AP 1310 with WLC 5508
Hi,
I have upgraded my WLC 5508 from 7.0 to 7.4 and the AP 1310 no longer can associate to WLC.
Seems that the AP doesn't work with WLC ver 7.4
Except changing these APs to autonomous mode, any other alternatives?
Besides, if we change them to autonomous mode, can Prime Infrastructure manage/monitor these APs?
thanks.
The 1310 last support is on v7.0.x of the WLC. See the matrix below.
http://www.cisco.com/en/US/docs/wireless/controller/5500/tech_notes/Wireless_Software_Compatibility_Matrix.html
Prime Infrastructure can monitor the Autonomous access point but will not do anything else than monitor. Config changes is done via the bridge/AP itself.
Sent from Cisco Technical Support iPhone App
Similar Messages
-
An issue with WLC 5508 and 7921 phone
Hello all!
I have a system with WLC 5508 and some 1242 APs. And I use a lot of 7921 phones.
One of 7921 phones was in trouble. It loses registration, disconnect conversations...
I installed the trial WLC and run voice diagnostics.
I saw some of "Potentially degraded QoS in downlink direction because of incorrect packet classification" messages and one "Fair upstream packet loss ratio: 1,2%, which is less than threshold 2.5%"
As I understand all of 7921 phones in these area are affected.
what does it mean? I set up Platinum QoS for voice WLAN. I don't have any qos configuration string for AP and WLC ports on switches...
any ideas?
thanx in advanceSergey:
There is one application called "WLC Config analyzer". You save your "show run-config" from your WLC in a text file and import it by this application. it will analyze the file for you and tell you what recommendations for voice are missing so you improve them.
When importing a config file you choose what voice clinets you are using, so you need to choose cisco 7921 to it tells you what config improvemetns is needed based on 7921 needs.
Here is the link to download the application:
https://supportforums.cisco.com/docs/DOC-1373
download the latest versoin.
BTW, how many voice/data clients are connected to one AP in that area? if I remember correctly if you are utilizing voice then the max number of clients connected to one AP should not exceed 17. If you have more than this number per AP try to minimize the number of users concurrently connected to the AP then try again.
Hope you'll find the config analyzer useful.
If useful please don't forget to rate.
Amjad -
EAP-TLS with WLC 5508, Microsoft NPS and custom EKU OID´s
We are trying to implement EAP-TLS with client certificates that have a custom EKU OID to distinguish the WLAN clients. The Microsoft Press Book
Windows Server 2008 PKI and Certificate Security gives an example on how to configure a policy in NPS that matches specific EKU OID´s. At the moment we have two policies that have an allowed-certificate-oid configured that matches the OID´s in our certificates, but our setup is not working as expected. Authentications will only be successful, if the client authenticates with the certificate that is matched by the first policy rule.
For example:
Policy 1: allowed-certificate-OID --> corporate
Policy 2: allowed-certificate-OID --> private
Client authenticates with EKU corporate --> success
Client authenticates with EKU private --> reject
My expectation was, that if Policy 1 will not match the NPS goes over to Policy 2 and tries to authenticate the client.
Has anyone a simmilar setup or can help to figure out what is going wrong?
We have a WLC 5508 with Software Version 7.4.100.0 and a NPS on a Windows Server 2008 R2
regards
FabianThe policy rejects and the NPS goes to the next policy, only if the user does not belong to the configured group.
This means I need to have one AD group per application policy, but that will not solve my problem. A user could belong to more than one group, depending on how many devices he/she has. It will work with one group only for each user, because the first policy that matches a AD group, the user belongs to, could have a OID that is not in the certificate. This would cause a recejct with reason code 73:
The purposes that are configured in the Application Policies extensions, also called Enhanced Key Usage (EKU) extensions, section of the user or computer certificate are not valid or are missing. The user or computer certificate must be configured with the Client Authentication purpose in Application Policies extensions. The object identifier for Client Authentication is 1.3.6.1.5.5.7.3.2.
