AP disconnected from WLC 5508

Dear All,
Greetings!!!!!
We have WLC 5508 installed in our premises to which 80 1242AG APs are connected. Few days ago, all the APs all of a sudden disconnected from Controller and rejoined after 12 to 15 hours. when we try to investigate, there was regulatory domain conflict occur. But we didn't understand that those APs were configured with the same config before. How come they got diconnected and now rejoined without changing any configration in WLC?
Logs for both AP and WLC has been attahched here.
Kindly guide us!!!                  

Then the APs should of not of disassociated from the WLC. If all these APs are local to where the WLC resides, then I really don't know why the APs would of disassociated. Take a look at the monitor tab and then look at statistics and then ap join. There should be a history unless the WLC was rebooted or the log was cleared. The only other thing I could think of is if there was a duplicate address on a device that had the same IP address as the management interface of the WLC.
Sent from Cisco Technical Support iPhone App

Similar Messages

  • AP 3602 is disconnected from WLC

    This ap is disconnected from the WLC lately, he's doing more often. 
    someone has something similar happened?
    *Jun 27 17:54:45.159: %CAPWAP-3-ERRORLOG: Retransmission count for packet exceeded max(CAPWAP_WTP_EVENT_REQUEST
    ., 2)
    *Jun 27 17:54:51.203: %EVT-4-WRN: Write of flash:/event.capwap done
    *Jun 27 17:54:51.227: %LWAPP-3-CLIENTERRORLOG: Switching to Standalone mode
    *Jun 27 17:54:51.231: %CAPWAP-3-ERRORLOG: GOING BACK TO DISCOVER MODE
    *Jun 27 17:54:51.231: %DTLS-5-SEND_ALERT: Send FATAL : Close notify Alert to 10.101.0.200:5246
    *Jun 27 17:54:51.231: %CAPWAP-3-ERRORLOG: Dropping dtls packet since session is not established. 10.101.0.200, 147E, 10.104.0.219, 77B3, 0
    *Jun 27 17:54:51.231: %CAPWAP-3-ERRORLOG: Dropping dtls packet since session is not established. 10.101.0.200, 147E, 10.104.0.219, 77B3, 0
    *Jun 27 17:54:51.299: %WIDS-6-DISABLED: IDS Signature is removed and disabled.
    *Jun 27 17:54:51.303: %CLEANAIR-6-STATE: Slot 0 down
    *Jun 27 17:54:51.303: %CLEANAIR-6-STATE: Slot 1 down
    *Jun 27 17:54:54.735: %DOT11-7-AUTH_FAILED: Station c473.1e14.e15a Authentication failed
    *Jun 27 17:55:05.703: %DOT11-7-AUTH_FAILED: Station c473.1e14.e15a Authentication failed
    *Jun 27 17:55:09.303: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-CAPWAP-CONTROLLER.interceramic.com
    *Jun 27 17:55:16.571: %DOT11-7-AUTH_FAILED: Station c473.1e14.e15a Authentication failed
    *Jun 27 17:55:19.303: %CAPWAP-3-ERRORLOG: Selected MWAR 'InterceramicWLC'(index 0).
    *Jun 27 17:55:19.303: %CAPWAP-3-ERRORLOG: Go join a capwap controller
    *Jun 27 17:55:09.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.101.0.200 peer_port: 5246
    *Jun 27 17:55:09.575: %CAPWAP-5-DTLSREQSUCC: DTLS connection created sucessfully peer_ip: 10.101.0.200 peer_port: 5246
    *Jun 27 17:55:09.579: %CAPWAP-5-SENDJOIN: sending Join Request to 10.101.0.200
    *Jun 27 17:55:09.595: %CAPWAP-3-ERRORLOG: Invalid event 10 & state 5 combination.
    *Jun 27 17:55:09.595: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process message type 10 state 5.
    *Jun 27 17:55:09.595: %CAPWAP-3-ERRORLOG: Failed to handle capwap control message from controller
    *Jun 27 17:55:09.595: %CAPWAP-3-ERRORLOG: Failed to process encrypted capwap packet from 10.101.0.200
    *Jun 27 17:55:10.391: Starting Ethernet promiscuous mode
    *Jun 27 17:55:10.775: %LWAPP-4-CLIENTEVENTLOG: OfficeExtend Localssid saved in AP flash
    *Jun 27 17:55:11.083: %CAPWAP-5-JOINEDCONTROLLER: AP has joined controller InterceramicWLC
    *Jun 27 17:55:11.131: %LWAPP-4-CLIENTEVENTLOG: No Flex ACL map configuration file to load. Connect to controller to get configuration file
    *Jun 27 17:55:11.135: %LWAPP-4-CLIENTEVENTLOG: No Flex ACL map configuration file to load. Connect to controller to get configuration file
    *Jun 27 17:55:11.135: %LWAPP-4-CLIENTEVENTLOG: No LS Flex ACL map configuration file to load. Connect to controller to get configuration file
    *Jun 27 17:55:11.135: %LWAPP-4-CLIENTEVENTLOG: No Central Dhcp map configuration file to load. Connect to controller to get configuration fileWLAN id 1, SSID u5u4r105, L2ACL , L2ACL AP
    WLAN id 10, SSID r0du((10))p, L2ACL , L2ACL AP
    WLAN id 2, SSID 6u3575, L2ACL , L2ACL AP
    WLAN id 3, SSID d1r3((10N)), L2ACL , L2ACL AP
    WLAN id 4, SSID 4dm1n157r4(10n, L2ACL , L2ACL AP
    WLAN id 5, SSID t)@b!3T(@5, L2ACL , L2ACL AP
    WLAN id 6, SSID e3fB8L31Jt, L2ACL , L2ACL AP
    WLAN id 7, SSID p1570L45d, L2ACL , L2ACL AP
    WLAN id 8, SSID 58rvR3@pw!, L2ACL , L2ACL AP
    WLAN id 9, SSID n1,#B3R$3r@W!q, L2ACL , L2ACL AP
    *Jun 27 17:55:11.135: %LWAPP-3-CLIENTERRORLOG: Switching to Connected mode
    *Jun 27 17:55:54.127: %WIDS-6-ENABLED: IDS Signature is loaded and enabled
    *Jun 27 17:55:57.771:  Certificate import is not completed yet, so not deleting the trustpoint
    *Jun 27 17:56:39.271: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jun 27 17:56:41.331: %CLEANAIR-6-STATE: Slot 1 enabled
    *Jun 27 18:56:00.603: 60be.b5f0.3cab-no legacy rates; default to lowest CCK/OFDM rate
    *Jun 27 18:56:00.811: ac3c.0bec.a169-no legacy rates; default to lowest CCK/OFDM rate
    *Jun 27 18:56:09.615: c0cb.3811.52f4-no legacy rates; default to lowest CCK/OFDM rate
    *Jun 28 09:21:12.379: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Jun 28 09:21:12.471: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Jun 28 09:21:13.395: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Jun 28 09:21:13.419: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Jun 28 09:21:14.419: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Jun 28 09:21:33.075: %CLEANAIR-6-STATE: Slot 0 down
    *Jun 28 09:21:50.163: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jun 28 12:55:34.171: %WIDS-4-SIG_ALARM: Attack is detected on Sig:Standard Id:5 Channel:1 Source MAC:4859.29a1.ef2c
    *Jun 28 13:15:34.987: %WIDS-6-SIG_ALARM_OFF: Attack is cleared on Sig:Standard Id:5 Channel:1
    *Jun 28 23:04:58.399: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Jun 28 23:04:58.491: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Jun 28 23:04:59.415: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Jun 28 23:04:59.439: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Jun 28 23:05:00.439: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Jun 28 23:05:15.535: %CLEANAIR-6-STATE: Slot 0 down
    *Jun 28 23:05:32.379: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jun 29 02:18:14.903: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Jun 29 02:18:15.123: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Jun 29 02:18:15.919: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Jun 29 02:18:15.943: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Jun 29 02:18:16.943: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Jun 29 02:18:32.459: %CLEANAIR-6-STATE: Slot 0 down
    *Jun 29 02:18:49.907: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jun 29 05:31:39.339: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Jun 29 05:31:39.423: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Jun 29 05:31:40.355: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Jun 29 05:31:40.383: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Jun 29 05:31:41.383: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Jun 29 05:32:00.631: %CLEANAIR-6-STATE: Slot 0 down
    *Jun 29 05:32:17.411: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jun 29 10:46:56.275: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Jun 29 10:46:56.567: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Jun 29 10:46:57.275: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Jun 29 10:46:57.519: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Jun 29 10:46:58.519: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Jun 29 10:47:17.511: %CLEANAIR-6-STATE: Slot 0 down
    *Jun 29 10:47:34.287: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jun 30 09:50:00.819: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Jun 30 09:50:00.827: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Jun 30 09:50:01.835: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Jun 30 09:50:01.859: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Jun 30 09:50:02.859: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Jun 30 09:50:21.751: %CLEANAIR-6-STATE: Slot 0 down
    *Jun 30 09:50:38.691: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jun 30 14:25:06.259: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Jun 30 14:25:06.347: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Jun 30 14:25:07.275: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Jun 30 14:25:07.299: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Jun 30 14:25:08.299: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Jun 30 14:25:23.847: %CLEANAIR-6-STATE: Slot 0 down
    *Jun 30 14:25:40.623: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jun 30 14:45:26.663: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Jun 30 14:45:26.751: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Jun 30 14:45:27.679: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Jun 30 14:45:27.707: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Jun 30 14:45:28.707: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Jun 30 14:45:45.635: %CLEANAIR-6-STATE: Slot 0 down
    *Jun 30 14:46:02.415: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jun 30 16:57:38.759: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Jun 30 16:57:38.959: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Jun 30 16:57:39.775: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Jun 30 16:57:39.799: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Jun 30 16:57:40.799: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Jun 30 16:57:57.003: %CLEANAIR-6-STATE: Slot 0 down
    *Jun 30 16:58:14.351: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jul  1 14:42:26.991: %CAPWAP-3-ERRORLOG: Retransmission count for packet exceeded max(CAPWAP_WTP_EVENT_REQUEST
    ., 3)
    *Jul  1 14:42:33.279: %EVT-4-WRN: Write of flash:/event.capwap done
    *Jul  1 14:42:33.299: %LWAPP-3-CLIENTERRORLOG: Switching to Standalone mode
    *Jul  1 14:42:33.303: %CAPWAP-3-ERRORLOG: GOING BACK TO DISCOVER MODE
    *Jul  1 14:42:33.303: %DTLS-5-SEND_ALERT: Send FATAL : Close notify Alert to 10.101.0.200:5246
    *Jul  1 14:42:33.371: %WIDS-6-DISABLED: IDS Signature is removed and disabled.
    *Jul  1 14:42:33.375: %CLEANAIR-6-STATE: Slot 0 down
    *Jul  1 14:42:33.375: %CLEANAIR-6-STATE: Slot 1 down
    *Jul  1 14:42:33.495: %RADIUS-3-NOSERVERS: No Radius hosts configured or no valid server present in the server group radius
    *Jul  1 14:42:33.495: %DOT11-7-AUTH_FAILED: Station c0cb.3811.52f4 Authentication failed
    *Jul  1 14:42:38.775: %DOT11-7-AUTH_FAILED: Station 446d.57b3.0d94 Authentication failed
    *Jul  1 14:42:45.579: %DOT11-7-AUTH_FAILED: Station c0cb.3811.52f4 Authentication failed
    *Jul  1 14:42:51.367: %DOT11-7-AUTH_FAILED: Station 446d.57b3.0d94 Authentication failed
    *Jul  1 14:42:51.375: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-CAPWAP-CONTROLLER.interceramic.com
    *Jul  1 14:42:58.239: %DOT11-7-AUTH_FAILED: Station c0cb.3811.52f4 Authentication failed
    *Jul  1 14:43:01.375: %CAPWAP-3-ERRORLOG: Selected MWAR 'InterceramicWLC'(index 0).
    *Jul  1 14:43:01.375: %CAPWAP-3-ERRORLOG: Go join a capwap controller
    *Jul  1 14:42:51.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.101.0.200 peer_port: 5246
    *Jul  1 14:42:53.127: %DOT11-7-AUTH_FAILED: Station c0cb.3811.52f4 Authentication failed
    *Jul  1 14:42:58.215: %DOT11-7-AUTH_FAILED: Station 446d.57b3.0d99 Authentication failed
    *Jul  1 14:43:04.183: %DOT11-7-AUTH_FAILED: Station c473.1e14.e15a Authentication failed
    *Jul  1 14:43:10.251: %DOT11-7-AUTH_FAILED: Station c0cb.3811.52f4 Authentication failed
    *Jul  1 14:43:19.715: %DOT11-7-AUTH_FAILED: Station 68a8.6d4e.363e Authentication failed
    *Jul  1 14:43:21.131: DTLS_CLIENT_ERROR: ../capwap/base_capwap/dtls/base_capwap_dtls_connection_db.c:2176 Max retransmission count reached!
    *Jul  1 14:43:25.907: %DOT11-7-AUTH_FAILED: Station c473.1e14.e15a Authentication failed
    *Jul  1 14:43:32.259: %DOT11-7-AUTH_FAILED: Station 68a8.6d4e.363e Authentication failed
    *Jul  1 14:43:38.531: %DOT11-7-AUTH_FAILED: Station 68a8.6d4e.363e Authentication failed
    *Jul  1 14:43:45.215: %DOT11-7-AUTH_FAILED: Station 68a8.6d4e.363e Authentication failed
    *Jul  1 14:43:50.999: %DTLS-5-SEND_ALERT: Send FATAL : Close notify Alert to 10.101.0.200:5246
    *Jul  1 14:43:51.487: %DOT11-7-AUTH_FAILED: Station 68a8.6d4e.363e Authentication failed
    *Jul  1 14:43:58.175: %DOT11-7-AUTH_FAILED: Station 68a8.6d4e.363e Authentication failed
    *Jul  1 14:44:04.823: %DOT11-7-AUTH_FAILED: Station c0cb.3811.52f4 Authentication failed
    *Jul  1 14:44:09.047: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-CAPWAP-CONTROLLER.interceramic.com
    *Jul  1 14:44:11.063: %DOT11-7-AUTH_FAILED: Station c0cb.3811.52f4 Authentication failed
    *Jul  1 14:44:17.303: %DOT11-7-AUTH_FAILED: Station c0cb.3811.52f4 Authentication failed
    *Jul  1 14:44:19.047: %CAPWAP-3-ERRORLOG: Selected MWAR 'InterceramicWLC'(index 0).
    *Jul  1 14:44:19.047: %CAPWAP-3-ERRORLOG: Go join a capwap controller
    *Jul  1 14:44:19.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.101.0.200 peer_port: 5246
    *Jul  1 14:44:26.355: %DOT11-7-AUTH_FAILED: Station 446d.57b3.0d99 Authentication failed
    *Jul  1 14:44:41.795: %DOT11-7-AUTH_FAILED: Station c473.1e14.e15a Authentication failed
    *Jul  1 14:44:49.143: DTLS_CLIENT_ERROR: ../capwap/base_capwap/dtls/base_capwap_dtls_connection_db.c:2176 Max retransmission count reached!
    *Jul  1 14:44:52.659: %DOT11-7-AUTH_FAILED: Station c473.1e14.e15a Authentication failed
    *Jul  1 14:45:00.647: %DOT11-7-AUTH_FAILED: Station 446d.57b3.0d99 Authentication failed
    *Jul  1 14:45:09.035: %DOT11-7-AUTH_FAILED: Station 446d.57b3.0d99 Authentication failed
    *Jul  1 14:45:14.387: %DOT11-7-AUTH_FAILED: Station c473.1e14.e15a Authentication failed
    *Jul  1 14:45:18.999: %DTLS-5-SEND_ALERT: Send FATAL : Close notify Alert to 10.101.0.200:5246
    *Jul  1 14:45:25.251: %DOT11-7-AUTH_FAILED: Station c473.1e14.e15a Authentication failed
    *Jul  1 14:45:33.839: %DOT11-7-AUTH_FAILED: Station 446d.57b3.0d99 Authentication failed
    *Jul  1 14:45:37.047: %CAPWAP-3-ERRORLOG: Could Not resolve CISCO-CAPWAP-CONTROLLER.interceramic.com
    *Jul  1 14:45:41.795: %DOT11-7-AUTH_FAILED: Station 446d.57b3.0d99 Authentication failed
    *Jul  1 14:45:46.975: %DOT11-7-AUTH_FAILED: Station c473.1e14.e15a Authentication failed
    *Jul  1 14:45:47.047: %CAPWAP-3-ERRORLOG: Selected MWAR 'InterceramicWLC'(index 0).
    *Jul  1 14:45:47.047: %CAPWAP-3-ERRORLOG: Go join a capwap controller
    *Jul  1 14:45:47.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.101.0.200 peer_port: 5246
    *Jul  1 14:45:47.503: %CAPWAP-5-DTLSREQSUCC: DTLS connection created sucessfully peer_ip: 10.101.0.200 peer_port: 5246
    *Jul  1 14:45:47.503: %CAPWAP-5-SENDJOIN: sending Join Request to 10.101.0.200
    *Jul  1 14:45:47.519: %CAPWAP-3-ERRORLOG: Invalid event 10 & state 5 combination.
    *Jul  1 14:45:47.519: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process message type 10 state 5.
    *Jul  1 14:45:47.519: %CAPWAP-3-ERRORLOG: Failed to handle capwap control message from controller
    *Jul  1 14:45:47.519: %CAPWAP-3-ERRORLOG: Failed to process encrypted capwap packet from 10.101.0.200
    *Jul  1 14:45:47.615: Starting Ethernet promiscuous mode
    *Jul  1 14:45:47.995: %LWAPP-4-CLIENTEVENTLOG: OfficeExtend Localssid saved in AP flash
    *Jul  1 14:45:48.747: %CAPWAP-5-JOINEDCONTROLLER: AP has joined controller InterceramicWLC
    *Jul  1 14:45:48.795: %LWAPP-4-CLIENTEVENTLOG: No Flex ACL map configuration file to load. Connect to controller to get configuration file
    *Jul  1 14:45:48.795: %LWAPP-4-CLIENTEVENTLOG: No Flex ACL map configuration file to load. Connect to controller to get configuration file
    *Jul  1 14:45:48.795: %LWAPP-4-CLIENTEVENTLOG: No LS Flex ACL map configuration file to load. Connect to controller to get configuration file
    *Jul  1 14:45:48.795: %LWAPP-4-CLIENTEVENTLOG: No Central Dhcp map configuration file to load. Connect to controller to get configuration fileWLAN id 1, SSID u5u4r105, L2ACL , L2ACL AP
    WLAN id 10, SSID r0du((10))p, L2ACL , L2ACL AP
    WLAN id 2, SSID 6u3575, L2ACL , L2ACL AP
    WLAN id 3, SSID d1r3((10N)), L2ACL , L2ACL AP
    WLAN id 4, SSID 4dm1n157r4(10n, L2ACL , L2ACL AP
    WLAN id 5, SSID t)@b!3T(@5, L2ACL , L2ACL AP
    WLAN id 6, SSID e3fB8L31Jt, L2ACL , L2ACL AP
    WLAN id 7, SSID p1570L45d, L2ACL , L2ACL AP
    WLAN id 8, SSID 58rvR3@pw!, L2ACL , L2ACL AP
    WLAN id 9, SSID n1,#B3R$3r@W!q, L2ACL , L2ACL AP
    *Jul  1 14:45:48.795: %LWAPP-3-CLIENTERRORLOG: Switching to Connected mode
    *Jul  1 14:46:24.287: %WIDS-6-ENABLED: IDS Signature is loaded and enabled
    *Jul  1 14:46:24.615:  Certificate import is not completed yet, so not deleting the trustpoint
    capwap_central_auth_info_add_mn: Invalid client mac address 446d.57b3.0d99
    *Jul  1 14:46:53.355: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jul  1 14:46:55.415: %CLEANAIR-6-STATE: Slot 1 enabled
    ap_ITP4#Connection to 10.104.0.219 closed by remote host.

