Cisco Systems 4.2 Server User Manual


 
2-8
Configuration Guide for Cisco Secure ACS 4.2
OL-14390-02
Chapter 2 Deploy the Access Control Servers
Determining the Deployment Architecture
Figure 2-6 shows a regional WLAN.
Figure 2-6 ACS in a Regional WLAN
Large Enterprise WLAN Setting
In a very large geographically dispersed network (over 50,000 users), access servers might be located in
different parts of a city, in different cities, or on different continents. If network latency is not an issue,
a central ACS might work; but, connection reliability over long distances might cause problems. In this
case, local ACSs may be preferable to a central ACS.
If the need for a globally coherent user database is most important, database replication or
synchronization from a central ACS may be necessary. For information on database replication
considerations, see
Database Replication Considerations, page 2-13 and Database Synchronization
Considerations, page 2-14. Authentication by using external databases, such as a Windows user database
or the Lightweight Directory Access Protocol (LDAP), can further complicate the deployment of
distributed, localized ACSs.
158314
A
A
A
Cisco Aironet
Cisco Secure ACS
Internet
Small
Remote
Office
Small
Remote
Office
A
Regional
Office
Corporate Headquarters
Corporate Region