The certificate does include this OID but not the custom EKU. -
7925 Phones voice quality issues with wlc 5508 version 7.6
Hi all,
I have a mix environment with 1 WLC 5508 and more or less 6 sites with several Access Points ( all AIR-LAP1242AG and all in FlexConnect mode Hreap ) and several wireless phones (all CP7925G) . My Ap's have antennas 2.4GHz in all sites except 1 site ( the one i'm talking for now) with 2.4GHz and 5GHz , because of the problems we suggest to have all phone in A BAND (5Ghz) . In this site we force the phones just to A (802.11a only) , power safe NONE , Continuous scan mode , i fallow all in http://www.cisco.com/en/US/docs/voice_ip_comm/cuipph/7925g/7_0/english/deployment/guide/7925dply.pdf , one thing i didn’t do it was apply QoS because I can’t apply several ios commands in that 2960 with lan lite ios.
So I have 3 SSID for data and 2 for VOICE ( one is common to all environment and supports 2.4 and 5Ghz , and other just to test one site , with only 5Ghz with “[WPA2][Auth(802.1X + CCKM)][Auth(FT 802.1X)]”, because I read that problem can be phone rooming , and in FlexConnect only have fast-roaming in a CCKM or a PKM key-management solution , but even like this the problem still exist) .
I have another sites with phones in 2.4GHz running well and others with problems.
i read here in forums lots and lots of people with similar problems , i tried several solutions ( WLC upgrades versions and phones firmware's , …. ) tried all my best of solving the problems mas now I’m running without any ideas , i did also some site surveys and detect some interferers that why I change phones to 5Ghz , and I run also WLC Config analyser to help me , but all without good success. Some changes solve temporarily problems , but after some time , people reclaim about problems.
I can open a TAC case but first I want be sure if did all already.
Can someone try to help me?
ip phone 7925G firmware : CP7925G-1.4.5SR1.3
CUCM 8.6.2
WLC 5508 : 7.6.120.0
AP : AIR-LAP1242AG-E-K9 7.6.120.0 (flexconnect)
Best RegardsHi Serge,
Thanks for the suggestions. I have taken care of all the settings. Problem is , the user is seated in his office cabin and using the 7925 and there is around 50db signal strength in his room from an AP which is just outside the cabin. And this doesnt occur often, when we go to check and make calls, everything is fine whereas the user says it happens sometimes in the morning, evening etc... randomly... where the fone goes blank while in a call.... since the problem never happens when we go to troubleshoot the issue, we really dont know what is going on. This is happening when calling PSTN.
AP's are not restarting and there is no logs indicating that. Wireless infrastructure looks very much OK cos there are other users who are not experiencing this problem and there is ample coverage all over the floor. I am baffled why only one user has this problem even when he is seated in his office cabin.
Tried changing phones also, but still remains.
Question : i tried to do a linktest from WLC to his phone, but it failed, while linktest to laptops are working fine. Does wlc linktest not working for wireless phones ?
regards
Joe -
Cisco CAP 3702I not registered with WLC 5508.
I Have WLC 5508 in my network. Now i need to add another 2 no of cisco CAP 3702I in to my network. But we got the following errors
*Mar 1 01:27:06.359: %CAPWAP-3-ERRORLOG: Discovery response from MWAR 'WLC'runn
ing version 7.3.101.0 is rejected.
*Mar 1 01:27:06.359: %CAPWAP-3-ERRORLOG: Failed to decode discovery response.
*Mar 1 01:27:06.359: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process m
essage type 2 state 2.
Translating "CISCO-CAPWAP-CONTROLLER"...domain server (255.255.255.255)
*Mar 1 01:27:25.359: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-CAPWAP-CONTROL
LER
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Discovery response from MWAR 'WLC'runn
ing version 7.3.101.0 is rejected.
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Failed to decode discovery response.
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process m
essage type 2 state 2.
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Failed to handle capwap control messag
e from controller
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Failed to process unencrypted capwap p
acket from 10.56.200.201
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Discovery response from MWAR 'WLC'runn
ing version 7.3.101.0 is rejected.
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Failed to decode discovery response.
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process m
essage type 2 state 2.
*Mar 1 01:27:06.359: %CAPWAP-3-ERRORLOG: Discovery response from MWAR 'WLC'runn
ing version 7.3.101.0 is rejected.