    hi leo,
    this is log now.
    *Jul  2 23:57:01.427: %CAPWAP-3-ERRORLOG: Retransmission count for packet exceeded max(CAPWAP_WTP_EVENT_REQUEST
    ., 6)
    *Jul  2 23:57:01.431: %LWAPP-3-CLIENTERRORLOG: Switching to Standalone mode
    *Jul  2 23:57:01.435: %CAPWAP-3-ERRORLOG: GOING BACK TO DISCOVER MODE
    *Jul  2 23:57:01.435: %DTLS-5-SEND_ALERT: Send FATAL : Close notify Alert to 10.101.0.200:5246
    *Jul  2 23:57:01.499: %WIDS-6-DISABLED: IDS Signature is removed and disabled.
    *Jul  2 23:57:01.503: %CLEANAIR-6-STATE: Slot 0 down
    *Jul  2 23:57:01.503: %CLEANAIR-6-STATE: Slot 1 down
    *Jul  2 23:57:11.579: %CAPWAP-3-ERRORLOG: Selected MWAR 'InterceramicWLC'(index 0).
    *Jul  2 23:57:11.579: %CAPWAP-3-ERRORLOG: Go join a capwap controller 
    *Jul  2 23:57:02.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.101.0.200 peer_port: 5246
    *Jul  2 23:57:02.663: %CAPWAP-5-DTLSREQSUCC: DTLS connection created sucessfully peer_ip: 10.101.0.200 peer_port: 5246
    *Jul  2 23:57:02.663: %CAPWAP-5-SENDJOIN: sending Join Request to 10.101.0.200
    *Jul  2 23:57:02.683: %CAPWAP-3-ERRORLOG: Invalid event 10 & state 5 combination.
    *Jul  2 23:57:02.683: %CAPWAP-3-ERRORLOG: CAPWAP SM handler: Failed to process message type 10 state 5.
    *Jul  2 23:57:02.683: %CAPWAP-3-ERRORLOG: Failed to handle capwap control message from controller
    *Jul  2 23:57:02.683: %CAPWAP-3-ERRORLOG: Failed to process encrypted capwap packet from 10.101.0.200
    *Jul  2 23:57:03.223: Starting Ethernet promiscuous mode
    *Jul  2 23:57:03.675: %LWAPP-4-CLIENTEVENTLOG: OfficeExtend Localssid saved in AP flash
    *Jul  2 23:57:03.979: %CAPWAP-5-JOINEDCONTROLLER: AP has joined controller InterceramicWLC
    *Jul  2 23:57:04.027: %LWAPP-4-CLIENTEVENTLOG: No Flex ACL map configuration file to load. Connect to controller to get configuration file
    *Jul  2 23:57:04.027: %LWAPP-4-CLIENTEVENTLOG: No Flex ACL map configuration file to load. Connect to controller to get configuration file
    *Jul  2 23:57:04.027: %LWAPP-4-CLIENTEVENTLOG: No LS Flex ACL map configuration file to load. Connect to controller to get configuration file
    *Jul  2 23:57:04.027: %LWAPP-4-CLIENTEVENTLOG: No Central Dhcp map configuration file to load. Connect to controller to get configuration fileWLAN id 1, SSID u5u4r105, L2ACL , L2ACL AP 
    WLAN id 10, SSID r0du((10))p, L2ACL , L2ACL AP 
    WLAN id 2, SSID 6u3575, L2ACL , L2ACL AP 
    WLAN id 3, SSID d1r3((10N)), L2ACL , L2ACL AP 
    WLAN id 4, SSID 4dm1n157r4(10n, L2ACL , L2ACL AP 
    WLAN id 5, SSID t)@b!3T(@5, L2ACL , L2ACL AP 
    WLAN id 6, SSID e3fB8L31Jt, L2ACL , L2ACL AP 
    WLAN id 7, SSID p1570L45d, L2ACL , L2ACL AP 
    WLAN id 8, SSID 58rvR3@pw!, L2ACL , L2ACL AP 
    WLAN id 9, SSID n1,#B3R$3r@W!q, L2ACL , L2ACL AP 
    *Jul  2 23:57:04.031: %LWAPP-3-CLIENTERRORLOG: Switching to Connected mode
    *Jul  2 23:57:16.955: %WIDS-6-ENABLED: IDS Signature is loaded and enabled
    *Jul  2 23:57:20.851:  Certificate import is not completed yet, so not deleting the trustpoint 
    capwap_central_auth_info_add_mn: Invalid client mac address 60be.b5f8.9719
    *Jul  2 23:57:48.139: %CLEANAIR-6-STATE: Slot 0 enabled
    *Jul  2 23:57:50.199: %CLEANAIR-6-STATE: Slot 1 enabledcapwap_central_auth_info_add_mn: Invalid client mac address c0cb.3811.52f4
    capwap_central_auth_info_add_mn: Invalid client mac address 446d.57b3.0d94
    gracias

  • Clients disconnected from WLC randomly

    Hi,
    I'm doing some tests with clients to see how much time they are kept registered in the controller while they are disconnected. I've set session timeout to 0 (infinite) and user idle timeout to 12 hours. 
    The problem is that sometimes the clients are disconnected from the controller before the user idle timeout expires:
    apfMsDeleteByMscb Scheduling mobile for deletion with deleteReason 6, reasonCode 1
    Other times they are expired normally by the user idle timeout (deleteReason4,reasonCode4).
    If I am not wrong deleteReason 6 corresponds to manual deletion of the client, but there is no manual interventention when this happen, is the controller who deletes it.
    Can anybody explain why this happens randomly?
    WLC version 6.0.196
    Thanks.

    Refer the 2 Bugs :
    Unified APs removing clients on maximum retries.
    CSCti91944
    Description
    Symptom:
    A wireless client might be removed from the mobility database before the user idle timeout. When this happens, if "debug client MAC" is in effect, messages similar to the following are seen on the WLC:
    *spamApTask3: clientmacaddrXYZ Received Idle-Timeout from
    AP macADDR-abc slot 0 for STA XYZ Client MAC ADDR
    *spamApTask3: apfMsDeleteByMscb Scheduling mobile for deletion with
    deleteReason 4, reasonCode 4
    The symptoms, as experienced by the user, depends on the behavior of the client device and on the WLAN configuration as follows:
    - If the WLAN is configured for web-auth, the client is forced to reauthenticate through the web.
    - If the WLAN is configured for L3 mobility and if the client performs an L3 roam at the time of the removal, the client's old IP address in the old subnet is no longer valid, and the client is forced to re-DHCP in the new subnet. Any existing TCP connections fail to work expected. If the client is a 792x wireless phone on a call, the talk path is lost for the remainder of the call.
    - If the WLAN is configured for L2 mobility, then the client is forced to perform a full EAP authentication (if EAP is configured) and to re-DHCP (if DHCP required is configured). In most cases, this does not cause a perceptible service interruption, unless the client's IP address changes.
    Conditions:
    This occurs when an access point fails to transmit 250 consecutive packets to the client (if there are 64 failed retransmits per packet, which means 4 consecutive dropped packets, it triggers the deauth).
    Examples:
    - Client radio is temporarily disabled.
    - Client has gone into hibernation/standby.
    - For a voice client, if the client is in a call and is unable to receive audio packets for a fraction of a second.
    Workaround:
    None; however, reconfiguring the WLAN for layer 2 rather than layer 3 mobility can mitigate the effect.
    Known Affected Releases:
    (3)
    7.0(98.0)
    6.0(199.0)
    6.0(199.4)
    Clients hit Idle timeout after successful authentication
    CSCue34763
    Description
    Symptom:
    A wireless client, while associated/authenticated (in RUN state), will be
    prematurely idle timed out by an AP. With "debug client" in effect on the
    WLC, messages similar to the following are seen:
    *spamApTask2: Jan 30 17:10:17.258: 00:11:22:33:44:55 Received Idle-Timeout from
    AP 84:78:ac:00:11:22, slot 1 for STA 00:11:22:33:44:558
    *spamApTask2: Jan 30 17:10:17.258: 00:11:22:33:44:55 apfMsDeleteByMscb
    Scheduling mobile for deletion with deleteReason 4, reasonCode 4
    The idle timeout event occurs while the client is not idle, and more rapidly,
    after the client's last reassociation, than the configured user idle timeout
    value.
    Conditions:
    Flexconnect (H-REAP) local switching is configured, with DHCP Required.
    Workaround:
    Clients hit Idle timeout after successful authentication
    CSCue34763
    Description
    Symptom:
    A wireless client, while associated/authenticated (in RUN state), will be
    prematurely idle timed out by an AP. With "debug client" in effect on the
    WLC, messages similar to the following are seen:
    *spamApTask2: Jan 30 17:10:17.258: 00:11:22:33:44:55 Received Idle-Timeout from
    AP 84:78:ac:00:11:22, slot 1 for STA 00:11:22:33:44:558
    *spamApTask2: Jan 30 17:10:17.258: 00:11:22:33:44:55 apfMsDeleteByMscb
    Scheduling mobile for deletion with deleteReason 4, reasonCode 4
    The idle timeout event occurs while the client is not idle, and more rapidly,
    after the client's last reassociation, than the configured user idle timeout
    value.
    Conditions:
    Flexconnect (H-REAP) local switching is configured, with DHCP Required.
    Workaround:
    Disable DHCP required.
    Disable DHCP required.

