AP Telnet & http problem

i have cisco AP 1131AG-E-K9. i am getting a problem in it, that i cant telnet the device from my pc and when i try to open in http its also not responding.
axcept that i can update the ios of device and can give the ip to interfaces and also configured the telnet but still there is no telnet and http working.
this erroe comes when i telnet the device.
could not open connection to the host, on port 23: connection failed.

i have the console connection with AP and this is the show run and show version of the AP.
ap#show run
Building configuration...
Current configuration : 1414 bytes
version 12.3
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
hostname ap
enable secret xxx
ip subnet-zero
no aaa new-model
power inline negotiation prestandard source
username Cisco password xxx
bridge irb
interface Dot11Radio0
no ip address
no ip route-cache
shutdown
speed
station-role root
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
bridge-group 1 spanning-disabled
interface Dot11Radio1
no ip address
no ip route-cache
shutdown
speed
station-role root
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
bridge-group 1 spanning-disabled
interface FastEthernet0
no ip address
no ip route-cache
duplex auto
speed auto
bridge-group 1
no bridge-group 1 source-learning
bridge-group 1 spanning-disabled
hold-queue 160 in
interface BVI1
ip address 192.168.1.1 255.255.255.0
no ip route-cache
ip http server
no ip http secure-server
ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
control-plane
bridge 1 route ip
line con 0
line vty 0 4
password xxx
login
end
ap#show sh tac ecq
ap#sh tech-support
------------------ show version ------------------
Cisco IOS Software, C1130 Software (C1130-K9W7-M), Version 12.3(8)JA2, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2006 by Cisco Systems, Inc.
Compiled Tue 30-May-06 18:05 by pwade
ROM: Bootstrap program is C1130 boot loader
BOOTLDR: C1130 Boot Loader (C1130-BOOT-M) Version 12.3(7)JA1, RELEASE SOFTWARE (fc1)
ap uptime is 2 minutes
System returned to ROM by power-on
System image file is "flash:/c1130-k9w7-mx.123-8.JA2"
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
[email protected].
cisco AIR-AP1131AG-A-K9 (PowerPCElvis) processor (revision A0) with 24566K/8192K bytes of memory.
Processor board ID FOC09501JTE
PowerPCElvis CPU at 262Mhz, revision number 0x0950
Last reset from power-on
1 FastEthernet interface
2 802.11 Radio(s)
32K bytes of flash-simulated non-volatile configuration memory.
Base ethernet MAC Address: 00:16:46:F2:B3:A4
Part Number : 73-8962-09
PCA Assembly Number : 800-24818-08
PCA Revision Number : A0
PCB Serial Number : FOC09501JTE
Top Assembly Part Number : 800-25544-06
Top Assembly Serial Number : FHK1001C02E
Top Revision Number : A0
Product/Model Number : AIR-AP1131AG-A-K9
Configuration register is 0xF

Similar Messages

  • Limit switch access (telnet, http)

    Situation: c3750 Layer3 switch acting as router for my LAN, with several (more than 40) L3 virtual interfaces.
    Target: I want to permit access to the switch only from some L3 interfaces (these with an @IP 10.255.x.x) and deny telnet/http request on other interfaces (with @IP 10.252.x.x). For telnet, I putted on the switch the following commands:
    Switch(config)#access-list 101 permit ip any 10.255.0.0 0.0.255.255 log
    Switch(config)#access-list 101 deny ip any any log
    Switch(config-line)#access-class 101 in
    Problem:
    - telnet traffic is blocked on ALL interfaces
    - if I try a telnet from a PC (10.255.10.100) to the switch (10.255.10.1) I see the following syslog message:
    Aug 23 13:36:49: %SEC-6-IPACCESSLOGP: list 101 denied tcp 10.255.10.100(1709) -> 0.0.0.0(23), 1 packet
    Why destination IP address is 0.0.0.0?
    Second question: how can I activate the same filter on http access (ip http access-class accepts only standard access-lists, therefore I cannot check destination IP address)?

    Giovanni,
    You access list is producinging unintended results. You list actually says: "If you come from anywhere you can do ip to 10.255.0.0 0.0.255.255". What you probably want is the opposite. Standard access lists are most effective for restricting this type of access because it eliminates this confusion. You don't need extended lists to limit access to vty. The destination is irrelevant because the packet is not getting routed through. On this basis the standard list poses no limitation for your http access control. Standard lists are good for vty, http, snmp-server restrictions. As far as the 0.0.0.0 destination, I do not know why this was stripped out. Probably due to the fact that the packet is destined for the switch.
    HTH
    Pls rate if helpful!