*Mar 1 01:27:06.359: %CAPWAP-3-ERRORLOG: Failed to decode discovery response.
*Mar 1 01:27:06.359: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process m
essage type 2 state 2.
Translating "CISCO-CAPWAP-CONTROLLER"...domain server (255.255.255.255)
*Mar 1 01:27:25.359: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-CAPWAP-CONTROL
LER
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Discovery response from MWAR 'WLC'runn
ing version 7.3.101.0 is rejected.
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Failed to decode discovery response.
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process m
essage type 2 state 2.
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Failed to handle capwap control messag
e from controller
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Failed to process unencrypted capwap p
acket from 10.56.200.201
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Discovery response from MWAR 'WLC'runn
ing version 7.3.101.0 is rejected.
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: Failed to decode discovery response.
*Mar 1 01:27:25.363: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process m
essage type 2 state 2.Your WLC seems to be running version 7.3 which is not supported with 37xx AP platform.
You need to run WLC with version 7.6.100.0 onwards to support these new AP's.
For more details check the Wireless Software Compatibility Matrix.
-Thanks
Vinod
**Encourage Contributors. RATE Them.** -
Client get connected occationally with WLC 5508
Hi ,
I have one strange problem on wireless connection.
I just upgraded several 1131 APs to LAP with 2 new Cisco 5508 controller deployed, and we found the clients sometime can get conneted to the 1131 AP, and connection well, sometimes cannot. during our test, one conecion is ok, next one cannot, the third one seems ok again and again.
And we also have 2 new 1140 APs, seems no such problem,
The version for controller is 6.0.196.0, and Client is Lenevo PC with XP.
Any suggestion? or some troubleshooting procedure I can follow?
Thanks!
RoyThanks!
Seems some problem with open authentication.
On the Client, it reported cannot get associated.
on the WLC, while I am debug client it reports:
*Jul 14 10:18:51.844: 00:1f:3c:c2:e9:71 Sending Assoc Response to station on BSSID c4:7d:4f:47:a5:c0 (status 12)
*Jul 14 10:18:51.889: 00:1f:3c:c2:e9:71 Ignoring 802.11 assoc request from mobile pending deletion
*Jul 14 10:18:51.889: 00:1f:3c:c2:e9:71 Sending Assoc Response to station on BSSID c4:7d:4f:47:a5:c0 (status 12)
*Jul 14 10:18:51.928: 00:1f:3c:c2:e9:71 Ignoring 802.11 assoc request from mobile pending deletion
*Jul 14 10:18:51.928: 00:1f:3c:c2:e9:71 Sending Assoc Response to station on BSSID c4:7d:4f:47:ae:b0 (status 12)
*Jul 14 10:18:52.446: 00:1f:3c:c2:e9:71 apfMsExpireCallback (apf_ms.c:418) Expiring Mobile!
*Jul 14 10:18:52.446: 00:1f:3c:c2:e9:71 apfMsExpireMobileStation (apf_ms.c:4427) Changing state for mobile 00:1f:3c:c2:e9:71 on AP c4:7d:4f:47:ae:b0 from Associated to Disassociated
I am using remote radius with WLC only.
The strange thing is, when get connected, it looks fine, but I tried disconnect manually, then connect again, it reported cannot get associated, then I try again, it can get connect again,.... -
all,
I'm facing a problem to upgrade my WLC 5508 from 6.0.199.4 to 7.0.98.218
On my WLC, I have a bad src error message about the SFP.
With the version 6, I have the "warning" but the port is UP and Running
STP Admin Physical Physical Link Link
Pr Type Stat Mode Mode Status Status Trap POE SFPType
1 Normal Disa Enable Auto Auto Down Enable N/A Not Present
2 Normal Disa Enable Auto Auto Down Enable N/A Not Present
3 Normal Forw Enable Auto 1000 Full Up Enable N/A SFP Error
on version 7.0.98.218, the port never comes UP:
STP Admin Physical Physical Link Link
Pr Type Stat Mode Mode Status Status Trap POE SFPType
1 Normal Disa Enable Auto Auto Down Enable N/A Not Present
2 Normal Disa Enable Auto Auto Down Enable N/A Not Present
3 Normal Disa Enable Auto Auto Down Enable N/A SFP Error
I see a bug about CSCta32912, but normally, it is solved in version 7.