  • Windows Sharing problem from WLC 5508 to wired LAN

    Dear All,
    I'm having problem with windows sharing (file/printer sharing) from Wireless lan client which is connected to AP3500 and
    WLC 5508 then to Nexus 7010. It's already using ip command, for example \\192.168.84.65
    WLC os version 7.0.116.0 (using AP groups)
    Nexus os version 4.2(6)
    The weird thing is i can connect using windows sharing from wired LAN to wireless user however not vice versa.
    for better explanation, here are the scenarios
    1. Wireless lan to wired LAN using windows sharing - failed
    1. Wired LAN to Wireless lan using windows sharing - success.
    I've been analyzing by making sure that all the to end, there would be no firewall within source pc(s) and destination pc(s) and also
    the ACL inside Nexus.
    Been dying here to find solution for this, due to the customer is using it for file and printer sharing service.
    Anyone has idea to solve this problem, i'm looking forward for any suggestion coming.
    Arrai.

    Peer to peer within wlc is using default setting which is allowed and as you may know, peer to peer permission only related between wireless client not wired one. CMIIW.

  • ISE 1.3 not receiving Radius requests from WLC 5508 ver 8.0.110.0

    Hello all. I just implemented ISE 1.3 at a customer site. added a WLC running 8.0.110.0 using its mgmt address with a RADIUS preshared key. On the WLC, I created to SSIDs, corp and guest.
    For corp I configured WPA2 and AES and forwarded Radius requests to my 2 ISE node PSN interfaces
    For the guest I configured MAC filter with advanced features AAA overide and Radius NAC - per Cisco's documents
    The corp forwards Radius requests to ISE, the guest does not. I get nothing from the guest.
    I configured the WLC step by step from the Cisco document. I have completed over 10 ISE implementations in the last year using ISE 1.2 and WLC 7.x and have never run into this issue before.
    Any help will be much appreciated.

    This issue has been resolved. The issue was that for the guest SSID MAC filtering was enabled as required, but they had the test PCs on a mac filter bypass list for that SSID in the WLC. This was automatically authenticating the PC, and therefore not forwarding the RADIUS to ISE.
    Once we removed the PC from the MAC filter list in the WLC, the authentications were forwarded to ISE as desired.

  • Unable to upload/download the configuration in WLC 5508

    Dear Friends,
    I do have issue in upgrading firmware or downloading code from WLC 5508 , version 7.0. I did the same image upload with other devices through CLI from my notebook and it works fine.
    Everytime i try to upload/download the image, it gives the error .
    Has anyone faced the issues, is there any workaround ?
    Regards,
    SID

    I believe that is just how Cisco designed it:). I believe in earlier versions this worked.
    I don't like it now because I cant download the config on a wlc of the ap I'm on. The enable managent via wireless is totally different... As you know, you can manage it.... Sort of:)
    Thanks,
    Scott Fella
    Sent from my iPhone

  • 1131AG keeps disconnecting from 5508 wlc

    We have about 20 APs in our network and about 4-5 are 1131AGs and the rest are 3500s.  The 1131s disconnect from the controller for about 2 minutes (i guess it is rebooting) and then comes back up.  This happens every 1-5 days.  I have tried changing the power level and the channel.  I am not sure why the 1131s keep disconnecting.

    I checked the wireless tab on the WLC gui and the AP uptime resets back to 0.  So it is probably rebooting/crashing.
    I tried pulling up logs from both the APs and the WLC.  The logs stop about 3 months before and then continues right when the AP comes back online (ex.  Apr 14 was the last log then Jul 1 was when the AP reset and came back online and joined the controller). 
    Although there is a Jul 5th message:
    *Jul 5 16:00:13.121: %CAPWAP-3-ERRORLOG:  Received a upload request from controller for event log buffer

  • WLC 5508 - Clients disconnecting

    I am running WLC 5508 7.2.111.3 with some 2602i AP.
    Last week one user reported his new macbook pro 2013 was encountering connectivity issues.His older macbook pro 2009 was working perfectly.
    The user is sitting in the middle of 2nd floor having equal distance from second's floor access points.
    The problem is that his Macbook pro 2013 was persistently trying to associate with 3rd's floor Access Points. Whatever i tried to do (deauthenticate user,rebooting 2nd & 3rd floor APs) the connection was persistent to 3rd floor Access Point. Even when i tried to install an Access Point in the user's office his Macbook Pro 2013 refused (!!!) to leave 3rd's floor Access Points.However his Macbook pro 2009 was always connected to the nearest Access Point (either to 2nd floor Access Points or to the newly installed access point in his office).
    This week i had two visitors in 4th floor reporting that their Laptops (Sony Vaio) were doing very slow with the wireless.
    When i tried to troubleshoot i found in the controller that their laptops were associating with 4th floor Access Points and after a minute they were disconnected and trying to associate to Ground Floor (!) Access Points. Of course they couldn't establish a connection and then associated again with 4th floor access points and after a while disconnected and trying to associate to Ground Floor Access Points
    I tried to debug client with Sony Vaio and saw in the controller the following message
    *apfMsConnTask_7: Mar 24 10:42:15.473: %APF-4-INVALID_ACTION_CATEGORY: apf_wme_utils.c:5481 Could not process 802.11 Action. Received Action frame with invalid category field(not supported by controller) from client. Mobile:*********, Category:7.
    I also see a lot of these messages for other clients.
    *apfMsConnTask_3: Mar 19 12:03:54.243: %APF-4-ASSOCREQ_PROC_FAILED: apf_80211.c:5275 Failed to process an association request from c8:6f:1d:24:0e:7d. WLAN:5, SSID:************. mobile in database timed out.
    Am i hitting any bug similar or equal to CSCue53980?

    have you tried with open authentication ( no security ) ? Check if client is able to associate then

