AP WLC poe settings

In the properties of our AP1131 under the advanced tab there are poe settings. I have up on this. Most of our AP1131 are powered by Cisco 3750 switches. A few are power by Cisco poe injectors.
What are the purpose of those poe settings for the AP? How would one set them for a 3750 attached AP versus one with a poe injector.

Hi Craig,
The settings are described in the attached dos;
The 1131 requires either IEEE 802.3af power or needs a setting on the WLC for using power injector or Cisco Pre-Standard PoE. Our older switches could only provide Cisco Pre-Standard PoE so we had to tweak the WLC Power setting for these AP's. Once we did that the Radios came right up. Here is a reference;
You may have to enter the following info in the WLC;
While the AP boots, with its Intelligent Power Management feature, it negotiates with the switch via Cisco Discovery Protocol messages in order to provide the necessary power to the AP. Even though the power injector is connected to the AP, the AP that uses this Intelligent Power Management feature gives priority to the Cisco Discovery Protocol information in order to identify whether or not the switch can provide the power. Therefore, after the Cisco Discovery Protocol message shows that the switch does not provide sufficient power (since it is not an inline power capable switch), the AP disables its radios. At this time, the status LED of the AP turns orange and this error message is recorded:
[ERROR] : AP has not enough in-line power
to enable radio slot 1 In order to overcome this problem, issue the
config ap power injector enable installed
command on the controller that is connected with this AP. This command is available from controller version 3.2.116.21. Ensure that you use the correct version in the controller.
This command specifies that a power injector is used in order to supply sufficient power to the AP.
From this doc;
Cisco Aironet and WLAN Controller Product Power Options
http://www.cisco.com/en/US/products/hw/wireless/ps430/products_tech_note09186a00800946e7.shtml
Here is the method used via WLC GUI;
http://www.cisco.com/en/US/docs/wireless/controller/4.0/configuration/guide/c40lwap.html#wp1134787
Hope this helps!
Rob

Similar Messages

  • LWAP PoE settings when using power injector

    We have 3500 series access points connected to a 5508 WLC. What power over ethernet option should I select for an AP thats using a power injector? Prestandard State or Power Injector State?

    Just leave it alone.  This setting is for old APs like the 1130 and 1240 and older.

  • WLC DHCP Settings - Under Dynamic Interface configuration

    Hi Guys,
    If I have a dynamic interface that is connected to a subnet where the router interfaces have DHCP servers configured under the helper address commands, do I need to configure the DHCP fields under the dynamic interface configuration?
    I have helper address configured on the connected routers AND these fields configured with the same DHCP servers.
    Just wondering if I can take the IPs out of the WLC configuration?
    Many thx indeed,
    Ken

    Ken, the DHCP address under the dynamic interface, is the address the WLC will unicast the DHCP request to when a client tries to use that interface. Under normal operation this address is needed. There is a way to get the WLC to bridge the packet to the wire so that it is a broadcast instead of a unicast packet. CLI command is config dhcp proxy disable.
    But I do believe that even if you issue the CLI command, the software wants the DHCP address listed under the dynamic interface.
    HTH,
    Steve

  • SG300-10P LACP and PoE

    Hi
    I am using SG300-10 and connected it to two SG200 with LACP and PoE
    When I tried to use ssh client to check poe status via cli, the switch suddenly rebooted.
    After this, the poe is dead.
    I reset the switch, reconfigured the settings but ..
    as soon as I set GE1+GE2 to a LACP group,
    the SG200-8 connected to GE1+GE2 is down, lost power
    when I remove the GE1+GE2 from LACP group, the poe is back ...
    same to any other port.
    only ports that not in LACP listed in "Port Management" "PoE" "Settings"
    is the hardware damanged? I am using the lasted 1.3.0.62 firmware.
    The physical connected is:
    L3 Mode
    GE1+GE2 = LACP <---> SG200-8 nr1
    GE3+GE4 = LACP <---> SG200-8 nr2
    GE5 <---> my pc
    Thanks for any hint/help!

    Thanks for the advice.
    I came home today and found out a power outage happened and somehow the SG300-10P stopped working partly, any device not directly connected to it can't ping the switch or communicated to it or its conncted devices. (even after reboot)
    So I decieded to reset it to the factory default and manually reapply all the setting from my memory, because last few times I tried to use backuped config file, it ended badly. ( the firmware is already updated to latest)
    After that, I followed your advice and set GE1 PoE active and GE2 PoE off, and so on, now both SG200-8 and SLM2008 are getting power from port GE1 and GE3.
    Still, as soon as I add a port to a LACP group, it will disappear from "
    Port Management", "PoE", "Settings" page ..., is that a normal behavior? or is it a problem on SG200 or/and SLM2008?

