Apple Devices on 2504 WLC with 5 APs

Hi All,
I have just setup 5 APs (1042) with a 2504 WLC, I have connected these devices in my home lab and will be deploying this later in a live environment. The WLC/APs will reside on the 192.168.210.x/24 subnet with the controller being on x.x.210.5 and the gateway (including the DHCP Server) being on x.x.210.1/24.
Here is my issue, I have configured my WLAN to use WPA+WPA2 with AES & TKIP using a Preshared Key but I am finding associating to the wireless network very slow on my Windows PC and, even worse, now connection from my iPad (I should mention the Windows PC is stable once connected). 
I can see both devices seen by the APs when I look at the client list:
MAC Address       AP Name           Status        WLAN/RLAN      Auth Protocol         Port Wired PMIPV6 Role
08:ed:b9:48:19:cd SD-2f.55          Associated    1              Yes  802.11n(5 GHz)   1    N/A   No     Local
98:fe:94:7f:7c:1a GSD-39:49         Associated    1              Yes  802.11n(5 GHz)   1    N/A   No     Local
The iPad (98:fe...) doesn't get an IP address
(Cisco Controller) >*DHCP Socket Task: Jul 14 17:35:20.006: 98:fe:94:7f:7c:1a DHCP Forwarding DHCP packet (332 octets)                  -- packet received on direct-co
ect port requires forwarding to external DHCP server. Next-hop is 192.168.210.1
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP received op BOOTREQUEST (1) (len 308,vlan 0, port 1, encap 0xec03)
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP selecting relay 1 - control block settings:
                        dhcpServer: 0.0.0.0, dhcpNetmask: 0.0.0.0,
                        dhcpGateway: 0.0.0.0, dhcpRelay: 192.168.210.5  VLAN: 0
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP selected relay 1 - 192.168.210.1 (local address 192.168.210.5, gateway 192.168.210.1, VLAN 0, port 1)
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP selecting relay 2 - control block settings:
                        dhcpServer: 0.0.0.0, dhcpNetmask: 0.0.0.0,
                        dhcpGateway: 0.0.0.0, dhcpRelay: 192.168.210.5  VLAN: 0
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP selected relay 2 - NONE
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP selecting relay 1 - control block settings:
                        dhcpServer: 0.0.0.0, dhcpNetmask: 0.0.0.0,
                        dhcpGateway: 0.0.0.0, dhcpRelay: 192.168.210.5  VLAN: 0
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP selected relay 1 - 192.168.210.1 (local address 192.168.210.5, gateway 192.168.210.1, VLAN 0, port 1)
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP transmitting DHCP DISCOVER (1)
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP   op: BOOTREQUEST, htype: Ethernet, hlen: 6, hops: 1
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP   xid: 0x359ad7fb (899340283), secs: 25, flags: 0
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP   chaddr: 98:fe:94:7f:7c:1a
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP   ciaddr: 0.0.0.0,  yiaddr: 0.0.0.0
*DHCP Socket Task: Jul 14 17:36:04.184: 98:fe:94:7f:7c:1a DHCP   siaddr: 0.0.0.0,  giaddr: 192.168.210.5
*DHCP Socket Task: Jul 14 17:36:04.185: 98:fe:94:7f:7c:1a DHCP sending REQUEST to 192.168.210.1 (len 346, port 1, vlan 0)
*DHCP Socket Task: Jul 14 17:36:04.185: 98:fe:94:7f:7c:1a DHCP selecting relay 2 - control block settings:
                        dhcpServer: 0.0.0.0, dhcpNetmask: 0.0.0.0,
                        dhcpGateway: 0.0.0.0, dhcpRelay: 192.168.210.5  VLAN: 0
(Cisco Controller) >*DHCP Socket Task: Jul 14 17:36:04.185: 98:fe:94:7f:7c:1a DHCP selected relay 2 - NONE
*DHCP Socket Task: Jul 14 17:36:28.457: 08:ed:b9:48:19:cd DHCP received op BOOTREQUEST (1) (len 308,vlan 0, port 1, encap 0xec03)
I hope someone can guide me in the right direction as I wonder if my configuration is incorrect.  Thanks in advance.
Additional Info:
---------------Show Interface ---------------
Interface Configuration
Interface Name................................... management
MAC Address...................................... f0:29:29:89:1d:80
IP Address....................................... 192.168.210.5
IP Netmask....................................... 255.255.255.0
IP Gateway....................................... 192.168.210.1
External NAT IP State............................ Disabled
External NAT IP Address.......................... 0.0.0.0
VLAN............................................. untagged
Quarantine-vlan.................................. 0
Active Physical Port............................. 1
Primary Physical Port............................ 1
Backup Physical Port............................. Unconfigured
DHCP Proxy Mode.................................. Global
Primary DHCP Server.............................. 192.168.210.1
Secondary DHCP Server............................ Unconfigured
DHCP Option 82................................... Disabled
ACL.............................................. Unconfigured
mDNS Profile Name................................ Unconfigured
AP Manager....................................... Yes
Guest Interface.................................. No
L2 Multicast..................................... Disabled
Interface Name................................... virtual
MAC Address...................................... f0:29:29:89:1d:80
IP Address....................................... 1.1.1.1
Virtual DNS Host Name............................ Disabled
AP Manager....................................... No
Guest Interface.................................. No
---------------Show port summary---------------
Port Summary
           STP   Admin   Physical   Physical   Link   Link
Pr  Type   Stat   Mode     Mode      Status   Status  Trap     POE
1  Normal  Forw Enable  Auto       100 Full   Up     Enable  N/A
2  Normal  Disa Enable  Auto       Auto       Down   Enable  N/A
3  Normal  Disa Enable  Auto       Auto       Down   Enable  Enable  (Power Off)
4  Normal  Disa Enable  Auto       Auto       Down   Enable  Disable