  • WLC 5508 running 7.4.110.0 unable to tftp upload config from controller

    Hi,
    Two WLC 5508 running identical code version. One is 50 license Primary, the second is HA. Identical config on both. HA WLC can upload its config to the TFTP or FTP server but Primary cannot. The operation fails for  both CLI and GUI and for different protocols i.e. TFTP, FTP.
    #### Primary Controller
    (Cisco Controller) >show sysinfo
    Manufacturer's Name.............................. Cisco Systems Inc.
    Product Name..................................... Cisco Controller
    Product Version.................................. 7.4.110.0
    Bootloader Version............................... 1.0.20
    Field Recovery Image Version..................... 7.6.95.16
    Firmware Version................................. FPGA 1.7, Env 1.8, USB console 2.2
    Build Type....................................... DATA + WPS
    System Name...................................... PRODWC7309
    System Location..................................
    System Contact...................................
    System ObjectID.................................. 1.3.6.1.4.1.9.1.1069
    Redundancy Mode.................................. Disabled
    IP Address....................................... 10.1.30.210
    Last Reset....................................... Power on reset
    System Up Time................................... 18 days 18 hrs 51 mins 35 secs
    System Timezone Location......................... (GMT+10:00) Sydney, Melbourne, Canberra
    System Stats Realtime Interval................... 5
    System Stats Normal Interval..................... 180
    Configured Country............................... AU - Australia
    Operating Environment............................ Commercial (0 to 40 C)
    --More-- or (q)uit
    Internal Temp Alarm Limits....................... 0 to 65 C
    Internal Temperature............................. +34 C
    External Temperature............................. +17 C
    Fan Status....................................... OK
    State of 802.11b Network......................... Enabled
    State of 802.11a Network......................... Enabled
    Number of WLANs.................................. 8
    Number of Active Clients......................... 138
    Memory Current Usage............................. Unknown
    Memory Average Usage............................. Unknown
    CPU Current Usage................................ Unknown
    CPU Average Usage................................ Unknown
    Burned-in MAC Address............................ 3C:08:F6:CA:52:20
    Power Supply 1................................... Present, OK
    Power Supply 2................................... Present, OK
    Maximum number of APs supported.................. 50
    (Cisco Controller) >debug transfer trace enable
    (Cisco Controller) >transfer upload start
    Mode............................................. TFTP
    TFTP Server IP................................... 10.1.22.2
    TFTP Path........................................ /
    TFTP Filename.................................... PRODWC7309-tmp.cfg
    Data Type........................................ Config File
    Encryption....................................... Disabled
    *** WARNING: Config File Encryption Disabled ***
    Are you sure you want to start? (y/N) Y
    *TransferTask: Jun 02 10:41:15.183: Memory overcommit policy changed from 0 to 1
    *TransferTask: Jun 02 10:41:15.183: RESULT_STRING: TFTP Config transfer starting.
    TFTP Config transfer starting.
    *TransferTask: Jun 02 10:41:15.183: RESULT_CODE:1
    *TransferTask: Jun 02 10:41:24.309: Locking tftp semaphore, pHost=10.1.22.2 pFilename=/PRODWC7309-tmp.cfg
    *TransferTask: Jun 02 10:41:24.393: Semaphore locked, now unlocking, pHost=10.1.22.2 pFilename=/PRODWC7309-tmp.cfg
    *TransferTask: Jun 02 10:41:24.393: Semaphore successfully unlocked, pHost=10.1.22.2 pFilename=/PRODWC7309-tmp.cfg
    *TransferTask: Jun 02 10:41:24.394: tftp rc=-1, pHost=10.1.22.2 pFilename=/PRODWC7309-tmp.cfg
    pLocalFilename=/mnt/application/xml/clis/clifile
    *TransferTask: Jun 02 10:41:24.394: RESULT_STRING: % Error: Config file transfer failed - Unknown error - refer to log
    *TransferTask: Jun 02 10:41:24.394: RESULT_CODE:12
    *TransferTask: Jun 02 10:41:24.394: Memory overcommit policy restored from 1 to 0
    % Error: Config file transfer failed - Unknown error - refer to log
    (Cisco Controller) >show logging
    *TransferTask: Jun 02 10:41:24.393: #UPDATE-3-FILE_OPEN_FAIL: updcode.c:4579 Failed to open file /mnt/application/xml/clis/clifile.
    *sshpmReceiveTask: Jun 02 10:41:24.315: #OSAPI-3-MUTEX_FREE_INFO: osapi_sem.c:1087 Sema 0x2b32def8 time=142 ulk=1621944 lk=1621802 Locker(sshpmReceiveTask sshpmrecv.c:1662 pc=0x10b07938) unLocker(sshpmReceiveTask sshpmReceiveTaskEntry:1647 pc=0x10b07938)
    -Traceback: 0x10af9500 0x1072517c 0x10b07938 0x12020250 0x12080bfc
    *TransferTask: Jun 02 10:39:01.789: #UPDATE-3-FILE_OPEN_FAIL: updcode.c:4579 Failed to open file /mnt/application/xml/clis/clifile.
    *sshpmReceiveTask: Jun 02 10:39:01.713: #OSAPI-3-MUTEX_FREE_INFO: osapi_sem.c:1087 Sema 0x2b32def8 time=5598 ulk=1621801 lk=1616203 Locker(sshpmReceiveTask sshpmrecv.c:1662 pc=0x10b07938) unLocker(sshpmReceiveTask sshpmReceiveTaskEntry:1647 pc=0x10b07938)
    -Traceback: 0x10af9500 0x1072517c 0x10b07938 0x12020250 0x12080bfc
    #### HA Controller
    (Cisco Controller) >show sysinfo
    Manufacturer's Name.............................. Cisco Systems Inc.
    Product Name..................................... Cisco Controller
    Product Version.................................. 7.4.110.0
    Bootloader Version............................... 1.0.20
    Field Recovery Image Version..................... 7.6.95.16
    Firmware Version................................. FPGA 1.7, Env 1.8, USB console 2.2
    Build Type....................................... DATA + WPS
    System Name...................................... PRODWC7310
    System Location..................................
    System Contact...................................
    System ObjectID.................................. 1.3.6.1.4.1.9.1.1069
    Redundancy Mode.................................. Disabled
    IP Address....................................... 10.1.31.210
    Last Reset....................................... Software reset
    System Up Time................................... 18 days 19 hrs 1 mins 27 secs
    System Timezone Location......................... (GMT+10:00) Sydney, Melbourne, Canberra
    System Stats Realtime Interval................... 5
    System Stats Normal Interval..................... 180
    Configured Country............................... AU - Australia
    Operating Environment............................ Commercial (0 to 40 C)
    --More-- or (q)uit
    Internal Temp Alarm Limits....................... 0 to 65 C
    Internal Temperature............................. +34 C
    External Temperature............................. +17 C
    Fan Status....................................... OK
    State of 802.11b Network......................... Enabled
    State of 802.11a Network......................... Enabled
    Number of WLANs.................................. 4
    Number of Active Clients......................... 0
    Memory Current Usage............................. Unknown
    Memory Average Usage............................. Unknown
    CPU Current Usage................................ Unknown
    CPU Average Usage................................ Unknown
    Burned-in MAC Address............................ 3C:08:F6:CA:53:C0
    Power Supply 1................................... Present, OK
    Power Supply 2................................... Present, OK
    Maximum number of APs supported.................. 500
    (Cisco Controller) >debug transfer trace enable
    (Cisco Controller) >transfer upload start
    Mode............................................. FTP
    FTP Server IP.................................... 10.1.22.2
    FTP Server Port.................................. 21
    FTP Path......................................... /
    FTP Filename..................................... 10_1_31_210_140602_1050.cfg
    FTP Username..................................... ftpuser
    FTP Password..................................... *********
    Data Type........................................ Config File
    Encryption....................................... Disabled
    *** WARNING: Config File Encryption Disabled ***
    Are you sure you want to start? (y/N) y
    *TransferTask: Jun 02 10:51:31.278: Memory overcommit policy changed from 0 to 1
    *TransferTask: Jun 02 10:51:31.278: RESULT_STRING: FTP Config transfer starting.
    FTP Config transfer starting.
    *TransferTask: Jun 02 10:51:31.278: RESULT_CODE:1
    *TransferTask: Jun 02 10:52:05.468: ftp operation returns 0
    *TransferTask: Jun 02 10:52:05.477: RESULT_STRING: File transfer operation completed successfully.
    *TransferTask: Jun 02 10:52:05.477: RESULT_CODE:11
    File transfer operation completed successfully.
    Not upgrading to 7.4.121.0 because of bug CSCuo63103. Have not restarted the controller yet.
    Any one else had this issue ? Is there a workaround ?
    Thanks,
    Rick.

    Thanks Stephen, In my deployments of 7.4.110.0 version I have not seen this issue so may be controller reboot will fix it (we do have HA to minimize the impact). I will keep the thread updated with findings and may request TAC for the special release 7.4.121.0 if the still not happy with 7.4.110.0
    Rick.

  • WLC 5508 - Failed to connect from LMS 3.2

    Hello.
    I am trying to include a WLC 5508 in our LMS 3.2.
    I have defined the device and credentials, but the LMS server cannot get access to it.
    If I try to check de device credentials from the Device Center I get a "failed to connect", but if I a try a telnet session, also from Device Center, I get a connection.
    I checked the credentails are OK.
    Thank you.

    Hi,
    You need to download and install the last package : WLC.RME431.v2-1.zip : http://www.cisco.com/cisco/software/cart.html?imageGuId=E3A42793DA29A1B6AC3024C088F9FBC2B324EC8B&i=rs
    You must install : MDF 1.37
    You must install packages before WLC.RME431.v2-1.zip:
    SharedSwimWLC.RME431.v1-2.zip
    SharedDcmaWLC.RME431.v1-1.zip
    SharedSwimIOS.RME431.v2-5-4.zip
    LibSwim.RME431.v2-5-3.zip
    LibCommon.RME431.v2-4-2.zip
    Elisabeth
    WLC.RME431.v2-1.readme:
    Supported Devices
    =================
    Device Type : Cisco 5500 Series Wireless LAN Controllers
           Cisco 3750 Switch with Wireless LAN Controller
    Devices/Modules Supported :
    Cisco 5508 Wireless LAN Controller : 1.3.6.1.4.1.9.1.1069
    Cisco 3750 24+2 port 10/100/1000 Switch with integrated Cisco 4402 Wireless Controller: 1.3.6.1.4.1.9.1.747
    Features Supported:
    Inventory Manager : Yes
    Syslog Analyzer : Yes
    Config.Mgmt  : Yes
    Software Mgmt : Yes
    Minimum Software : 6.0.188.0
    Hardware and Software Requirements
    ==================================
    Hardware and software requirements are the same as those needed for Resource Manager
    Essentials 4.3.1 installation.
    You must install Resource Manager Essentials 4.3.1 and MDF 1.37 before installing the
    device package.
    For a detailed list of requirements, as well as instructions for installing Resource
    Manager Essentials 4.3.1, go to Cisco.com.
    For documentation on Resource Manager Essentials, see:
    http://www.cisco.com/en/US/products/sw/cscowork/ps2073/tsd_products_support_series_home.html
    Package Dependencies
    ====================
    To install the WLC Package, you must install the
    following dependent packages:
    SharedSwimWLC.RME431.v1-2.zip
    SharedDcmaWLC.RME431.v1-1.zip
    SharedSwimIOS.RME431.v2-5-4.zip
    LibSwim.RME431.v2-5-3.zip
    LibCommon.RME431.v2-4-2.zip

  • Upgrading a wlc 5508 from 7.0.116 to 7.4

    Hi
    I have a wlc 5508 running version 7.0.116.0 that I need to uppgrade to use the CAP2602I AP. I understand that I need to upgrade it to version 7.0.240 before 7.4.100 to avoid loosing HREAP VLAN mappings, and I have also read that i need to install the FUS image (http://www.cisco.com/en/US/docs/wireless/controller/release/notes/fus_rn_1_7_0_0.html). In what order should this be done? Shlod the FUS image be installed before new firmware ore after firmware or after 7.0.240 but before 7.4?
    /Björn

    It can be done before or after. I have always done the FUS upgrade after the image upgrade
    Sent from Cisco Technical Support iPhone App

  • WLC 5508 , AP client dhcp address different from WLAN interface VLAN subnet?

