cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
851
Views
5
Helpful
6
Replies

Best Config for Voice WLAN on WLC 4400 with 7920phones

elkono200
Level 1
Level 1

hi,

i need some help. whats the best known configuration for a voice wlan with 7920 IP Phones?

my config is following:

Radio Policy: 802.11b/g only

Admin Status Enabled

Session Timeout (secs): 0

Quality of Service (QoS): Platinum (voice)

WMM Policy: Disabled

7920 Phone Support:

- no Client CAC Limit

- no AP CAC Limit

Broadcast SSID: disabled

Aironet IE: Enabled

Allow AAA Override: Enabled

Client Exclusion: Enabled **

- Timeout Value (secs): 60

DHCP Server: Override disabled

DHCP Addr. Assignment: Required

MFP Version Required: 1

MFP Signature Generation: enabled

H-REAP Local Switching: disabled

Layer2 Security: WPA-TKIP PSK

is that ok?

thx for your help...

1 Accepted Solution

Accepted Solutions

migilles
Cisco Employee
Cisco Employee

If planning to enable TKIP with the 7920, recommend to reduce the TKIP countermeasure holdoff time to 0, which can be done via the controller CLI "config wlan security tkip hold-down ".

7920 doesn't support MFP, but is only supported currently with AES, which also 7920 doesn't support.

Would recommend using 4.1.185.0 on the WLC and 3.02 on the 7920.

View solution in original post

6 Replies 6

migilles
Cisco Employee
Cisco Employee

If planning to enable TKIP with the 7920, recommend to reduce the TKIP countermeasure holdoff time to 0, which can be done via the controller CLI "config wlan security tkip hold-down ".

7920 doesn't support MFP, but is only supported currently with AES, which also 7920 doesn't support.

Would recommend using 4.1.185.0 on the WLC and 3.02 on the 7920.

Oh by the way. Do NOT enable DHCP required. This can cause big issues.

If the client session is terminated, then the client must re-DHCP in order for the WLC to start forwarding traffic again. If 7920 is on call, it will not re-DHCP until the call is ended. If in idle, will have to exhaust the 90 second CallManager keepalive timoeut. So highly recommended to disable this for the voice vlan.

hi migilles,

my wlc version doesnt support this command "config wlan security tkip hold-down "

seems that is a newer cmd.

thx

Think maybe it was implemented in 4.1 code.

Would recommend 4.1.185.0.

hi migilles,

i disabled DHCP required and MFP.

now its working fine.

thx for your help

Glad to hear. Disabling DHCP required is documented in the 7921G Deployment Guide on page 22.

http://www.cisco.com/univercd/cc/td/doc/product/voice/c_ipphon/english/wip7921/7921dply.pdf

Review Cisco Networking products for a $25 gift card