Thanks,
I am making sure that I do that , but still to no avail.  I am going to mess about with the 'Global', 'Enabled', 'Disabled' parameters (in the Controller - Interface -DHCP Information section) to see if that makes any difference. 

Similar Messages

  • I need an apple device to check that websites I design work ok on apple devices - am I ok with an ipod touch or do I need to buy an ipad or iphone ?

    I need an apple device to check that websites I design work ok on apple devices - am I ok with an ipod touch or do I need to buy an ipad or iphone ?

    - Using an iPod touch would be the same as using an iPhone.
    - It all depends upon how you site handles different screen sizes.
    - If you view only on an iPad it may look poor on an iPhone, that is hard to read.
    - I would use/view other users iPads and iPhones/iPod touches to help decide what meets your needs.

  • 2504 WLC with 1552E AP's not able to wireless mesh

    Good day all,
    I'm seeking some assistance/help for a problem I'm havine with a WLC and 9 APs. I have a basic configuration on the WLC and I have configured one of the APs as the RAP. Now I try and add a second AP into a wireless mesh but it cannot see the RAP. They are sitting 5 feet apart but I don't see anything on the controller for the second AP. If I attach it to the wired network it can see the AP. RF-2 is solid green, RF-1 is dark, Uplink is dark, Status is orange. I understand that this means it's seeking for the RAP/MESH.
    I've tried some debug commands but to tell you the truth I am by no means a wireless expert.
    When the second AP boots this is what I see through the console
    *Mar  1 00:00:52.515: %CAPWAP-5-CHANGED: CAPWAP changed state to DISCOVERY
    *Mar  1 00:00:52.775: %SSH-5-ENABLED: SSH 2.0 has been enabled
    *Mar  1 00:00:52.803: Logging LWAPP message to 255.255.255.255.
    *Mar  1 00:00:52.827: %LINK-3-UPDOWN: Interface Dot11Radio1, changed state to up
    *Mar  1 00:00:52.827: %LINK-3-UPDOWN: Interface Dot11Radio0, changed state to up
    *Mar  1 00:00:52.843: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to reset
    *Mar  1 00:00:52.843: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Mar  1 00:00:53.071: %SYS-6-LOGGINGHOST_STARTSTOP: Logging to host 255.255.255.255 started - CLI initiated
    *Mar  1 00:01:46.827: %MESH-6-ADJACENCY_STATE_MACHINE_STARTED: Mesh adjacency state machine started
    *Mar  1 00:01:53.491: %CDP_PD-2-POWER_LOW: All radios disabled - NON_CISCO-NO_CDP_RECEIVED  (0000.0000.0000)
    Any assistance would be great.