    Hope the title makes sense, here's my situation: I have multiple businesses on 1 WLC 5508, there's a LAG to my core switch with seperate interfaces for each, broken up by vlans.
    My question is: if i have a WLAN setup to use interface "Company A" which is vlan 10 with an ip of 10.0.1.5 which then points to 10.0.1.10 for dhcp.
    Can the WLAN client connecting to the Company A WLAN use an IP in a different IP range?(192.168.1.10?) can the wlc route? from the perspective of the DHCP server where doers the request come from? (10.0.1.5?)
    Can the DHCP server 10.0.10.10 on vlan 10 respond back with and ip on a different subnet to assign to the client to use and still be fully fonctioning? would the default gateway for the client need to be 10.0.1.5?  So the clients ip would be 192.168.1.10 /24 with a gateway of 10.0.1.5 (ip adress fo vlan10 interface on WLC) And if multiple clients on the same subnet wanted to talk to each other woudl the WLC know how to route them to each other without passing through the default gateway?
    Sorry if this is confusing I'm having a bit of a hard time explaining it in works, i can try and draw somethign up if it makes more sense.
    thanks
    Eric

    I think if you want these clients to stick to a WLAN configured on a VLAN that has a different IP addressing you could configure your VLAN with the normal IP addressing then add on the SVI the 2nd IP_Class_default_gateway.
    E.G.
    Vlan 10
    interface vlan 10
    ip address 10.0.10.1 255.255.255.0
    ip address 192.168.1.1 255.255.255.0 secondary
    Clients that receive IP address from 192.168.1.0/24 network will be able to reach 192.168.1.1 and all traffic will pass right.

  • WLC 5508 : session disconnected when one lag-port is down.

    Hello,
    I have a WLC 5508 ( version 6.0.182).
    When the port1 and port2 are connected ( The switch is configured with a etherchannel in forced mode) everything works fine: There is traffic on the 2 ports.
    When I disconnect one of the 2 ports, I can still ping outside with my PC client, but all my tcp sesssions goes down and I even cannot restart my session. The only way I found  is to do a "Disconnect / Reconnect"  on my  PC  wireless connection.
    Do you know this probleme ?
    Is it a way to avoid it ?
    Michel Misonne

    CSCth12513 LAG fail-over does not work on CT5508
    This bug is fixed in the special release available through TAC : 6.0.199.157 and 7.0.xxxx
    Hope this helps.
    Nicolas
    ===
    Dont' forget to rate answers that you find useful

  • Upgrading from WLC 4402-50 to WLC 5508-250

    I am planning to upgrade my WLC 4402-50 (HA) to WLC 5508-250 (HA). I also have some really old 1020 Access points that I will be replacing with 1142's. Once I have completed the upgrade to the 5508s, I will repurpose the 4402's as Mobile Anchor controllers to support Guest Wireless.
    Does anyone have any actual experience with this sort of upgrade? Any practical suggestions or ideas??
    Thanks,

    Hi,
    Are you still facing this issue? if yes try checking the link if that helps
    http://www.cisco.com/en/US/products/ps6366/products_qanda_item09186a008064a991.shtml
    thanks,
    Vinay