  • Https problems in IE, Chrome, Skype, but not Firefox

    I have a user whose account on a win2003 domain was deleted by accident (I have no idea how). I recreated the account and recovered the user profile from a local machine. The local machines all run Win7.
    Everything seems to work fine again now except that https calls through Internet Explorer and Chrome fail with error messages that seem to indicate the site is simply not available rather than a certificate error or the like. Firefox works fine to access
    the same sites. I believe Firefox only works because it doesn`t use the built in security.
    Other accounts on the same machine can make https calls without trouble. My assumption is that there is an issue in the user's profile, but moving the Chrome and IE directories from the AppData directory in the user's profile accomplished no change in behaviour.
    I found KB 813444 and attempted to follow the instructions there to some extent (they seem aimed at XP and Vista), but couldn't re-register the dlls. None of the other changes made any difference. Likely not the problem anyway as the problem does not occur
    for any other account that logs into the machine.
    There really seems to be something wrong in the user profile. Permissions too loose on a directory somewhere? But where?
    The system is a brand new HP tower with Windows 7 on it. Fresh install about a month ago and kept up to date. All other profiles on the machine work fine. Using the same profile on another machine has the same problem of being unable to connect to https
    sites. The error received is not a certificate error, but indicates that the site can't be found, which suggests to me some fundamental failure in the security setup of the user profile. However, I've been unable to find where that information might be stored.
    Clearing the SSL state from within Internet options has had no effect on this issue, nor has compatibility mode or any of the things that are possible on Windows 7 from kb813444.
    Any thoughts?
    Keith

    Hello Keith,
    If my understanding is right, you only have one account have this https problem.
    Will this issue occurs when you create an login as a new account?
    If this issue only occur in the single account, we could refer to the following article to fix the profile.
    Fix a corrupted user profile
    http://windows.microsoft.com/en-us/windows/fix-corrupted-user-profile#1TC=windows-7
    Best regards,
    Fangzhou CHEN
    Fangzhou CHEN
    TechNet Community Support

  • Adobe Reader, Telnet Hyperlink Problem

    Hi, I met a telnet Hyperlink Problem in Adobe Reader.
    When click the Hyperlink (like telnet://a.b.c.d), Adobe reader gives me a Alert:
    Acrobat does not allow connection to: telnet://a.b.c.d
    And I also need to open this telnet hyperlink in web browser with Adobe reader plugin.
    Would you please give me some help?

    Acrobat and Adobe Reader recently closed off access to custom protocols. Telnet is a standard protocol, but I can't see Adobe leaving it working.

  • Telnet read problem -- Telnet read back

    I am trying to use telnet to send TL1 command to my UUT and expect to read back measurement data.  I was able to read proper data once in a while but most of the time I read back the TL1 command that I sent.  I tried different read mode and timeout period but nothing seem to matter.  My vi was written in Labview 8.2.1 with Internet toolkit.  I read in the forum about some limitation of the telnet read problem of the vi from the internet toolkit,  Is there any better read driver around?
    Thanks,
    Patrick 

    Hey!  I have a few questions for you that should help us solve this problem.  First, have you tried out the telnet shipping example "Telnet Line Client.vi".  This will help us minimize programming errors, etc.  Also, what type of device are you trying to communicate with?  Are there other forms of communication available?  For example, does the device also have a serial port, GPIB Port, etc.?  Also, is it possible to write to the device using TCP/IP (This is what telnet is based on)?  Let me know the answers to these questions and I will be better equipped to help you out!!
    Thanks!
    Dan
    Daniel Eaton
    National Instruments
    Systems Engineering
    Embedded and Industrial Control

  • Cut-through authentication vs. virtual telnet/http

    Hi,
    I'm having difficulties understanding the meaning of the virtual telnet/http commands on the ASA.
    I have configured an ASA and defined an access-list with all the traffic which is to be authenticated. These are protocols like RDP, which can't be intercepted by the ASA, but also HTTP and HTTPS which can indeed be intercepted (this is also referred as cut-trough authentication).
    The setup principially works. Then a few consultants came and checked my config for errors. They also performed a portscan, where they found out that all protected services (which should only work after authenticating) were answered by the ASA (a tcp-session was started), so an attacker would know what potential services are behind the firewall.
    The customer (and me) disliked this behaviour, and I thought this could be solved by using the virtual http feature. Define a seperate IP-Adress, to which you can connect via HTTPs and authenticate, after which you can reach all other services.
    Can this be done with this feature? My testresults showed just the behaviour, that you can authenticate at the virtual http-address, but the cut-through authentication is still active, so that's not the solution.
    To be honest, I even believe that the virtual telnet/http feature is completely useless! Why? Because to make it work, you have to
    1) allow the ip an the inbound ACL
    2) add the ip in the ACL where the authenticated traffic is defined
    3) configure a NAT for this ip to be routed inside
    I don't really see a practical reason for this command - Thanks for your thought...
    Florian

