Change WAP561 access point certificate

Hi there,
I try to change my AP certificate with one that is generated from my integrated Active Directory CA.
I've tried several ways but I always get the error message "The certificate file failed to be uploaded"
What I've tried :
Generate a new request directly from CA web page. But file obtained doesn't provide a private key (and apparently I can't enforce to create one)
Generated a request from my Cisco switch (SG500) with the AP DNS name and get the certificate back. But again, the file format doesn't provide a private key.
Does any procedure actually exist for that ? Documentation is very poor about changing SSL certificate.
In advance, many thanks and best regards

Hi George,
Thanks for your feedback. The install i'm focusing on is for a small office (Cisco 891 ISR) with 4 wired and 4 wireless devices.  However, I want to build this config for future larger buildouts for branch offices such as my 2911 in my lab.
I'm currently unable to have my wireless lan controller use vlan 3 and wireless devices continue to pull 10.10.10.XX from the dhcp pool.  Below are snippets of my interfaces and I attached my full config as well if that helps.  I've been struggling with this for a while and any assistance is greatly appreciated, thanks in advance!
!interface wlan-ap0
description Service module interface to manage the embedded AP
ip unnumbered Vlan3
arp timeout 0
ip dhcp pool dhcp_vlan1
   network 10.10.10.0 255.255.255.0
   default-router 10.10.10.1
   dns-server 75.75.75.75 8.8.8.8
ip dhcp pool dhcp_vlan2
   network 10.10.20.0 255.255.255.0
   default-router 10.10.30.1
   dns-server 75.75.75.75 8.8.8.8
ip dhcp pool dhcp_vlan3
   network 10.10.30.0 255.255.255.0
   default-router 10.10.30.1
   dns-server 75.75.75.75 8.8.8.8
interface Vlan1
ip address 10.10.10.1 255.255.255.0
ip nat inside
ip virtual-reassembly
interface Vlan2
ip address 10.10.20.1 255.255.255.0
ip nat inside
ip virtual-reassembly
interface Vlan3
ip address 10.10.30.1 255.255.255.0
ip nat inside
ip virtual-reassembly

Similar Messages

  • Changing GPRS access point in midlet???

    Hi there,
    Is there any way i can choose the access point of the GPRS connection before my midlet tries to open a connection? This is because some phone operator have blocked any access to outside resources to connect to, For example in UK stupid VODAFONE Live never lets you open a connection trough there gprs connection untill unless you change it manually..
    Any help is highly appreciated,
    Manas

    This is too low-level for J2ME AFAICT. If you have Symbian based phone, some native app could be created to change this. Otherwise you'll have to stick with doing this manually.

  • Changing default access point

    At work the iPhone defaults to connecting to the corporate access point. I manually change to the guest network. How do I change the default access point to the guest network instead of connecting to the SSID of the corporate access point each day?

    If you have Ask to Join Networks off, the iPhone will automatically rejoin the known network that it connected to last.
    There isn't a priority list for Wi-Fi networks, but you can make the iPhone forget the network that you dont want it to join. Just tap Settings> Wi-Fi> the chevron next to the network you don't want it to join> Forget this Network.
    WTH.

  • How can i change the access point on my iphone 4?

    Can anyone help me?

    Are you referring to the Wireless Access Point? If so, I think you're just trying to connect to another network. You can go to Settings > Wi-Fi (ON) then select a network.

  • E75 Email (Access Point problem)

    Hi,
      I've setup nokia email without any problem using my WiFi and it was synchronizing without a problem. Since then I've I'm unable to change the Access Point to my Mobile provider. I keep getting "Server not found", even though the server name is still properly configured (netac3.vie.hosting.com). Can anyone help?
    Regards,
    Nuno

    Sorry when I wrote this was in Houston at the Continental Presidents club being yelled at... sorry
    The problem still exists, with no solution found so far, can anyone help? 

  • Replace Access Points...