  • WLC 5508, SW 6.0.199.4, 1142 AP: Clients getting dropped intermittently

    We have deployed a WLC 5508 w/ SW version 6.0.199.4, 1142 AP's & open authentication w/ MAC filtering. Clients are randomly getting dropped with "Limited Access" shown in Win 7. In this state, the client machine is unable to ping the gateway and sometimes lose their DHCP assigned IP as well. A manual disconnect/re-connect to the SSID is required everytime.
    I ran a debug on one the clients stuck in the "Limited Access" state (debug client xx:xx:xx:xx):
    *Apr 15 16:59:23.205: e0:91:53:60:1f:e4 Adding mobile on LWAPP AP 3c:ce:73:c5:1e:b0(0)
    *Apr 15 16:59:23.205: e0:91:53:60:1f:e4 Scheduling deletion of Mobile Station:  (callerId: 23) in 5 seconds
    *Apr 15 16:59:23.205: e0:91:53:60:1f:e4 apfProcessProbeReq (apf_80211.c:4722) Changing state for mobile e0:91:53:60:1f:e4 on AP 3c:ce:73:c5:1e:b0 from Idle to Probe
    *Apr 15 16:59:23.205: e0:91:53:60:1f:e4 Scheduling deletion of Mobile Station:  (callerId: 24) in 5 seconds
    *Apr 15 16:59:23.225: e0:91:53:60:1f:e4 Scheduling deletion of Mobile Station:  (callerId: 24) in 5 seconds
    *Apr 15 16:59:23.225: e0:91:53:60:1f:e4 Scheduling deletion of Mobile Station:  (callerId: 24) in 5 seconds
    *Apr 15 16:59:23.646: e0:91:53:60:1f:e4 Scheduling deletion of Mobile Station:  (callerId: 24) in 5 seconds
    *Apr 15 16:59:23.646: e0:91:53:60:1f:e4 Scheduling deletion of Mobile Station:  (callerId: 24) in 5 seconds
    *Apr 15 16:59:23.666: e0:91:53:60:1f:e4 Scheduling deletion of Mobile Station:  (callerId: 24) in 5 seconds
    *Apr 15 16:59:23.666: e0:91:53:60:1f:e4 Scheduling deletion of Mobile Station:  (callerId: 24) in 5 seconds
    *Apr 15 16:59:28.553: e0:91:53:60:1f:e4 apfMsExpireCallback (apf_ms.c:418) Expiring Mobile!
    *Apr 15 16:59:28.554: e0:91:53:60:1f:e4 0.0.0.0 START (0) Deleted mobile LWAPP rule on AP [3c:ce:73:c5:1e:b0]
    *Apr 15 16:59:28.554: e0:91:53:60:1f:e4 Deleting mobile on AP 3c:ce:73:c5:1e:b0(0)
    On doing a manual re-connect, got the following logs:
    *Apr 15 17:01:38.143: e0:91:53:60:1f:e4 Association received from mobile on AP b8:62:1f:e9:9f:30
    *Apr 15 17:01:38.143: e0:91:53:60:1f:e4 Applying site-specific IPv6 override for station e0:91:53:60:1f:e4 - vapId 7, site 'Academy', interface 'students'
    *Apr 15 17:01:38.143: e0:91:53:60:1f:e4 Applying IPv6 Interface Policy for station e0:91:53:60:1f:e4 - vlan 15, interface id 14, interface 'students'
    *Apr 15 17:01:38.143: e0:91:53:60:1f:e4 Applying site-specific override for station e0:91:53:60:1f:e4 - vapId 7, site 'Academy', interface 'students'
    *Apr 15 17:01:38.143: e0:91:53:60:1f:e4 0.0.0.0 START (0) Changing ACL 'none' (ACL ID 255) ===> 'none' (ACL ID 255) --- (caller apf_policy.c:1276)
    *Apr 15 17:01:38.143: e0:91:53:60:1f:e4 STA - rates (8): 130 132 139 150 12 18 24 36 0 0 0 0 0 0 0 0
    *Apr 15 17:01:38.143: e0:91:53:60:1f:e4 STA - rates (12): 130 132 139 150 12 18 24 36 48 72 96 108 0 0 0 0
    *Apr 15 17:01:38.143: e0:91:53:60:1f:e4 0.0.0.0 START (0) Deleted mobile LWAPP rule on AP [b8:62:1f:e5:6a:90]
    *Apr 15 17:01:38.144: e0:91:53:60:1f:e4 Updated location for station old AP b8:62:1f:e5:6a:90-0, new AP b8:62:1f:e9:9f:30-0
    *Apr 15 17:01:38.144: e0:91:53:60:1f:e4 apfProcessAssocReq (apf_80211.c:4268) Changing state for mobile e0:91:53:60:1f:e4 on AP b8:62:1f:e9:9f:30 from Probe to AAA Pending
    *Apr 15 17:01:38.144: e0:91:53:60:1f:e4 Scheduling deletion of Mobile Station:  (callerId: 20) in 10 seconds
    *Apr 15 17:01:38.144: e0:91:53:60:1f:e4 0.0.0.0 START (0) Initializing policy
    *Apr 15 17:01:38.144: e0:91:53:60:1f:e4 0.0.0.0 START (0) Change state to AUTHCHECK (2) last state AUTHCHECK (2)
    *Apr 15 17:01:38.144: e0:91:53:60:1f:e4 0.0.0.0 AUTHCHECK (2) Change state to L2AUTHCOMPLETE (4) last state L2AUTHCOMPLETE (4)
    *Apr 15 17:01:38.144: e0:91:53:60:1f:e4 0.0.0.0 L2AUTHCOMPLETE (4) Plumbed mobile LWAPP rule on AP b8:62:1f:e9:9f:30 vapId 7 apVapId 2
    *Apr 15 17:01:38.144: e0:91:53:60:1f:e4 0.0.0.0 L2AUTHCOMPLETE (4) Change state to DHCP_REQD (7) last state DHCP_REQD (7)
    *Apr 15 17:01:38.144: e0:91:53:60:1f:e4 apfPemAddUser2 (apf_policy.c:213) Changing state for mobile e0:91:53:60:1f:e4 on AP b8:62:1f:e9:9f:30 from AAA Pending to Associated
    *Apr 15 17:01:38.145: e0:91:53:60:1f:e4 Scheduling deletion of Mobile Station:  (callerId: 49) in 65535 seconds
    *Apr 15 17:01:38.145: e0:91:53:60:1f:e4 Including FT Mobility Domain IE (length 5) in Initial assoc Resp to mobile
    *Apr 15 17:01:38.145: e0:91:53:60:1f:e4 Sending Assoc Response to station on BSSID b8:62:1f:e9:9f:30 (status 0) Vap Id 2 Slot 0
    *Apr 15 17:01:38.145: e0:91:53:60:1f:e4 apfProcessRadiusAssocResp (apf_80211.c:1957) Changing state for mobile e0:91:53:60:1f:e4 on AP b8:62:1f:e9:9f:30 from Associated to Associated
    *Apr 15 17:01:38.189: e0:91:53:60:1f:e4 DHCP received op BOOTREQUEST (1) (len 308, port 13, encap 0xec03)
    *Apr 15 17:01:38.189: e0:91:53:60:1f:e4 DHCP dropping packet due to ongoing mobility handshake exchange, (siaddr 0.0.0.0,  mobility state = 'apfMsMmQueryRequested'
    *Apr 15 17:01:39.953: e0:91:53:60:1f:e4 0.0.0.0 DHCP_REQD (7) State Update from Mobility-Incomplete to Mobility-Complete, mobility role=Local, client state=APF_MS_STATE_ASSOCIATED
    *Apr 15 17:01:39.954: e0:91:53:60:1f:e4 0.0.0.0 DHCP_REQD (7) pemAdvanceState2 4166, Adding TMP rule
    *Apr 15 17:01:39.954: e0:91:53:60:1f:e4 0.0.0.0 DHCP_REQD (7) Adding Fast Path rule
      type = Airespace AP - Learn IP address
      on AP b8:62:1f:e9:9f:30, slot 0, interface = 13, QOS = 0
      ACL Id = 255, Jumbo F
    *Apr 15 17:01:39.954: e0:91:53:60:1f:e4 0.0.0.0 DHCP_REQD (7) Successfully plumbed mobile rule (ACL ID 255)
    *Apr 15 17:01:39.954: e0:91:53:60:1f:e4 0.0.0.0 Added NPU entry of type 9, dtlFlags 0x0
    *Apr 15 17:01:39.954: e0:91:53:60:1f:e4 Sent an XID frame
    *Apr 15 17:01:40.807: e0:91:53:60:1f:e4 Orphan Packet from STA - IP 169.254.201.128
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP received op BOOTREQUEST (1) (len 308, port 13, encap 0xec03)
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP processing DHCP DISCOVER (1)
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP   op: BOOTREQUEST, htype: Ethernet, hlen: 6, hops: 0
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP   xid: 0x9b24c896 (2602879126), secs: 1280, flags: 0
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP   chaddr: e0:91:53:60:1f:e4
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP   ciaddr: 0.0.0.0,  yiaddr: 0.0.0.0
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP   siaddr: 0.0.0.0,  giaddr: 0.0.0.0
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP successfully bridged packet to DS
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP received op BOOTREPLY (2) (len 308, port 13, encap 0xec00)
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP processing DHCP OFFER (2)
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP   op: BOOTREPLY, htype: Ethernet, hlen: 6, hops: 0
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP   xid: 0x9b24c896 (2602879126), secs: 0, flags: 0
    *Apr 15 17:01:43.234: e0:91:53:60:1f:e4 DHCP   chaddr: e0:91:53:60:1f:e4
    *Apr 15 17:01:43.235: e0:91:53:60:1f:e4 DHCP   ciaddr: 0.0.0.0,  yiaddr: 10.6.2.160
    *Apr 15 17:01:43.235: e0:91:53:60:1f:e4 DHCP   siaddr: 0.0.0.0,  giaddr: 0.0.0.0
    *Apr 15 17:01:43.235: e0:91:53:60:1f:e4 DHCP   server id: 10.6.15.254  rcvd server id: 10.6.15.254
    *Apr 15 17:01:43.235: e0:91:53:60:1f:e4 DHCP successfully bridged packet to STA
    *Apr 15 17:01:43.240: e0:91:53:60:1f:e4 DHCP received op BOOTREQUEST (1) (len 316, port 13, encap 0xec03)
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP processing DHCP REQUEST (3)
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   op: BOOTREQUEST, htype: Ethernet, hlen: 6, hops: 0
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   xid: 0x9b24c896 (2602879126), secs: 1280, flags: 0
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   chaddr: e0:91:53:60:1f:e4
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   ciaddr: 0.0.0.0,  yiaddr: 0.0.0.0
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   siaddr: 0.0.0.0,  giaddr: 0.0.0.0
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   requested ip: 10.6.2.160
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   server id: 10.6.15.254  rcvd server id: 10.6.15.254
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP successfully bridged packet to DS
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP received op BOOTREPLY (2) (len 308, port 13, encap 0xec00)
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP processing DHCP ACK (5)
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   op: BOOTREPLY, htype: Ethernet, hlen: 6, hops: 0
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   xid: 0x9b24c896 (2602879126), secs: 0, flags: 0
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   chaddr: e0:91:53:60:1f:e4
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   ciaddr: 0.0.0.0,  yiaddr: 10.6.2.160
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   siaddr: 0.0.0.0,  giaddr: 0.0.0.0
    *Apr 15 17:01:43.241: e0:91:53:60:1f:e4 DHCP   server id: 10.6.15.254  rcvd server id: 10.6.15.254
    *Apr 15 17:01:43.242: e0:91:53:60:1f:e4 10.6.2.160 DHCP_REQD (7) Change state to RUN (20) last state RUN (20)
    *Apr 15 17:01:43.242: e0:91:53:60:1f:e4 10.6.2.160 RUN (20) Reached PLUMBFASTPATH: from line 4972
    *Apr 15 17:01:43.242: e0:91:53:60:1f:e4 10.6.2.160 RUN (20) Replacing Fast Path rule
      type = Airespace AP Client
      on AP b8:62:1f:e9:9f:30, slot 0, interface = 13, QOS = 0
      ACL Id = 255, Jumbo Frames = NO,
    *Apr 15 17:01:43.242: e0:91:53:60:1f:e4 10.6.2.160 RUN (20) Successfully plumbed mobile rule (ACL ID 255)
    *Apr 15 17:01:43.242: e0:91:53:60:1f:e4 Assigning Address 10.6.2.160 to mobile
    *Apr 15 17:01:43.242: e0:91:53:60:1f:e4 DHCP successfully bridged packet to STA