    You still have two radios on the RAP just like the MAP.  As long as you are powering up the RAP/MAP with the correct power source, the radios should come up.  This means that you should have client access enabled by default on the 2.4ghz and 5ghz client access is optional.  Juat make sure that the AP/RAP/MAP is in the correct AP Group and that the WLAN is present in the AP Groups.  This will allow that WLAN to be broadcasted to the AP's in that AP Group.  If your using the default group, then by default, all WLAN's 1-16 will be broadcasted, WLAN 16 and higher will not be unless you define the WLAN in the AP Group.
    Thanks,
    Scott
    Help out other by using the rating system and marking answered questions as "Answered"

  • How many apple devices can you use with the same e-mail and bank details

    Any help needed thanks guys

    You can use as many as you own and want to use. If you have 10 iPads, 10 iPhones an on and on and on .....
    Are you having a problem with something?

  • Local printers not working with 2504 WLC

                       I have a 2504  WLC with 3 1262 WAPs in lightweight mode.
         Clients connect using WPA2 PSK AES with no problem.  Clients are Windows XP Home SP3.  Test pages end up in print queue and eventually get a error printing status.  Clients are not part of a domain and in a standalone workgroup - techstream.
    Printer can be pinged from wireless client.
    Another 1262N WAP in standalone mode connected to same lan from windows 7 sp1 clients have no problem printing to a local printer.
    What does work on the Windows XP Home client is connecting to a network shared printer authenticating with domain admin id and password and it works.  Reboot and the network shared printer can not connect multiple reasons are "access is denied" and message box says "only security tab will be displayed....."   Another Windows XP Home SP3 client on reboot can't open the network shared printer with message "Can't find printer"
    The local printers do work on these pc's with an old colubris router that has an outside interface on our lan and internal network with clients getting dhcp address from colubris router of 192.168.3.XXX  . 
    What is wrong with the wireless 2504 WLC?
    Thanks
    Broadcast forwarding was enabled.

    Although a cisco tech support was helpful in making sure multicasting was enabled and a multicast server defined, the problem was at the CP2025DN printer. It had old network ip mask and gateway configured on the printer.
    The new devices were part of the new network configuration (Mask and gateway had changed). I didn’t change that printer when I changed all the other printers at the facility because it was still active thru the old wireless network. I forgot to change the printer ip config when I brought the new wap on the new wireless network with the wlc 2504.
    End result was the clients were part of a different subnet and gateway configuration then the printer and this disrupted the communication between clients and the printer. Once I corrected the mask and gateway on the printer to be the same as the dhcp scope of the wireless network, communication and printing worked.
    Problem solved.  User error

  • 2504 WLC future LAG support?

    We just bought a 2504 WLC with 15 AP licenses for our new eight 1141N AP installation.  Some confusion about LAG support for these now confirmed by TAC that LAG NOT supported for the time being.  Has anyone heard about whether this feature will be added to the 2504 in the future?  Seems a waste of those four ports toherwise.  Just wondering....

    You can still utilize multiple links on the 2500 platform. If you create multiple interfaces with AP management enabled, you can load balance APs across the port(s).
    Likewise, you can put your various wireless client vlans on different physical ports to avoid having ALL traffic on a specific port.
    http://www.cisco.com/en/US/products/ps11630/products_tech_note09186a0080b8450c.shtml#scenarios
    -Pat

  • 2504 WLC on edge network for guest wifi

    I have a 2504 WLC with a 1042 AP and I have it placed on my edge Cisco 3750 switch.
    I have the management interface of the WLC set on my WAN IP 71.x.x.x subnet range, and I have the WLC doing DHCP duties with a DHCP scope of 192.168.X.0. I have my DNS servers set on external DNS servers out on the Internet.
    I have two Cisco 3845 Routers on my edge network - one for each ISP with BGP protocol.
    Since my native VLAN is 71.x.x.x, I added a sub interface on my main core router and gave it a 192.168.x.1 255.255.255.0 address for the gateway. Also, I added ip prefix-list iBGP seq 10 permit 192.168.x.0/24 le 32 to my main core router. On my secondary ISP router I added
    ip prefix-list iBGP seq 10 permit 192.168.X.0/24 le 32, and ip prefix-list OUT seq 10 permit 192.168.x.0/24 statements.
    I added VLAN 10 to my edge switch and gave it IP 192.168.x.2 255.255.255.0, and the switchports that my core router and my WLC are connected to the edge switch, are in trunk mode with encapsulation dot1q 10. The switchport on my edge switch that the AP is connected to is in switchport access mode.
    I can connect to the wifi with a 192.168.x.x IP address on my laptop, but I cannot get any Internet access.
    Is it possible to have the DHCP scope be in a different subnet than my WAN IP subnet, and allow guests to get to the external Internet only? Do I need to put the WLC somewhere internal on my network i.e. the DMZ and then tunnel the traffic out to the Internet with no Internal network access?
    Thanks for any help you can provide.