    Hi there!
    I'm looking for your recommendation about some network products to be replaced within a current network to share an internet connection.
    We have the following connection based in the services provided by our local telephone company, the connection arrives to a router Cisco 800 series. From the router, i send it connection to a switch SRW2024 v1.2 (Business series) 24-Port 10/100/1000 Gigabit Switch with webview. That switch is useful to send connection via RJ45 for a few of PCs. Then, I send connection to a switch SRW2008P (Business series) 8-port 10/100/1000 Gigabits with vieweb and power over ethernet. The last switch, send the signal via RJ45 to seven WAP2000 (business series) Wireless-G AP with PoE.
    That network is running fine, but I've some problems to cover some areas within the building and sometimes the signal is really poor. The cable RJ45 between the PoE switch and each AP is no longer than 50 meters and each one with antennes about 8 or 9 Db.
    So, now I've the possibility to change the access point for a power devices. That way, can you, please advise me about my current network and whic kind of AP may exceed the power of the current ones?
    Thank you!
    A. Diaz

    the connection arrives to a router Cisco 800 series.
    What exact model of the 800 router and what is your ISP bandwidth.
    please advise me about my current network and whic kind of AP may exceed the power of the current ones?
    Wireless is one area where you DO NOT want to get whereby you may/can exceed the power.  IF you have an AP with too much transmit power, the client can hear you. HOWEVER, the client does not have enough power to send the data back to the AP.
    So if you want to get an AP with strong antenna, you have to match and mate this with a client that can push back the same or higher transmission power or your data will get lost.
    The latest enterprise-class AP are the 700, 1600, 2600 and 3600.  You can start by looking here. 

  • HT5163 where do I find the Access Point Name?

    I have a iPhone 4s and changed my sims card, the new provider instructions are to change my "Access Point Name" to get date

    Is the device unlocked?
    If it is carrier locked, the APN settings are not accessible.

  • N86 8MP, Nokia Email 2.1.0, Access point troubles

    I know that his has been an never ending saga. I just don't seem to be able to give it up.
    There is a well known issue about Nokia Email 2.1.0 not being able to define group access points.
    When I try to do that I am offered only particular access points or "None". This is ever so annoying as I have to manually change the access point every time I leave my home WiFi.
    I am aware that there are ways around this using connection manager apps (I tried several: Auto WeFi, Easy WiFi....  ) but I was not happy with the results. One of them even disabled me from editing my access points.
    It is weird that it is possible to define "Internet" as a access point for Exchange but not for normal e-mail providers.
    Some people suggested to setup acces point to "Default" while setting up a new email account. However, I've never seen this option.
    I think Nokia's terminology is so vague. What would be "Default" connection as opposed to "Internet"?
    In addition, in "Network Destionations" it is possible to define the "Internet" group as "Default" so this will be the same thing, or...??? Am I missing something?
    I stumbled upon this article that Nokia would release a patch addressing this access point issue.
    I spent hours searching for the patch to no avail. Does anybody know whether that patch exists at all?
    http://www.e71fanatics.com/2009/01/big-ooops-in-recent-nokia-email-version.html
    Having exhausted all possibilities I was thinking I could install Nokia Messaging 9.7. Apparently this version is compatible with S60v3 unlike the Nokia Messaging 10.2.
    I have no idea whether Nokia Messaging 9.7 was ever ment to be for N86 8MP but if not does anybody know whether the unsigned version could be installed instead?
    I would appreciate any piece of advice or suggestion.
    Alex

    Hello!
    I can't update my e-mail client via Nokia e52 internet browser.
    I enter address email.nokia.com, click download link. The application Nokia Email 9.07 has downloaded. After this the suggesting message to install Nokia Email 9.07 appears. But error appears after my agreement - "An incompatible version of this product is detected, and has to be uninstalled first"
    I have no possibility to uninstall detected Email, so I don't see any Email client in Application Manager.
    Nokia developers, please, fix this bug as soon as possible