    *Apr 15 17:01:43.242: e0:91:53:60:1f:e4 10.6.2.160 Added NPU entry of type 1, dtlFlags 0x0
    *Apr 15 17:01:43.242: e0:91:53:60:1f:e4 Sending a gratuitous ARP for 10.6.2.160, VLAN Id 15
    *Apr 15 17:01:46.428: e0:91:53:60:1f:e4 DHCP received op BOOTREQUEST (1) (len 308, port 13, encap 0xec03)
    *Apr 15 17:01:46.428: e0:91:53:60:1f:e4 DHCP processing DHCP INFORM (8)
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP   op: BOOTREQUEST, htype: Ethernet, hlen: 6, hops: 0
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP   xid: 0xbb0d5d87 (3138215303), secs: 0, flags: 0
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP   chaddr: e0:91:53:60:1f:e4
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP   ciaddr: 10.6.2.160,  yiaddr: 0.0.0.0
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP   siaddr: 0.0.0.0,  giaddr: 0.0.0.0
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP successfully bridged packet to DS
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP received op BOOTREPLY (2) (len 308, port 13, encap 0xec00)
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP processing DHCP ACK (5)
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP   op: BOOTREPLY, htype: Ethernet, hlen: 6, hops: 0
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP   xid: 0xbb0d5d87 (3138215303), secs: 0, flags: 0
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP   chaddr: e0:91:53:60:1f:e4
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP   ciaddr: 10.6.2.160,  yiaddr: 0.0.0.0
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP   siaddr: 0.0.0.0,  giaddr: 0.0.0.0
    *Apr 15 17:01:46.429: e0:91:53:60:1f:e4 DHCP   server id: 10.6.15.254  rcvd server id: 10.6.15.254
    show client e0:91:53:60:1f:e4 (after re-connect)
    (Cisco Controller) >show client detail e0:91:53:60:1f:e4
    Client MAC Address............................... e0:91:53:60:1f:e4
    Client Username ................................. N/A
    AP MAC Address................................... b8:62:1f:e9:9f:30
    Client State..................................... Associated    
    Client NAC OOB State............................. Access
    Wireless LAN Id.................................. 7 
    BSSID............................................ b8:62:1f:e9:9f:31 
    Connected For ................................... 105 secs
    Channel.......................................... 11
    IP Address....................................... 10.6.2.160
    Association Id................................... 8 
    Authentication Algorithm......................... Open System
    Reason Code...................................... 1 
    Status Code...................................... 0 
    Session Timeout.................................. 65535
    Client CCX version............................... No CCX support
    QoS Level........................................ Silver
    Diff Serv Code Point (DSCP)...................... disabled
    802.1P Priority Tag.............................. disabled
    WMM Support...................................... Enabled
    U-APSD Support................................... Disabled
    Power Save....................................... OFF
    Current Rate..................................... m7
    Supported Rates.................................. 1.0,2.0,5.5,11.0,6.0,9.0,
        ............................................. 12.0,18.0,24.0,36.0,48.0,
        ............................................. 54.0
    Mobility State................................... Local
    Mobility Move Count.............................. 0
    Security Policy Completed........................ Yes
    Policy Manager State............................. RUN
    Policy Manager Rule Created...................... Yes
    ACL Name......................................... none
    ACL Applied Status............................... Unavailable
    Policy Type...................................... N/A
    Encryption Cipher................................ None
    Management Frame Protection...................... No
    EAP Type......................................... Unknown
    Interface........................................ students
    VLAN............................................. 15
    Quarantine VLAN.................................. 0
    Access VLAN...................................... 15
    Client Capabilities:
          CF Pollable................................ Not implemented
          CF Poll Request............................ Not implemented
          Short Preamble............................. Implemented
          PBCC....................................... Not implemented
          Channel Agility............................ Not implemented
          Listen Interval............................ 1
          Fast BSS Transition........................ Not implemented
    Fast BSS Transition Details:
    Client Statistics:
          Number of Bytes Received................... 36509
          Number of Bytes Sent....................... 32902
          Number of Packets Received................. 300
          Number of Packets Sent..................... 66
          Number of EAP Id Request Msg Timeouts...... 0
          Number of EAP Request Msg Timeouts......... 0
          Number of EAP Key Msg Timeouts............. 0
          Number of Data Retries..................... 95
          Number of RTS Retries...................... 0
          Number of Duplicate Received Packets....... 1
          Number of Decrypt Failed Packets........... 0
          Number of Mic Failured Packets............. 0
          Number of Mic Missing Packets.............. 0
          Number of Policy Errors.................... 0
          Radio Signal Strength Indicator............ -66 dBm
          Signal to Noise Ratio...................... 29 dB
    Nearby AP Statistics:
          APSOEBFF_COR3(slot 0) .....................
    antenna0: 50 seconds ago -91 dBm................. antenna1: 50 seconds ago -76 dBm
          APSOEAFF_FAC(slot 0) ......................
    antenna0: 108 seconds ago -89 dBm................ antenna1: 108 seconds ago -87 dBm
          APSOEBGF_FAC(slot 0) ......................
    antenna0: 50 seconds ago -82 dBm................. antenna1: 50 seconds ago -71 dBm
          APSOEBGF_STAFF(slot 0) ....................
    antenna0: 49 seconds ago -74 dBm................. antenna1: 49 seconds ago -58 dBm
    WLAN config
    WLAN Identifier.................................. 9
    Profile Name..................................... STAFF
    Network Name (SSID).............................. STAFF
    Status........................................... Enabled
    MAC Filtering.................................... Enabled
    Broadcast SSID................................... Enabled
    AAA Policy Override.............................. Disabled
    Network Admission Control
      NAC-State...................................... Disabled
      Quarantine VLAN................................ 0
    Number of Active Clients......................... 32
    Exclusionlist.................................... Disabled
    Session Timeout.................................. Infinity
    CHD per WLAN..................................... Disabled
    Webauth DHCP exclusion........................... Disabled
    Interface........................................ staff
    WLAN ACL......................................... unconfigured
    DHCP Server...................................... Default
    DHCP Address Assignment Required................. Disabled
    Quality of Service............................... Silver (best effort)
    Scan Defer Priority.............................. 5,6
    Scan Defer Time.................................. 100 milliseconds
    WMM.............................................. Allowed
    Media Stream Multicast-direct.................... Disabled
    CCX - AironetIe Support.......................... Enabled
    CCX - Gratuitous ProbeResponse (GPR)............. Disabled
    CCX - Diagnostics Channel Capability............. Disabled
    Dot11-Phone Mode (7920).......................... Disabled
    Wired Protocol................................... None
    IPv6 Support..................................... Disabled
    Peer-to-Peer Blocking Action..................... Disabled
    Radio Policy..................................... All
    DTIM period for 802.11a radio.................... 1
    DTIM period for 802.11b radio.................... 1
    Radius Servers
       Authentication................................ Disabled
       Accounting.................................... Disabled
       Dynamic Interface............................. Disabled
    Local EAP Authentication......................... Disabled
    Security
       802.11 Authentication:........................ Open System
       Static WEP Keys............................... Disabled
       802.1X........................................ Disabled
       Wi-Fi Protected Access (WPA/WPA2)............. Disabled
       CKIP ......................................... Disabled
       Web Based Authentication...................... Disabled
       Web-Passthrough............................... Disabled
       Conditional Web Redirect...................... Disabled
       Splash-Page Web Redirect...................... Disabled
       Auto Anchor................................... Disabled
       H-REAP Local Switching........................ Disabled
       H-REAP Learn IP Address....................... Enabled
       Infrastructure MFP protection................. Enabled (Global Infrastructure MFP Disabled)
       Client MFP.................................... Optional but inactive (WPA2 not configured)
       Tkip MIC Countermeasure Hold-down Timer....... 60
    Call Snooping.................................... Disabled
    Band Select...................................... Disabled
    Load Balancing................................... Disabled
    HELPPPP!