    right, and how does a 'normal/current' user access the internet?  Somwhere going to your ISP there should be some sort of NAT statement when you send interwebs traffic.
    if your ISP is taking care of all of that for you, you probably need to let them know you added the subnet so they can do the NAT.
    HTH,
    Steve
    Please remember to rate useful posts, and mark questions as answered

  • 802.1X EAP-PEAP with Apple devices

    We have deployed a variety of wireless networks using Cisco WLC (2504, 5508 and Virtual WLCs) with (1550e, 1260, 2602 access points) and we have been unable to get apple device to successfully authenticate to corporate SSID's that use 802.1X against a Microsoft IAS server. We have spent numerous hours building different profiles with OS-X Server and other profile configuration utilities with no luck.
    Apple devices authenticate just fine to corporate SSIDs if we use autonomous access points using 802.1x against the same Microsoft Radius server but continue to fail when we attempt the same through any of the WLC options referenced above.
    Can anyone shed some light into this issue? It seems that radius request only show up on the IAS logs when something is entered in the "outer identity field"
    Thanks in advance.
    Ivan Chacon

    Complete these steps to troubleshoot the configurations:
    1.    Use the debug lwapp events enable command in order to check if the AP registers with the WLC.
    2.    Check if the RADIUS server receives and validates the authentication request from the wireless client. Check the NAS-IP- Address, date and time in order to verify if the WLC was able to reach the Radius server.
    Check the Passed Authentications and Failed Attempts reports on the Radius server in order to accomplish this.
    3.    You can also use these debug commands in order to troubleshoot AAA authentication:
    •    debug aaa all enable—Configures the debug of all AAA messages.
    •    debug dot1x packet enable—Enables the debug of all dot1x packets.
    Here is a sample output from the debug 802.1x aaa enable command:
    (Cisco Controller) >debug dot1x aaa enable
    4.    Monitor the logs on the WLC in order to check if the RADIUS server receives the user credentials. Click Monitor in order to check the logs from the WLC GUI. From the left-hand side menu, click Statistics and click Radius server from the list of options.
    This is very important because in some cases, the RADIUS server never receives the user credentials if the RADIUS server configuration on the WLC is incorrect.
    This is how the logs appear on the WLC if the RADIUS parameters are configured incorrectly:
    You can use a combination of the show wlan summary command in order to recognize which of your WLANs employ RADIUS server authentication. Then you can view the show client summary command in order to see which MAC addresses (clients) are successfully authenticated on RADIUS WLANs. You can also correlate this with your Raduis attempts or failed attempts logs.
    •    Verify on the controller that RADIUS server is in active state, and not on standby or disabled.
    •    Use the ping command in order to check if the Radius server is reachable from the WLC.
    •    Check if the RADIUS server is selected from the drop down menu of the WLAN (SSID).

  • How-do-i-configure-guest-wifi-access-using-2504-wlc-fortigate-utm-l3-device

    Dear All
    I have a 2504 Wireless Controller with multiple radios attached. I currently have a "private" WLAN configured (taking ip from windows server based DHCP of Range 192.1681.0/24 ) and working, but I need to add a Guest/Public WLAN which should take the IP from Other DHCP Configured on Fortigate UTM of range 172.16.0.0/24.
    We have one SG300 switch in the office and the rest are basic switches.
    Our firewall/router is a Fortigate UTM 240D
    Find the attached network diagram for the issue.
    Is there a SIMPLE way to enabling guest access that doesn't require VLANS (or are VLANS easier than I'm making them)? 
    Thanks.
    - See more at: https://supportforums.cisco.com/discussion/12473186/how-do-i-configure-guest-wifi-access-using-2504-wlc-fortigate-utm-l3-device#sthash.aj1XcWI0.dpuf

    Complete these steps in order to configure the devices for this network setup:
    http://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-vlan/70937-guest-internal-wlan.html
    Configure Dynamic Interfaces on the WLC for the Guest and Internal Users
    Create WLANs for the Guest and Internal Users
    Configure the Layer 2 Switch Port that Connects to the WLC as Trunk Port

  • WLC 2112 & MacBook or Apple Devices ???