How to solve this issue?
Thanks.
STP Admin Physical Physical Link Link
Pr Type Stat Mode Mode Status Status Trap POE SFPType
1 Normal Disa Enable Auto Auto Down Enable N/A Not Present
2 Normal Disa Enable Auto Auto Down Enable N/A Not Present
3 Normal Forw Enable Auto 1000 Full Up Enable N/A SFP ErrorAre you using a Cisco SFP or a third party one?
Sent from Cisco Technical Support iPad App -
Wireless voice quality issues with wlc 5508 7.0.98
Hi,
I am having random occurances of voice drops (one-way audio) during phone calls. WLC 5508 (7.0.98) , LAP1242AG (only G antenna present), and 7925G phones. coverage is excellent throughout the floor and its a confined office space. Its not happening always. I am seeing these logs , not sure if it is related. :
*apfReceiveTask: Feb 10 11:31:53.831: %RRM-3-RRM_LOGMSG: rrmChanUtils.c:290 RRM LOG: Airewave Director: Could not find valid channel lists for 802.11bg
*apfReceiveTask: Feb 10 11:31:33.356: %RRM-3-RRM_LOGMSG: rrmChanUtils.c:290 RRM LOG: Airewave Director: Could not find valid channel lists for 802.11bg
I have set DCA list to1,6 and 11. I tried disabling RRM and statically fixing the channels and power also. Still the issue is seen,
7925G firmware is 1.4.1
i tried to do linktest from the WLC to the phone, but link test is failed. linktest to a laptop works though. I have only mac filtering for the voice ssid.
any suggestions pls ?
regards
JoeHi Serge,
Thanks for the suggestions. I have taken care of all the settings. Problem is , the user is seated in his office cabin and using the 7925 and there is around 50db signal strength in his room from an AP which is just outside the cabin. And this doesnt occur often, when we go to check and make calls, everything is fine whereas the user says it happens sometimes in the morning, evening etc... randomly... where the fone goes blank while in a call.... since the problem never happens when we go to troubleshoot the issue, we really dont know what is going on. This is happening when calling PSTN.
AP's are not restarting and there is no logs indicating that. Wireless infrastructure looks very much OK cos there are other users who are not experiencing this problem and there is ample coverage all over the floor. I am baffled why only one user has this problem even when he is seated in his office cabin.
Tried changing phones also, but still remains.
Question : i tried to do a linktest from WLC to his phone, but it failed, while linktest to laptops are working fine. Does wlc linktest not working for wireless phones ?
regards
Joe -
Win 2008 R2 radius integration with WLC 5508
Requires help in integrating Win 2008 R2 Radius server with WLC 5508
Step by Step instructions - NPS & Wireless LAN Controller
PEAP Authentication - http://www.cisco.com/c/en/us/support/docs/wireless/5500-series-wireless-controllers/115988-nps-wlc-config-000.html
EAP-TLS
https://kb.meraki.com/knowledge_base/radius-creating-a-policy-in-nps-to-support-eap-tls-authentication
hope that helps, Please let me know if you have any other questions in regards to setting up your NPS server
Please rate that post if it answers your question or helps you to resolve the problem. -
Problem Joining AIR-CAP1602I-C-K9 with WLC 5508
Hi,
I am having trouble to get AIR CAP1602I-C-K9 attached to a 5508 WLC running code 7.4.110.0
Here is what I got from the AP logs:
====================================================================================================
Extracting files...
ap1g2-k9w8-mx.152-2.JB2/ (directory) 0 (bytes)
extracting ap1g2-k9w8-mx.152-2.JB2/K5.bin (75790 bytes)!!!!
*Dec 6 15:09:23.011: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
*Dec 6 15:09:23.535: %CAPWAP-5-DTLSREQSUCC: DTLS connection created sucessfully peer_ip: 172.16.10.100 peer_port: 5246
*Dec 6 15:09:23.535: %CAPWAP-5-SENDJOIN: sending Join Request to 172.16.10.100
*Dec 6 15:09:23.535: %CAPWAP-3-ERRORLOG: Invalid event 10 & state 5 combination.