    Hi Florian / Jeff
    I agree largely with what you are saying and have found similiar issues with it. if you are already authenticating to a web service the additional config of a virtual http service seems unnecessary.
    But i think one instance where virtual telnet is useful is if you have services such as RDP etc. that you need to authenticate but you don't have a web server or telnet server to authenticate against.
    Without virtual telnet i'm not sure how you could setup access to these services so you would need virtual telnet in this case.
    Where i find the command particularly useless is that i want to authenticate people accessing for example terminal servers on a particular subnet. This subnet is also running web servers.
    Now say i want to do this via http authentication. I'm trying to authentciate them because i don't know their IP addresses. So i enter an authentication command for http but now everyone who wants to use http has to authenticate and not just people who are going to be using terminal services.
    Regards

  • Urgent help telnet remote problem

    Hello,
    i have a problem with remote telnet connection to cisco 800 series router
    I can connect via telnet/ssh from my local network when connecting to public ip
    but nobody can connect from outside
    here is my config
    interface FastEthernet4
    ip address 85.xx.xx.xx 255.255.255.252
    ip nat outside
    ip virtual-reassembly
    duplex auto
    speed auto
    interface Vlan1
    ip address 192.168.1.1 255.255.255.0
    ip nat inside
    ip virtual-reassembly
    ip forward-protocol nd
    ip route 0.0.0.0 0.0.0.0 85.xx.xx.xx
    no ip http server
    no ip http secure-server
    ip nat inside source list 10 interface FastEthernet4 overload
    access-list 10 permit any
    line con 0
    password cisco
    login
    no modem enable
    line aux 0
    line vty 0 4
    password cisco
    login
    transport input all
    transport output all
    HELP

    I have seen problems before with very similar symptoms that telnet did work from inside but did not work from outside. In most of these cases it turned out to be a problem in the way that address translation was configured. I suggest that you change the access list used to select traffic for address translation.
    no access-list 10
    access-list 10 permit 192.168.1.0 0.0.0.255
    Give this a try and let us know if it helps.
    HTH
    Rick

  • HTTP Problem

    hi all
    i m having 9i application server 9.0.2.0.1
    as per oracle documentation there is a problem with this version in http service
    once the service starts,it remains in the memory untill we manually kill it
    even though it becomes idle for a long time or even application closed.......
    is there any solution for that?
    can any one having the idea wht to do in this situation?
    thanx
    Viral

    Hi,
    do you have a bug number so I can look up if there is a fix?
    Frank

  • Mangled file downloads over http problem in 10g

    I have a web app running in an OC4J stand alone 10.1.3.3 and am having a problem with downloading files over http. Its a struts2 app whose file downloading impl is easy to use and standard code for writing to an http servlet response output stream.
    Using the firefox plugin for Live Headers I can see that the headers are correctly added to the servlet response and I do get the file I want. However the file has been mangled with binary output around the text. This is the case for txt, word, or any other file.
    This problem does not occur in Jetty or Tomcat. I've also ruled out file corruption while going in/out of the database since I can upload a file when running oc4j, turn off oc4j, start up my app in Jetty and retrieve the same file just fine.
    The mime types are all accounted for and the problem exists regardless if I use a specific content type or just application/download. My browsers (firefox and ie) also recognize all files from the content disposition value "attachment; filename=myfilename.ext". Its just the file content that some how has been wrecked on the way out of the container.
    Has anyone experienced this? I only found one or two unanswered posts elsewhere.
    How can this be mitigated?
    Thanks in advance.
    Andrew

    Figured it out when I realized it was in fact the data coming from the database that was corrupt. There were some older posts on the hibernate website that pointed to a single property that needs to go in the hibernate.properties file: hibernate.jdbc.use_streams_for_binary=true. Without it, Oracle returns the Blob locator consistently 86 bytes in length and therefore bad binary.