  • DHCP setup help on AIR-WLC-2112 with LAP1042N

    I am new to wireless.  I would like to statically assign ip addresses for my controller(AIR_WLC-2112) and my access point (LAP1042N).  I would then like the controller to distribute dhcp addresses for users.  What is the best way in doing this? 

    Hi Mark,
    You can certainly setup your network for 2 VLANs for different wireless networks. You will only need to setup the switchports to the WLC as trunks. In other words, the APs will simply reside in the vlan you define (access switchports) and they will tunnel all traffic back to the controller, regardless of client vlan. The WLC will then determine which vlan the traffic needs to go on.
    You have 2 ways of setting your AP IP addresses as static -- you can statically assign them through the console during initial installation:
    capwap ap ip address
    capwap ap ip default-gateway
    capwap ap controller ip
    Or, you can simply let the APs start by using DHCP, and auto discovery of the WLCs via DNS lookup of "cisco-capwap-controller", or DHCP option 43. Once they join the controller you can assign them static addresses in the WLC AP settings.
    Now, onto the last question regarding your WAN sites. We do have options for you there as well -- the feature we're looking at would be H-REAP. Traditionally the APs tunnel all wireless traffic back to the controller. However, in H-REAP mode, you can specify the APs to put traffic on the network right at the local switch, so it wouldn't have to get tunneled across your WAN (depending on WAN bandwidth). You still configure the AP and manage it centrally. For more information on this feature, please check out the H-REAP deployment guide:
    http://www.cisco.com/en/US/products/ps10315/products_tech_note09186a0080736123.shtml
    -Patrick Croak
    Wireless TAC

  • POE intermittent on start up

    SRW 224G4P. I know it has End of life, but customers will still use it for the next 1,2 years.
    1. POE power in question now - Can config or solution be found for the following use?
    2. Devices connected to first 12 ports of SRW 224G4P.
    3. POE is enabled and turned on for these 12 ports.
    4. When SRW 224G4P power is turn on at the start of day, power is sent out immediately from these 12 ports to the connected devices.
    5.  POE power send out is good but, it sends power and then off. then 2 seconds later, power sends out again. then off.
    6.  This power on off cycle goes on 4 times in total, lasting 1.5min - 2min time.
    7.  AFter 2min, power stays stable all the way.
    I worry this will spoil connected devices, due to power on n off 4 times a day, 7 days a week whole year round.
    I worry that the new SFE 300 series switches will do the same. Customers will JUMP!!!!
    Kindly advise if anyone knows a way round.
    Regards
    Adwin

    Lim,
    What are you powering up with the switch?
    How long are the cables connecting the devices to the switch?
    Have you set the poe settings to critical on the first 12 ports and tested to see if that assist the switch?
    Are you running the latest version of firmware on the srw224g4p?

  • Wlc flexconnect wlan local authentication and central web authentication maximum rtt

    Hi
    From the below link below it mentioned that "Round-trip latency must not exceed 300 milliseconds (ms) between the AP and the controller. If the 300 milliseconds round-trip latency cannot be achieved, configure the AP to perform local authentication."
    http://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Mobility/emob73dg/emob73/ch7_HREA.html#wp1094148.
    Is this limitation refer to web authentication also?
    Thanks
    Anyone???

    Central Web Auth (CWA) works different on controllers/APs running in FlexConnect mode. Please check this guide and confirm that you have similar setup. 
    http://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/116087-configure-cwa-wlc-ise-00.html
    If so, please post screen shots with your configs (Redirect ACLs, policies in ISE and the WLC SSD settings). 
    Also, the version of code that you are running in ISE and your controller. 
    Thank you for rating helpful posts!

  • CWA page does not redirect

    Hi there,
    I am having strange issue.
    I have configured a wlan with Mac Filtering that is pointing to ISE. Followed this guide https://supportforums.cisco.com/docs/DOC-26442
    Now, when user tries to connect to the wlan, it gets stuck in DHCP_REQD state. On troubleshooting I found that the ISE authenticates with Wireless MAB policy and points to the authorization profile where CWA redirect is configured. The WLC receives the redirect acl with redirect url but does not apply it on the client.
    On ISE:
    On WLC:
    the ACL "tempcwa" allows traffic to and from ISE, DNS, DHCP, but I am not able to get IP. Even when I try manual IP address, I am not able to ping ISE. I am sure ACL is all ok! My DHCP works perfect for other WLANs with WLC webauth settings in the same subnet as CWA.
    I am using AIR-CT5760, 03.02.02.SE, ct5760-ipservicesk9 and ISE 1.2 VM
    Please help me!!

    Thanks for your response..
    If I remove the ACL then how the traffic destined to ISE will be allowed? The interesting part is, I am getting hits on the redirect ACL but client can not receive IP address.
    DHCP is working fine and if I assign manual IP then DHCP is not the matter.
    If Redirect ACL and ISE page is forwarded to WLC from ISE then why this is not working for clients??
    Moreover, I noticed that even DACL is not being pushed to wireless clients from other authorization profiles. The traffic gets Permit_access but DACL does not restrict..
    I think these two issues are interlinked..
    Please suggest..