    Dear All,
    Last week i succesfully configured the WLC 2112 with 12 AP ofcourse :)  with 3 SSIDs
    the issue i am facing is that users with MacBooks & Ipad's are having issues connecting to new wireless setup. where as all other Brand Laptops and PDAs are getting connected just fine.
    When i am trying to connect a MacBook to a SSID and when i enter the password after 10 or 15 sec the MacBook self assigns an IP address to itself intead of getting the password from WLC's DHCP.
    i have set  Authentication level is basic WEP key protection.
    Channel set to overlapping channel 10.
    Experts i need your Experties. will appriciate if i can get a Quick Response.

    Hi,
    Are the Mac and Apple devices configured to get a dynamic dhcp ? What is the Subnet from which these devices getting IP from ?
    Could you disable Aironet extenstions under wlan > advanced section and test as this enhances the third party clients to be able to connect to Cisco device.
    Regards,
    Madhuri

  • I had 2 Apple IDs but now Apple implemented new conditions and i can't use one of them after 90 days using the prior one..! - "This Device Is Already Associated With an Apple ID"

    I have two Apple IDs because i travel frequently between Mexico and the US, and the apple stores offer different products, so i like to download music, movies and TV series from both sites.
    Apparently apple changed the conditions, becauise until a few days ago i could log our from one account and log in from my other one. Yesterday i was at Miami International Airport and wanted to download a few chapters from one of my TV series (Walking Dead) to watch on my way to Mexico City, but a pop up window came up saying "this device is already associated with an apple id". Curoiously, the ID to which i was connected to was precisely the one under which i had bought weeks ago the chapters i was wanting to download from the cloud. So it says i have to wait 90 days to change apple id.... weard! probably i accepted these terms when dowloading a new IOS version, so legally I'm dead in complaining, but why is it that if i am paying for all that i buy as a model citizen i am now blocked from jumping from one apple id to another one???? I can certainly buy another ipad and have one with one id and another one with the other, but is there any other way i can keep the two in just one device?? If i don't use i-could would anything change? This is really making me mad, and is the first time i have thought of moving our of mac products into samsung or others and buy my music and movies somewhere else where stupid restrictions like this one do not exist. Please help with a solution!

    OK, but in my ipad, the apple id i have in itues is already the one  iwant to have, but th one i used to sin in for i-coud is the other one. Any tip as to how to change the apple id for icloud and any idea how to know what apps i bought with the other apple id so as to delete them from my ipad to avoid being asked to enter another apple id every time they get updated? thanks!

  • How can I use my Apple ID with 2 Apple devices?

    I just got an ipad mini and I registered it with the same Apple ID I use for my iphone 4s. Everything was fine until I downloaded apps to the ipad and noticed that the ones I had on both devices  no longer opened on my iphone. Why is this? How can I use my Apple ID with 2 Apple devices and how can I recover my apps on my iphone?

    I've had an iPad for almost two years. When I purchased an iPhone last fall I set it up to use the same Apple ID as my iPhone. I've had no problems doing this. Try resetting each device and see what happens.
    First thing to try is to reset your device. Press and hold the Home and Sleep buttons simultaneously ignoring the red slider should one appear until the Apple logo appears. Let go of the buttons and let the device restart. See if that fixes your problem.

  • HT5538 I have multiple Apple devices and my family all share one apple ID.  I know it is easy to obtain additional IDs but all devices are registered with the same Apple ID.  My questions is how do I set up my devices so that we can Facetime between devic

    I have multiple Apple devices using the same Apple ID for all devices.  I work in the Middle East and my wife is in Russia.  I would like to Facetime between my different devices.  Is this possible with all devices registered with the same Apple ID.  It is just easier for find my iPhone, iPad, MacBook Pro and MacBook Air and for purchasing Apps.  Is this possible and how do I set it up.