  • Telnet & Ping Problem

    Hello,
    I have problem in 2950 Switch, i configured a IP address on it, but when i try ping or telnet this switch, switch does not respond to my telnet and ping.
    But when i check a SH CDP NEIG command on a connected switch, Switch display the switch, i have change th e IOS, i am connecting through the console port too, but no error message appears on the logg.
    Thank You

    Hello,
    I have try, to change the trunk with swi mod acc, but still switch doesnot ping the default gateway.
    Second thing my switch is not connected with a 3550 switch, my switch's next hope is 2950 then 3550.
    Below is the output of sh int vlan1 command,
    Vlan1 is up, line protocol is up
    Hardware is CPU Interface, address is ff0b.5f12.1180 (bia ff0b.5f12.1180)
    Internet address is 192.168.0.12/25
    MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec,
    reliability 255/255, txload 1/255, rxload 1/255
    Encapsulation ARPA, loopback not set
    ARP type: ARPA, ARP Timeout 04:00:00
    Last input 00:00:00, output never, output hang never
    Last clearing of "show interface" counters never
    Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
    Queueing strategy: fifo
    Output queue: 0/40 (size/max)
    5 minute input rate 70000 bits/sec, 46 packets/sec
    5 minute output rate 0 bits/sec, 0 packets/sec
    344495 packets input, 64960868 bytes, 0 no buffer
    Received 72272 broadcasts (0 IP multicast)
    0 runts, 0 giants, 11 throttles
    0 input errors, 0 CRC, 0 frame, 0 overrun, 576 ignored
    6529 packets output, 472302 bytes, 0 underruns
    0 output errors, 2 interface resets
    0 output buffer failures, 0 output buffers swapped out

  • Safari https problem

    Please help! Safari will not load certain https sites. it just stopped working about a week ago, these sites have never been an issue in the past (work email and bank account). the computer is connected via ethernet cable to cable modem. If I use a wireless network at the neighbors house the sites load fine. If I use the neighbors ethernet the sites load fine. However, when we hook my wifes PC to the same ethernet cable at home (the one that doesn't work for the desired sites on the mac) the load fine. Technicians from the cable company ensure that the modem etc is fine. I even re-installed OS X 10.6.6. Why won't these sites work at home when they work in other locations, and why do they work for my wife's computer? Very frustrating, seems to be a communication problem with the modem?

    Hello Y:
    After rereading your post, it looks like a networking problem (although why your wife's system works and yours does not on the same network is a puzzle). Is her OS X configuration the same as yours?
    You might try posting in the networking forum to see if someone there can see something:
    http://discussions.apple.com/forum.jspa?forumID=1343
    I never say never, but changing Safari to open in the 32 bit mode would not seem address your issue (I access many secure sites and do not have that configuration).
    Barry

  • IDOC - HTTP Problem

    Hi All
    I have senario  IDOC - HTTP  the flow will be like this
    IDOC - HTTP - HTTPRESPONSE - IDOC AUDIT
    I  have planned to use BPM but the problem is when Creating Message interface i cannot make 
    idoc as sych so please tell me how may MI and IM will come
    Jayaraman

    Hi Prateek
    Thanks for the reply but the problem is
    1) Receiver( IDOC ) - xyz idoc -ok
    2) Tranform(idoc to http) - ok
    3) Send Sync
    The problem is here  i need to create a Syn MI that is
    IDOC - HTTP
    HTTP- AUDIT
    how to create MI and when you creat interface mapping also the problem will arise
    and when configuring Interface determination it will ask for SYNC inbound how to over come this problem
    Jayaraman