  • Cisco vWLC and Central Web Authetication ISE Issue

    Hello!
    I have an issue with Wireless Central Web Authentication. Wired CWA woking fine.
    My APs woking in FlexConnect mode with local switching. When I connect to the WLAN with CWA, web page with guest portal in not opening, but I see, that redirect is working...
    When I try to ping ISE, and have a strange result:
    y@5733Z:~$ ping 10.10.2.47
    PING 10.10.2.47 (10.10.2.47) 56(84) bytes of data.
    64 bytes from 10.10.2.47: icmp_seq=5 ttl=63 time=1.45 ms
    64 bytes from 10.10.2.47: icmp_seq=8 ttl=63 time=2.22 ms
    64 bytes from 10.10.2.47: icmp_seq=10 ttl=63 time=1.43 ms
    ^C
    --- 10.10.2.47 ping statistics ---
    21 packets transmitted, 3 received, 85% packet loss, time 20106ms
    rtt min/avg/max/mdev = 1.430/1.703/2.223/0.367 ms
    When I change the security method on the WLAN to open or any other, ping to ISE working fine. Please help!

    Central Web Auth (CWA) works different on controllers/APs running in FlexConnect mode. Please check this guide and confirm that you have similar setup. 
    http://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/116087-configure-cwa-wlc-ise-00.html
    If so, please post screen shots with your configs (Redirect ACLs, policies in ISE and the WLC SSD settings). 
    Also, the version of code that you are running in ISE and your controller. 
    Thank you for rating helpful posts!

  • ISE CWA Time Profiles

    Hi
    Trying to make ISE CWA with WLC2500 to work according to guest time profiles.
    - When suspend guest users in ISE they still can connect and it seems that there is no communications between WLC and ISE (i suspect that ISE will communicate to WLC regarding this)
    - Then creating a guest user with "OnlyFirstLogin".... the user is still connected after shutdown/restart..
    I'm aware of the WLC timeout settings, but not sure if there are in play with CWA
    Any who knows about these time profiles in ISE regards to WLC
    Thx
    Kasper

    Please review the below links which might be helpful:
    http://www.cisco.com/en/US/docs/solutions/Enterprise/Borderless_Networks/Smart_Business_Architecture/February2012/SBA_Ent_BN_BYOD-GuestWirelessAccessDeploymentGuide-February2012.pdf
    http://www.cisco.com/en/US/docs/security/ise/1.0/user_guide/ise10_guest_pol.html
    http://www.cisco.com/en/US/docs/security/ise/1.0.4/user_guide/ise10_guest_pol.pdf

  • What settings need to be set for the fastest roaming on my wlc 4404

    Hi all
    I notice that on my WLC 4404 when walking around with my laptop, I am dropping pings when it roams to another access point, Is there anything on the controller I need to check, and can I optimize these settings for roaming?
    cheers
    carl

    Hello Carl,
    to have romaing working fine you need to be sure of following:
    1) RF designed correctly , and enough overlapping is availble between the AP's.
    in addition for environment to be free from external noise..
    this can be confirmed with spectrum expert site survey
    2) what authentication and encryption used ( WEP , or WPA-PSK no need to check this point ->> skip :-) )
    if you are using any authentication like 802.1x ->> then enable CCKM on the WLAN to make more seamless roaming.
    3) if more than one WLC availble on site , configure mobility group between them,
    so if client roam from one AP in WLC 1 to AP on WLC 2 ->> no disocnnection observed....
    Kind regards
    Talal
    ===========
    please rate answers that you find useful , and mark as answered - when it is :-) - so others can find it easily

  • 5508 WLC HA pair - change management interface settings

    Hi,
    We have a pair of 5508 WLC's in a HA configuration that is working well at the moment, however I have noticed that the management interface is configured as untagged. I would like to change this to tagged and change the attached switch to trunk for these devices but if I try and edit the management interface through the GUI the VLAN and IP address section is greyed out and cannot be changed. While I could attempt it through the CLI and am comfortable doing that, the fact that it cannot be changed through the GUI implies that this should not be changed and so I am after further information. I don't have any lab equipment other than the HA pair in production so I cannot try changing it through the CLI at the moment. 
    The WLC's are in LAG mode if that makes any difference. I realise there may be downtime required for making this change but I am trying to work out the steps to get this done without having to drastically reconfigure things. 
    Any assistance would be appreciated. 