    Create Apple IDs for everyone individually and use that in Settings > Facetime, Settings > Messages, Settings > Game Center but keep the Apple ID used for app and content purchases in Settings > iTunes and App Stores

  • How do I do this to use OVerdrive media on deviceThe Apple device must be formatted for use with Microsoft Windows.  The iTunes setting 'Manually manage music-' must be enabled for the device before you can complete the transfer.

    I cannot make these directions work
    I downloaded media on Overdrive MEdia on my PC
    I have the overdrive media ap on my I pod touch 4g
    this media is suppossed to be compatible w/I pd touch
    Notes on Transferring OverDrive MP3 Audiobooks…
    Most MP3 capable devices should play OverDrive MP3 Audiobooks.
    If you intend to transfer OverDrive MP3 Audiobooks to an Apple® device, note the following…
    iTunes® v9.0.2 (or newer) is required.
    The Apple device must be formatted for use with Microsoft® Windows®.
    The iTunes setting 'Manually manage music…' must be enabled for the device before you can complete the transfer. Adjust this setting in iTunes as follows…
    Connect the iPod® to your computer.
    If it does not launch automatically, open iTunes v9.0.2 (or newer).
    In iTunes, locate the device in the left vertical navigation panel (under heading 'DEVICES'), and click the device.
    The 'Summary' screen is displayed. 
    Place a checkmark next to 'Manually manage music…'.
    Click the 'Apply' button.
    The iTunes 'Summary' screen refreshes, and the changes are saved.
    If desired, close iTunes.
    Note that if an Apple device is connected to your computer, you can choose to simultaneously transfer a title to the iTunes Library and the Apple device. If you wish to only transfer a title to the iTunes Library, you must first disconnect the Apple device

    Recovering your iTunes library from your iPod or iOS device: Apple Support Communities
    Also you said " I want to add them to my iCloud, and also back to my computer.   " Note that unless  subscribe to iTunes match, only iTunes purchases are stored in iCloud.
    Also,
    You can redownload most iTunes purchases by:
      Downloading past purchases from the App Store, iBookstore, and iTunes Store

  • I have 2 Apple ids and two corresponding iCloud accounts. My five Apple devices are linked to one or the other. As one consequence a small number of my contacts are associated with one iCloud account, the majority with the other. How can I merge?

    For reasons not entirely clear to me I have ended up with two Apple ids, two iCloud accounts and my Apple devices being associated with one or the other iCloud account/Apple id. One of the complications is that my contacts are partially owned by one iCloud account, partially by the other.
    Is there any way to
    - merge the contacts (I have tried exporting from one and importing into the other but one set will overwrite the other)?
    - migrate all devices to one single iCloud account without being locked out for 3 months?
    - merge Apple ids or just delete one of them without locking out devices?
    Grateful for any suggestions because this is turning into a headache.

    You can merge the contacts from one account with your other one without overwriting them.  Sign into the first account, download them as vCard (iCloud: Export contact information as a vCard), email them to a device signed into the account you want to merge them with, tap the vCard and choose Add..., then Create New Contacts.
    You can also migrate a copy of the data in one account and merge it with the other by signing into the account you are leaving, then signing out (or deleting the account if not running iOS 8), then choosing Keep on My iDevice when prompted.  Then sign into the other account and choose Merge when prompted.  This won't move Notes however.  If you are syncing notes that you want to migrate from the other account, you can temporarily add the account to your Mac as a secondary account by going to System Preferences>Internet Accounts (or Mail,Contacts,Calendars)>Add Account>iCloud and signing in with the other account ID.  Then enable notes syncing in the secondary account.  You will then be able to open the notes app and drag and drop notes from one account to the other.  When you're done, delete the secondary account from your Mac.
    You can't merge IDs as Apple does not allow it.  Also, you won't be locked out of anything for 3 months.  The "90-day switch" rule only applies to changing your iTunes store account, not your iCloud account.  Just leave your iTunes store account as-is.  The ID you use for the iTunes store does not have to be the same as the ID you use for iCloud.

Maybe you are looking for