*Dec 6 15:09:23.535: %CAPWAP-3-ERRORLOG: CAPWAP!
extracting ap1g2-k9w8-mx.152-2.JB2/ap1g2-k9w8-mx.152-2.JB2 (9202946 bytes)!!!!!!!!! SM handler: Failed to process message type 10 state 5.
*Dec 6 15:09:23.535: %CAPWAP-3-ERRORLOG: Failed to handle capwap control message from controller
*Dec 6 15:09:23.535: %CAPWAP-3-ERRORLOG: Failed to process encrypted capwap packet from 172.16.10.100perform archive download capwap:/ap1g2 tar file
*Dec 6 15:09:23.583: %CAPWAP-6-AP_IMG_DWNLD: Required image not found on AP. Downloading image from Controller.
*Dec 6 15:09:23.587: Loading file /ap1g2...
*Dec 6 15:09:24.007: %LINEPROTO-5-UPDOWN:!!!!!!!!!!! Line protocol on Interface Dot11Radio0, changed state to down
*Dec 6 15:09:24.063: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up!!!!!!!!!!!
*Dec 6 15:09:25.139: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up!!!!!!!!!!
*Dec 6 15:09:26.135: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!
Premature end of tar file
ERROR: Problem extracting files from archive.
Download image failed, notify controller!!! From:7.4.1.37 to 7.4.110.0, FailureCode:3
archive download: takes 63 seconds
*Dec 6 15:10:26.851: capwap_image_proc: problem extracting tar file
====================================================================================
after that the AP reboots and do same process over and over again,
Please help..
Many Thanks,
BarthHere is the info about AP and WLC:
(Cisco Controller) >show sysinfo
Manufacturer's Name.............................. Cisco Systems Inc.
Product Name..................................... Cisco Controller
Product Version.................................. 7.4.110.0
Bootloader Version............................... 1.0.1
Field Recovery Image Version..................... 6.0.182.0
Firmware Version................................. FPGA 1.7, Env 1.8, USB console 2.2
Build Type....................................... DATA + WPS
System Name...................................... WLC1-AP
System Location..................................
System Contact...................................
System ObjectID.................................. 1.3.6.1.4.1.9.1.1069
Redundancy Mode.................................. Disabled
IP Address....................................... 172.16.10.100
Last Reset....................................... Power on reset
System Up Time................................... 0 days 4 hrs 12 mins 28 secs
System Timezone Location.........................
System Stats Realtime Interval................... 5
System Stats Normal Interval..................... 180
Configured Country............................... US - United States
Operating Environment............................ Commercial (0 to 40 C)
--More-- or (q)uit
Internal Temp Alarm Limits....................... 0 to 65 C
Internal Temperature............................. +44 C
External Temperature............................. +28 C
Fan Status....................................... OK
State of 802.11b Network......................... Enabled
State of 802.11a Network......................... Enabled
Number of WLANs.................................. 1
Number of Active Clients......................... 0
Memory Current Usage............................. Unknown
Memory Average Usage............................. Unknown
CPU Current Usage................................ Unknown
CPU Average Usage................................ Unknown
Burned-in MAC Address............................ F8:72:EA:EF:2E:A0
Power Supply 1................................... Present, OK
Power Supply 2................................... Present, Power Off, Fan On
Maximum number of APs supported.................. 100
AP4403.a7fd.f040#sh ver
Cisco IOS Software, C1600 Software (AP1G2-K9W8-M), Version 15.2(2)JB, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2012 by Cisco Systems, Inc.
Compiled Tue 11-Dec-12 04:45 by prod_rel_team
ROM: Bootstrap program is C1600 boot loader
BOOTLDR: C1600 Boot Loader (AP1G2-BOOT-M) LoaderVersion 15.2(2)JAX, RELEASE SOFTWARE (fc1)
AP4403.a7fd.f040 uptime is 4 minutes
System returned to ROM by power-on
System image file is "flash:/ap1g2-k9w8-mx.152-2.JB/ap1g2-k9w8-mx.152-2.JB"
Last reload reason:
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
[email protected].
cisco AIR-CAP1602I-C-K9 (PowerPC) processor (revision B0) with 98294K/32768K bytes of memory.