    Introduction of New Interfaces for HA Interaction
    Redundancy Management Interface
    The IP address on this interface should be configured in the same subnet as the management interface. This interface will check the health of the Active WLC via network infrastructure once the Active WLC does not respond to Keepalive messages on the Redundant Port. This provides an additional health check of the network and Active WLC, and confirms if switchover should or should not be executed. Also, the Standby WLC uses this interface in order to source ICMP ping packets to check gateway reachability. This interface is also used in order to send notifications from the Active WLC to the Standby WLC in the event of Box failure or Manual Reset. The Standby WLC will use this interface in order to communicate to Syslog, the NTP server, and the TFTP server for any configuration upload.
    Redundancy Port
    This interface has a very important role in the new HA architecture. Bulk configuration during boot up and incremental configuration are synced from the Active WLC to the Standby WLC using the Redundant Port. WLCs in a HA setup will use this port to perform HA role negotiation. The Redundancy Port is also used in order to check peer reachability sending UDP keep-alive messages every 100 msec (default timer) from the Standby WLC to the Active WLC. Also, in the event of a box failure, the Active WLC will send notification to the Standby WLC via the Redundant Port. If the NTP server is not configured, a manual time sync is performed from the Active WLC to the Standby WLC on the Redundant Port. This port in case of standalone controller and redundancy VLAN in case of WISM-2 will be assigned an auto generated IP Address where last 2 octets are picked from the last 2 octets of Redundancy Management Interface (the first 2 octets are always 169.254).

  • Radius compatibility mode settings in WLC

    our users are using some 3rd party radius server for MAC address auth. I found there is a setting called Radius compatibility mode in the WLC configuration. But there is no document talking about what this setting does for.
    So should I set it to use "Other" or just leave it as "Cisco ACS"?

    This determines what password is used for mac authentication. ACS expects to see the username and password to both be the mac address for mac authentication. Free Radius uses a shared secret for a password. And other Radius servers don't require any password for mac auths sent to the server.

  • WLC service-group settings

    After checking the WLCs at several sites using the WLC Config Analyzer, one of the errors that came up was that the service-port interface was invalid because it was set to 0.0.0.0. We're not using the service-port interface, so how should this be set? In the web interface, if I uncheck DHCP, it wants a real static IP address... should I use 127.0.0.1? Do I need to do this in the CLI?

    Generally I set them to something so that some stuff like WCS & Config Analyzer don't complain about it. I wouldn't set it to 127.0.0.1.; Although if it's a WiSM module then they should be configured to match the WiSM VLAN in the switch chassis otherwise the WLC can generate lost heartbeat alarms.
    Typically if my internal network is a 10.x.x.x network I will use 192.168.1.(last octet of management address), then reverse that as necessary. The service port is for out of band management, which mean it generally isn't connected to any unless you need an alternate to the console port.
    As fo setting it, you can either set it via the gui or via the cli
    hope this helps.

  • Connecting a WLC 4400 to a 2960 POE Catalyst

                       I need some help connecting my WLC 4400 to my 2960 catalyst switch. The gigabit port
    on the Catalyst switch I am using is connected to port 1 on WLC 4400. I have the port set to trunking
    mode but I cannot ping the management interface IP. I also noticed the activity lights on the two interfaces
    are not lit. 
    interface GigabitEthernet0/2
    switchport mode trunk
    Is there something else I need to attribute to this port?
    Thanks

    Sorry to get back to you so late. Here is what I got.
    Wireless#sh ip int brief gi0/2
    Interface IP-Address OK? Method Status Protocol
    GigabitEthernet0/2 unassigned YES unset down down
    Wireless#sh ip int gi0/2
    GigabitEthernet0/2 is down, line protocol is down
    Inbound access list is not set
    It is plugged in.

Maybe you are looking for

  • Printing Crystal Reports without calling Adobe Acrobat preview window

    Post Author: akurilin CA Forum: General Hi, each time a click a Print icon in a Crystal report preview toolbar, it opens a dialog box which opens an Adobe Acrobat preview window. Is it possible to print a Crystal report without calling Adobe Acrobat

  • ITunes 7.0 Distorted Songs Bug

    This is the problem with iTunes messing up songs by having skipping, distrotion, echoing, and other issues. I've tried to turn sound up all the way, which is a temparary fix, and I really don't think lowering the quality will work for me. Everytime I

  • I live in Honduras, i want to know how to unlock an iphone 5 of sprint

    I live in Honduras, i want to know how to unlock an iphone 5 of sprint

  • Individual versus Company listing for Apps

    I noticed that some apps have the developer's actual name and other apps have the company's name listed.  What is the benefit to listing as an individual as opposed to listing as a company?

  • Labview Driver for TPS 2014

    I am using Labview to control Oscilloscope TDS 2014. I downloaded the plug in and play driver from  http://sine.ni.com/apps/utf8/niid_web_display.model_page?p_model_id=540. I want to test the connection between the driver and the instrument. For this