beam forming
Reduced inter-frame spacing
Reduced guard interval
From 800ns to 400ns between
symbols
QAM 64
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 53
Cisco Next-Generation Wireless Portfolio
Cisco Aironet 1140 Series
Carpeted Indoor Environments
Easy to Deploy-Sleek design with integrated
antennas
802.11n performance with efficient 802.3af power
Blends seamlessly into the environment
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 54
11a/g to 11n Access Point Migration
Indoor Environments
Integrated Antennas
Rugged Environments
Antenna Versatility
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 55
Still Three Antennas per Band
1250 1140
2.4GHz 4dBi
5GHz 3dBi
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 56
Planning and Design
for 802.11n
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public
** 57
Phases of an 11n Deployment
Design Considerations
1:1 Replacement Strategy for Capacity
5GHz Strategy
Planning
WCS Planning Tool
Infrastructure Considerations
Deployment
Site Survey
Operation
Configuration (40MHz RRM, Data Rates, Security, etc.)
Tracking and augmenting controller capacity
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 58
1130 Access Point Placement
Web
Email
Several Supported
Apps
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 59
1140 Access Point Placement
1 for 1 replacement
AP1140 reuses existing
AP1130 T-Rail Clip ABG
ERP
ABG
Backup
Video ABG
Voice
Web
Email
1 2 4 6 8 10
6 11 1 3 5 7 9 11
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 61
Capacity Principles
Channel Capacity: Use 5 GHz and 2.4 GHz
5 GHz Frequency
# 40 MHz
2 2 5 2 Channels FCC
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 62
11n Deployment
Site Survey Recommendations
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 63
2.4GHz - Maximum Range
AP1130 2.4GHz AP1140 2.4GHz
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 64
Improved 802.11g Coverage
1130 vs. 114011G Active Survey
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 65
5GHz - Maximum Range
AP1130 5GHz AP1140 5GHz
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 66
Improved 802.11a Coverage
1130 vs. 114011A Active Survey
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 67
802.11n Coverage
2.4GHz 20MHz Channel Size
100Mbps @ 100ft
100Mbps @ 90ft
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 70
Network Capacity and Scalability
300mb System Capacity 300mb
Add Controller
Burst
Plan for system level
Burst
capacity, not per AP
0 Burst 0 capacity
Normal Plan for throughput (60%
of data rate)
Mobility Group Additional controller
11n 11n increases capacity and
WLAN Controller improves availability
11n 11n
300mb 300mb
0 0
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 71
Improving Mixed Mode Performance
Disabling Unnecessary Data Rates
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 73
11n Client Adapters
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 74
11n Client Adapter Recommendations
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 75
Client Shows 11n SSID But Does Not
Connect at 11n Data Rates
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 76
Have 11n Adapter and Still Connecting
at A or G Rates
Is WMM allowed?
WMM must be Enable or Require
If WMM disabled will not support 11n HT rates
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 77
Adaptive Wireless IPS
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 78
The Wireless Threat Landscape
Attacks Across Multiple Vectors
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 79
Wireless Intrusion Prevention
Purpose and Components
AP Monitoring for Threats
Cracking
Threats
Recon
DoS
Rogue AP/Clients Ad Hoc Connections Over-the-Air Attacks
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 80
Whats New in the CUWN Wireless IPS Solution?
New Feature Summary
Man-in-the-Middle
MAC/IP Spoofing Evil Twin AP Fake DHCP server
Fake AP ARP Request Replay Attack Pre-standard APs (a,b,g,n)
Denial of Service
Malformed 802.11 frames EAPOL attacks Microwave interference
FATA-Jack, AirJack Probe-response Bluetooth interference
Fragmentation attacks Resource management Radar interference
Excessive authentication RF Jamming Other non-802.11 interference
De-auth attacks Michael Device error-rate exceeded
Association attacks Queensland Interfering APs
CTS attacks Virtual carrier Co-channel interference
RTS attacks Big NAV VoWLAN-based attacks
Excessive device bandwidth Power-save attacks Excessive roaming
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 82
Adaptive Wireless IPS Solution Overview
Cisco Wireless
Headquarters Office Control System
Centralized
Application and
and
Management
Management
Event
Application
Management Cisco
Adaptive
Analysis and wIPS
Si
Processing
Cisco Mobility
Services Engine
Si
Wireless Access
Monitoring and
Wireless
Control
Network
Monitoring ISR w/WLCM WLAN Controller
and Routing
Monitor Mode
Monitor Mode AP Local Mode AP Local Mode APs Monitor Mode AP AP (HREAP)
Devices
RF Client
RF
Environment
Presentation_ID 2009 Cisco Systems, Inc. All rights reserved. Cisco Public 83
wIPS AP Monitoring Range
Data AP
Range wIPS AP
Monitoring
Range
Environments such
as healthcare,
finance, enterprise
and education.
Deploy 1 AP every
XX,000 sqft
Environments such
as warehouses and
manufacturing.
Deploy 1 AP every
XX,000 sq ft.