Processor board ID FGL1711ZJNW
PowerPC CPU at 533Mhz, revision number 0x2151
Last reset from power-on
LWAPP image version 7.4.1.37
1 Gigabit Ethernet interface
2 802.11 Radios
32K bytes of flash-simulated non-volatile configuration memory.
Base ethernet MAC Address: 44:03:A7:FD:F0:40
Part Number : 73-14671-04
PCA Assembly Number : 000-00000-00
PCA Revision Number :
PCB Serial Number : FOC16517DZ1
Top Assembly Part Number : 800-38552-01
Top Assembly Serial Number : FGL1711ZJNW
Top Revision Number : A0
Product/Model Number : AIR-CAP1602I-C-K9
Configuration register is 0xF
AP4403.a7fd.f040#sh inventory
NAME: "AP1600", DESCR: "Cisco Aironet 1600 Series (IEEE 802.11n) Access Point"
PID: AIR-CAP1602I-C-K9 , VID: V01, SN: FGL1711ZJNW -
3502i keeps losing communication with WLC 5508
Hello all,
This problem only seems to affect one of our sites. Every once in a while, several APs would lose link to the 5508 and get stranded. The only way to fix the issue is either to power cycle, or better yet SSH into the APs and use the command "capwap ap controller ip address x.x.x.x", and then they'd automatically rejoin the controller. At first, I thought network hiccups caused the APs to lose connectivity, but there's none that I could find. I have the primary/secondary controller IPs configured in them as well. See log below:
[previous log entries show AP working as intended, then...]
*Jan 18 05:29:29.632: %CAPWAP-3-ERRORLOG: Retransmission count for packet exceeded max(CAPWAP_ECHO_REQUEST
., 1)
*Jan 18 05:29:29.632: %LWAPP-3-CLIENTEVENTLOG: Switching to Standalone mode
*Jan 18 05:29:29.645: %CAPWAP-3-ERRORLOG: GOING BACK TO DISCOVER MODE
*Jan 18 05:29:29.645: %DTLS-5-SEND_ALERT: Send FATAL : Close notify Alert to [ommitted due to security reason]:5246
*Jan 18 05:29:29.704: %WIDS-6-DISABLED: IDS Signature is removed and disabled.
*Jan 18 05:29:32.797: %CLEANAIR-6-STATE: Slot 0 down
*Jan 18 05:29:32.797: %CLEANAIR-6-STATE: Slot 1 down
*Jan 18 05:32:35.214: %CAPWAP-3-DHCP_RENEW: Could not discover WLC using DHCP IP. Renewing DHCP IP.
*Jan 18 05:32:38.278: %LWAPP-3-LWAPP_INTERFACE_GOT_IP_ADDRESS: Interface BVI1 obtained IP from DHCP...
*Jan 18 05:32:38.278: %CAPWAP-3-ERRORLOG: Invalid event 38 & state 2 combination.
*Jan 18 05:32:38.379: %DHCP-6-ADDRESS_ASSIGN: Interface BVI1 assigned DHCP address 10.100.1.20, mask 255.255.255.0, hostname AP020
*Jan 18 05:32:38.379: %LWAPP-3-LWAPP_INTERFACE_GOT_IP_ADDRESS: Interface BVI1 obtained IP from DHCP...
*Jan 18 05:32:46.215: %CAPWAP-3-ERRORLOG: Did not get log server settings from DHCP.
*Jan 18 05:35:41.753: %CAPWAP-3-DHCP_RENEW: Could not discover WLC using DHCP IP. Renewing DHCP IP.
*Jan 18 05:35:44.817: %LWAPP-3-LWAPP_INTERFACE_GOT_IP_ADDRESS: Interface BVI1 obtained IP from DHCP...
*Jan 18 05:35:44.817: %CAPWAP-3-ERRORLOG: Invalid event 38 & state 2 combination.