  • HTTPS problem

    Friends,
    I am using the JSSE 1.0.2 implementation for sending a HTTPS request. I have installed it as an extension properly.(on Java2, JDK 1.2.2)
    I am getting the following exception when trying to do a url.openConnection().
    Exception in thread "main" java.net.SocketException: SSL implementation not avai
    lable
    at javax.net.ssl.DefaultSSLSocketFactory.createSocket([DashoPro-V1.2-120
    198])
    at com.sun.net.ssl.internal.www.protocol.https.HttpsClient.doConnect([Da
    shoPro-V1.2-120198])
    at com.sun.net.ssl.internal.www.protocol.https.NetworkClient.openServer(
    [DashoPro-V1.2-120198])
    at com.sun.net.ssl.internal.www.protocol.https.HttpClient.l([DashoPro-V1
    .2-120198])
    at com.sun.net.ssl.internal.www.protocol.https.HttpClient.<init>([DashoP
    ro-V1.2-120198])
    at com.sun.net.ssl.internal.www.protocol.https.HttpsClient.<init>([Dasho
    Pro-V1.2-120198])
    at com.sun.net.ssl.internal.www.protocol.https.HttpsClient.a([DashoPro-V
    1.2-120198])
    at com.sun.net.ssl.internal.www.protocol.https.HttpsClient.a([DashoPro-V
    1.2-120198])
    at com.sun.net.ssl.internal.www.protocol.https.HttpsURLConnection.connec
    t([DashoPro-V1.2-120198])
    at com.sun.net.ssl.internal.www.protocol.https.HttpsURLConnection.getOut
    putStream([DashoPro-V1.2-120198])
    at com.sabre.tw.shared.TWClient.postTWRequest(TWClient.java, Compiled Co
    de)
    at com.sabre.tw.shared.TWClient.main(TWClient.java, Compiled Code)
    Can anyone tell me what could be wrong? The J2SE manual gives me the following documentation which is not too clear to me.
    Cause : There was a problem with SSLContext initialization, for example due to a
    corrupted keystore. (Note: One vendor has shipped a keystore in an unknown format,
    and that may cause this type of error.)
    Solution : Check initialization parameters. Ensure any keystores specified are valid
    (e.g., by trying to use the keytool to examine them).
    Thanks for your help.
    Ram

    I have the provider listed on my java.security file already. I also tried the addProvider but I am getting back the same problem? Any ideas?
    Thanks,
    Ram

  • HTTPS problem in Header Portlet

    I have a header portlet that includes a graphic for our company logo. For some reason this particular image URL is not being transformed by the portal to use HTTPS on the login screen. All other images are being transformed, but not the one in the header portlet. I don't want to hard code it to use https all the time because that will cause me problems once my users are logged in. Anyone know how to fix this?
    Dana

    HI all,
    delete HEADER where MATERAL = ITEM-MATERIAL and
                                     Opening_balance eq 0.
    IN THIS LOGIC BOTH MATERIALS IS COMMING.
    Remaining all logic both were deleted.
    like this
    loop at ITEM where MENGE_CL = 0 AND MENGE_ADD = 0 AND
    MENGE_S = 0 AND MENGE_TO = 0 AND
    MENGE_CR = 0 AND MENGE_R = 0 AND
    MENGE_AD = 0 AND MENGE_BAL = 0 AND MENGE_O = 0.
    <b>READ TABLE HEADER WITH KEY MATERAL = ITEM-MATERIAL.
    Delete only if open balance is zero
    IF HEADER-<OPEN_BALANCE> EQ 0.
    delete HEADER where MATERAL = ITEM-MATERIAL.
    ENDIF></b>
    thanks,
    Sreedhar

  • WLC upgrade up from 5.1.151 https problem

    Hi,
    I  'm trying to upgrade WLC 4402 up from 5.1.151. After upgrade to 5.2 or higher https  interface is inaccessible. If I use any other previous version, all is  OK. Somewhere I found  recomendation to open http before upgrade and use it at first. It  works, but what to do next? To stay on http only?
    UgisD.

    Ive upgarded more than my share of WLCs and I cant say I ever had this problem. Is http/https enabled and did you save the config ?

Maybe you are looking for

  • NO Wireless for my iPad Air

    Eight hours of trying, but still no wireless. I am ready to give up. I have read several posts, and I have tried everything: 1. Shut off my Netgear router/restarted it 2. Reset settings on my iPad Air 3. Used airplane mode to turn off wireless before

  • Using BC4J Session Bean in OC4J 10.1.3 with dynamic ports

    Hi Folks! I've benn having trouble connecting my BC4J Session Bean to an Oracle 10gAS R3 server instance tha uses dynamic ports. After migrating a BC4J/Struts/JSP application from 9iAS to 10gAS R3, I'm trying to connect from a client application to m

  • Cable conniction for 6280

    i got a probleme with my conniction from my mobile to pc suit...the funny thing is that it was working fine for 2 days ago and now it cant connect... i think my pc and my mobile is able to connect but not to pc suit...and i tryet another cable.. anyb

  • Setting a management IP on a Catalyst 4705E

    Hello everybody, I admit I am not the best when it comes to Cisco kit, so I was wondering whether somebody can help me. My company has just taken over a business centre where there is a 4705E on each floor. The two switches on the ground and first fl

  • Strange folders into C partition created from alone

    Hi everybody Lately i found out that there were some folders created in my C disk, that i've never seen before. When i tried to delete them they did not give me permission to do so. I will give you some of the names of these folders, if that helps in