How to manage EAPs at different places across Internet using Omada Controller (via NAT Port Forwarding and DHCP Option 138) (New UI)

EAP225-Wall , EAP225-Outdoor , EAP245 , EAP320 , EAP110 , EAP220 , EAP330 , EAP120 , EAP230-Wall , EAP235-Wall , EAP115 , EAP225 , EAP110-Outdoor , EAP115-Wall
Recent updates may have expanded access to feature(s) discussed in this FAQ. Visit your product's support page, select the correct hardware version for your device, and check either the Datasheet or the firmware section for the latest improvements added to your product. Please note that product availability varies by region, and certain models may not be available in your region.
Note: If the management pages of your switch and router are different from this FAQ, refer to How to manage EAPs at different places across Internet using Omada Controller (via NAT Port Forwarding and DHCP Option 138)? (Old UI).
When EAPs are located in different areas, how to manage them together?
Take the following topology as an example. A company wants to manage EAP1 and EAP2 using the controller host with a static IP address 192.168.1.253. Although the network of HQ and Branch Office are connected through internet, the controller host cannot discover the EAP in Branch Office by itself because they are in different LANs.
Figure 1 Network Topology
Demonstrated with T2600G-28TS as the switch and TL-ER6120 as the router, this article introduces how to help the controller discover the EAPs in different places via NAT Port Forwarding and DHCP Option 138.
Note: To achieve the same effect, you can also use the following alternatives:
· Via NAT Port Forwarding and EAP Discover Utility
· Via VPN Tunnel and EAP Discover Utility
· Via VPN Tunnel and DHCP Option138
Follow the steps below to configure the switch and routers.
Step 1. Add an NAT Port Forwarding rule on the Router (TL-ER6120) in HQ
Go to Transmission > NAT > Virtual Servers and add a Virtual Server entry. Specify port 29810–29813 as service ports and specify the controller host as Internal Server.
Figure 2 Configuring NAT Port Forwarding
Step 2. Disable DHCP Server on the Router (TL-ER6120) in Branch Office
Go to Network > LAN > DHCP Server and disable DHCP Server.
Figure 3 Configuring DHCP Server
Step 3. Configurations on the Switch (T2600G-28TS) in Branch Office
On the switch, change its default IP address to avoid IP conflict with the gateway router. Enable DHCP Server and add DHCP Server pools to configure IP addresses and other network parameters that EAPs obtain from the switch.
1. Go to L3 FEATURES > Interface. In Interface Config, click Edit IPv4 to load the following page. Change the IP address and click Apply.
Figure 4 Configuring Interface
2. Go to L3 FEATURES > DHCP Service > DHCP Server > DHCP Server. Enable DHCP Server and specify the WAN IP address of the router in HQ as Option 138. In this example, it is 172.30.30.138. Click Apply.
Figure 5 Configuring DHCP Server
3. Go to L3 FEATURES > DHCP Service > DHCP Server > Pool Settings and click Add to create an IP address pool for Branch Office. Fill in the required field, Default Gateway, and DNS Server. Click Create.
Figure 6 Configuring DHCP Server Pool for Branch Office
Step 4. Adopt the EAP to the Controller
Launch Omada Controller and go to Access Points. The EAP which has been configured by EAP Discovery Utility just now will appear in the Pending list. Click Adopt and wait for the adoption. Then you can manage the EAP centrally.
Figure 7 Adopting the EAP to the Controller Host in HQ
Note:
1. After the controller successfully adopts the EAP, you can remove the computer running EAP Discovery Utility from the network.
2. If the controller still cannot discover the EAP, refer to What should I do when the controller fails to discover the EAP? to find the problem and solve it.
這篇faq是否有用?
您的反饋將幫助我們改善網站
What’s your concern with this article?
- Dissatisfied with product
- Too Complicated
- Confusing Title
- Does not apply to me
- Too Vague
- 其他
謝謝
感謝您的反饋。
點擊此處與TP-Link技術支持聯繫。
基本 Cookies
These cookies are necessary for the website to function and cannot be deactivated in your systems.
TP-Link
SESSION, JSESSIONID, accepted_local_switcher, tp_privacy_base, tp_privacy_marketing, tp_smb-select-product_scence, tp_smb-select-product_scenceSimple, tp_smb-select-product_userChoice, tp_smb-select-product_userChoiceSimple, tp_smb-select-product_userInfo, tp_smb-select-product_userInfoSimple, tp_top-banner, tp_popup-bottom, tp_popup-center, tp_popup-right-middle, tp_popup-right-bottom, tp_productCategoryType
Youtube
id, VISITOR_INFO1_LIVE, LOGIN_INFO, SIDCC, SAPISID, APISID, SSID, SID, YSC, __Secure-1PSID, __Secure-1PAPISID, __Secure-1PSIDCC, __Secure-3PSID, __Secure-3PAPISID, __Secure-3PSIDCC, 1P_JAR, AEC, NID, OTZ
Zendesk
OptanonConsent, __cf_bm, __cfruid, _cfuvid, _help_center_session, _pendo___sg__.<container-id>, _pendo_meta.<container-id>, _pendo_visitorId.<container-id>, _zendesk_authenticated, _zendesk_cookie, _zendesk_session, _zendesk_shared_session, ajs_anonymous_id, cf_clearance
分析和行銷 Cookies
Analysis cookies enable us to analyze your activities on our website in order to improve and adapt the functionality of our website.
The marketing cookies can be set through our website by our advertising partners in order to create a profile of your interests and to show you relevant advertisements on other websites.
Google Analytics & Google Tag Manager
_gid, _ga_<container-id>, _ga, _gat_gtag_<container-id>
Google Ads & DoubleClick
test_cookie, _gcl_au