*Jan 18 05:35:44.898: %DHCP-6-ADDRESS_ASSIGN: Interface BVI1 assigned DHCP address 10.100.1.20, mask 255.255.255.0, hostname AP020
*Jan 18 05:35:44.898: %LWAPP-3-LWAPP_INTERFACE_GOT_IP_ADDRESS: Interface BVI1 obtained IP from DHCP...
*Jan 18 05:35:52.753: %CAPWAP-3-ERRORLOG: Did not get log server settings from DHCP.
*Jan 18 05:38:48.260: %CAPWAP-3-DHCP_RENEW: Could not discover WLC using DHCP IP. Renewing DHCP IP.
*Jan 18 05:38:51.324: %LWAPP-3-LWAPP_INTERFACE_GOT_IP_ADDRESS: Interface BVI1 obtained IP from DHCP...
*Jan 18 05:38:51.324: %CAPWAP-3-ERRORLOG: Invalid event 38 & state 2 combination.
*Jan 18 05:38:51.405: %DHCP-6-ADDRESS_ASSIGN: Interface BVI1 assigned DHCP address 10.100.1.20, mask 255.255.255.0, hostname AP020
[These log messages keep looping endlessly]
These APs discover the controller by using DHCP + DNS. Any suggestion will be greatly appreciated!
Thanks,
WilI have only had this issue a few times but what I end up doing is factory default the AP. I also end up uploading the rcv image and deleting the other images in flash. I do some beta testing so it could be that the images get corrupt, but that has been my fix. The AP joins and then downloads the firmware from the WLC again. It might not be what you want to do, but maybe if its an issue with a particular AP you can test it out.
Sent from Cisco Technical Support iPhone App -
VPN-PassThrough with wlc 5508 7.0.235.0
HI, i have 2 ssid with the same comfiguration (diff only in name) in one ipsec ssid vpn (l2tp over ipsec with natt ) works fine, in another after phase 2 is completed no traffic is forwarded and vpn session is dropped.
There are no access lists on equipment.
I found in documentation that need to activate L3 security and set it to vpn pass-through, but in drop-down menu only one item "none".
What is the reason to drop ipsec traffic ?vpn passthrough is not a supported feature on 5500 based WLCs, however it does support on 4400/Wism1. It is a bug that gui and cli shows the feature configurations on unsupported platforms however using ACLs vpn passthrough is still supported.
http://www.cisco.com/en/US/partner/docs/wireless/controller/release/notes/crn7_2_111_3.html#wp786160
http://www.cisco.com/en/US/docs/wireless/controller/7.0/configuration/guide/c70ovrv.html#wp1154082
http://www.cisco.com/en/US/docs/wireless/controller/7.0/configuration/guide/c70wlan.html#wp1084908
The VPN Passthrough option is not available on Cisco 5500 Series and Cisco 2100 Series Controllers. However, you can replicate this functionality on a Cisco 5500 or 2100 Series Controller by creating an open WLAN using an ACL. -
Manage AIR-AP1262N with WLC 5508
hello,
is it possible to manage a air-ap1262n with a controller like wlc 5500 or wlc 2500?
the official cisco support could not answer me this question for sure.
i have found this old guide to upgrade ap´s to lap´s, but there is hothing about the 1260 in it.
http://www.cisco.com/en/US/docs/wireless/access_point/conversion/lwapp/upgrade/guide/lwapnote.html
i am a little bit confused!
the cisco documents tells:
"at_a_glance_c45-636090.pdf"
->
A wireless network with standalone access points offers a low-cost, entry-level
solution that does not require a controller. It is ideal for small-scale networks with less
than 20 access points, and offers base-level wireless functionality with the flexibility to
scale and add services over time by adding a controller.
<-
but the cisco helpline tells that they cant say it for sure - they cant find anything about that it would work and nothing that it dont work. ...and they have no one they could ask!^^
now I hope to find an answer
thanks and greetings
erikHi,
As mention by Steve, download the recovery image and then upgrade the AP IOs using the archive command over the CLI and instead of using the IOS image you use the LWAPP.
The supported AP is set by the code the WLC has and not the model of WLC.