    We have 75 evenly distributed AP's servicing the 500 odd users. Found the below traps on WLC. I was making some changes in the WLAN settings at the time:
    Tue Apr 16 00:03:45 2013          Client Excluded: MACAddress:8c:a9:82:5d:d2:dc Base Radio MAC :3c:ce:73:c6:fe:00 Slot: 0 User Name: unknown Ip Address: unknown Reason:802.11 Association failed repeatedly. ReasonCode: 2
    106          Tue Apr 16 00:03:45 2013          Client Excluded: MACAddress:58:94:6b:f2:24:c8 Base Radio MAC :c8:f9:f9:4c:01:30 Slot: 1 User Name: unknown Ip Address: unknown Reason:802.11 Association failed repeatedly. ReasonCode: 2
    107          Tue Apr 16 00:03:45 2013          Client Excluded: MACAddress:bc:77:37:72:dc:0b Base Radio MAC :3c:ce:73:c6:53:10 Slot: 0 User Name: unknown Ip Address: unknown Reason:802.11 Association failed repeatedly. ReasonCode: 2
    108          Tue Apr 16 00:03:45 2013          Client Excluded: MACAddress:00:26:c7:7d:12:76 Base Radio MAC :3c:ce:73:c4:79:80 Slot: 0 User Name: unknown Ip Address: unknown Reason:802.11 Association failed repeatedly. ReasonCode: 2
    109          Tue Apr 16 00:03:45 2013          Client Excluded: MACAddress:bc:77:37:75:1f:93 Base Radio MAC :c8:f9:f9:2b:85:30 Slot: 0 User Name: unknown Ip Address: unknown Reason:802.11 Association failed repeatedly. ReasonCode: 2
    110          Tue Apr 16 00:03:45 2013          Client Excluded: MACAddress:ac:72:89:58:8e:b9 Base Radio MAC :3c:ce:73:c6:53:10 Slot: 0 User Name: unknown Ip Address: unknown Reason:802.11 Association failed repeatedly. ReasonCode: 2
    111          Tue Apr 16 00:03:44 2013          Client Excluded: MACAddress:bc:77:37:26:cd:e3 Base Radio MAC :3c:ce:73:c5:1f:10 Slot: 0 User Name: unknown Ip Address: unknown Reason:802.11 Association failed repeatedly. ReasonCode: 2
    112          Tue Apr 16 00:03:44 2013          Client Excluded: MACAddress:ac:72:89:25:ea:e0 Base Radio MAC :3c:ce:73:c6:77:70 Slot: 0 User Name: unknown Ip Address: unknown Reason:802.11 Association failed repeatedly. ReasonCode: 2
    113          Tue Apr 16 00:03:44 2013          Client Excluded: MACAddress:00:24:2c:6a:85:3d Base Radio MAC :3c:ce:73:c6:6a:50 Slot: 0 User Name: unknown Ip Address: unknown Reason:802.11 Association failed repeatedly. ReasonCode: 2
    114          Tue Apr 16 00:03:44 2013          Client Excluded: MACAddress:68:5d:43:61:16:51 Base Radio MAC :3c:ce:73:f6:0c:20 Slot: 0 User Name: unknown Ip Address: unknown Reason:802.11 Association failed repeatedly. ReasonCode: 2
    115          Tue Apr 16 00:03:44 2013          Client Excluded: MACAddress:7c:d1:c3:8a:64:f6 Base Radio MAC :3c:ce:73:c4:74:20 Slot: 1 User Name: unknown Ip Address: unknown Reason:802.11 Association failed repeatedly. ReasonCode: 2

Maybe you are looking for