The 1262 APs are supported starting code 7.0.98.0
Here is the link where you can check on all the release notes on different codes for the WLC, and you can see which APs are supported on each code.
http://www.cisco.com/en/US/products/ps10315/prod_release_notes_list.html -
Roaming problem with WLC 5508 with Phone 7921
Hi to all,
i have one WLC with several AP1231 2.4 GHz. Everything works fine with PC and 7921 in normal condition (last firmware release 1.4.3.4).
But with 7921 there is a little problem: if i walk quicky along the warehouse and along lanes while i'm at the phone everything works well.
But the operator often have a phone call while he is on a forklift and he moves fast with this during the conversation.
In this case of fast moving, during the call, the call doesn't fall but often i do not hear 2/3 words consecutively so i can't understand the phrase.
I have already done a study of radio environment but there aren't interference, and roaming works good with walk speed, so i think that the problem is the operator's speed in forklift (i think at the max about 10-12 Km/h)
The question is that in this case it is possible to modify parameters of Client Roaming in WLC, to reduce this issue?
If yes, somone knows what are the best values in this environment for
Hysteresis
Minimum RSSI
Transition time
Scan threshold
Or someone knows other parameters to modify or any ideas?
Thanks a lot.The 1.4.3.4 firmware scans nicely - it will typically scan each channel every 5 seconds.
How big are your cells? What power level are you using? With very small cells, it is certainly possible that the forklift can drive out of and into cells faster than the phone can scan for them.
You may want to increase your cell size (increase power.) Of course this also means that you will run the risk of co-channel interference. In which case you may need to disable some 2.4GHz radios.
Also - be sure that your APs are placed where the forklift can hear an AP that it needs to roam to well before it has to roam to it. For example, if the forklift is rolling straight down a corridor like this:
| x | | |
__________| |____________| |_____
a >>> forklift >>> b
----------| |------------| |-----
| | | y |
then make sure that the APs that the forklift needs to use are at locations a and b, not x and y (assuming metal partitions where the lines are.)
Aaron -
Difference between bridge and local mode with wlc 5508
Hello,
Now i have wlc5508 with few ap 11xx 12xx in local mode. All work correct. I will have to add few ap1552 in bridge mode ( i have to wait for wlc upgrade to change ap1552 to local mode). My question is that all ( local and bridge mode) will work correct together for my clients: rfid readers, laptop, computer in a,b,g,n mode ? What about roaming and other feature ?
thanks for help
PeterIf you plan on not doing MESH, then you set these 1552's in local mode and they will perform the same tasks as any other AP's in local mode. When you want to do MESH, then that is when bridge mode comes into play and you have to define your RAP's and MAP's.
Roaming, clients devices, doesn't matter if your using local or bridge. roaming depends on your device and coverage and rfid, also depends on triangulation with the coverage you have now.
Thanks,
Scott
Help out other by using the rating system and marking answered questions as "Answered"
Maybe you are looking for
-
How to change the form widths for the EditForm.aspx and NewForm.aspx files that display both new and edited list entries?
-
Problem Connecting To MS SQL Server Via JSP
Please advise ! My envoironment is Windows 2000, j2sdk1.4.1_02, Java Web Services Developer Pack 1.1. I have set my system variables as below : JAVA_HOME : C:\j2sdk1.4.1_02 CATALINA_HOME : C:\jwsdp-1.1 CLASSPATH : %JAVA_HOME%\lib;%CATALINA_HOME%\lib;
-
Hi.. I am trying to do ALE configuration for inbound IDOC. I have created RFC destination on XI client using transaction SM59 and then a port using IDX1. after that i have executed the transaction we20 on the SAP system and added the IDOC basis ty
-
Sneaking Behind the JDBC ConnectionPools
Hi, this is Kinan - This case happend with me: - the (application2) on (server2) got a remote (weblogic.jdbc.common.internal.RmiDataSource) instance which defined in the (server1) - When the (application2) tries to get a connection from this DataSour
-
I have a dsl internet conection with a download speed of .66 mbps. I would like to watch netflix with a wireless conection to apple tv. What is the required internet speed?