  • E61i worldmate problems and default access point

    I cannot get Worldmate to connect without error. Worldmate support tell me to ensure that the "device default access point" is correct. However, I have not been able to find a global default access point setting anywhere, including the help doc!
    Once into worldmate, you can apparently change your access point, but the first time it looks for a global default. So I cant even get in!
    My phone is working fine with GPRS and WLAN, as long as the application allows me to select the access point.
    Perhaps this is a change between e61 and e61i?
    Anybody have the same problem?
    Chris

    05-Aug-200708:01 PM
    gtach43 wrote:
    I have the same problem.
    Both WorldMate and GolfPro2 workd when I first installed them. Now when I try to open them nothing happens.
    I redownloaded WorldMate and re-installed, then both worked. After shutting down, neither work again.
    How do you resolve this? Is it based on the access point?
    Glenn
    The exact same thing happens to me when I install other programs, like Nokia Maps or 3D pool. When I install them and reboot, both worldmate and the new installed program doesn't work. This doesn't happen with other programs that I've installed so far, like Gmail or google maps.

  • IOS 6.0.1 - Problems with certificate based authentication on wireless access point

    Hi all
    We are using iPad 2 as order terminals in our shops for about 5 months. Some of the iPads (the first who entered the field) started to cause problems now. These iPads are no longer able to keep long-term connection to the wireless access point in our stores. After selecting the SSID a successful authentication using the stored EAP-TLS certificate is performed (this can be seen in the log files of our wireless controller and by the IP adress that is given by DHCP). But within seconds the affected iPads opening up a captive portal page (empty, without contents) and separates the connection to the SSID after a short time again.
    Affected are currently only iPads 2 with iOS 6.0.1, which were staged about 5 months ago. The newer devices with iOS 6.1+ connect without problems and open no captive portal page. The first cases occurred on the last Wednesday. Before that everything worked without difficulty. No modifications took place on the security structure.  The numbers of affected devices increased until all iOS 6.0.1 were affected.
    Access to other SSIDs (without use of certificates, by entering a key) for the devices is still possible (the devices does not open an captive portal page). The DHCP scope is not used up, so there are enough IP addresses available.
    "Newer iPads" with an iOS of 6.1+ are are showing no problems on the same wireless access point, where the older devices are rejected. New and old devices use the same certificates and authentication mechanisms.
    In the analysis of the issue, it turned out that  the problem can be solved by an update to iOS 6.1.3. Subsequently, the iPads will be able to rebuild a connection with the access point, without a captive portal page.
    Since the bandwidth is very narrow dimensioned in our stores, the communication of the iPads was severely restricted. Thus, the iPads are for exampleare accessible for the APNS but can not find iOS updates or check for their availability.
    A comprehensive update to iOS 6.1.3 is currently excluded.
    Does anyone knows this issue? What else can be done (except from updating)?

    I will answer my own question in case it helps anyone else.
    It would "seem" the ios 6 devices try the proxy and if that is not working they resort to the def gateway.
    To Fix I did the following:
    Brocade WIFI network has IPS and Advanced Firewall rules that seemed to be tthwarting some traffic, the iphones would then try the default gateway and be blocked at the FW. 
    I disabled the IPS and the Advanced Firewall Settings on the wifi as they are redundant to our main IPS and firewall that all traffic flows through anyway.  I will tune it later, but when the CEO is demanding a fix "**** the security, full speed ahead"
    Created some rues on the firewall to allow...
    - IMAP-SSL (port993) outbound
    - SMTPS (port 465) to yahoo servers outbound
    - tcp port 587 to yahoo servers outbound
    - https to akamai servers
    Most http and https goes through the proxy as it should, BUT...
    It seems that the akamai traffic allways ignores the wifi proxy settings and just heads straight for the default gateway.  I suspect there is a bug in the icloud app? 
    Hope this helps someone else.
    -Bo

  • How to change access point name

    Need to know how to change access point name for straight talk on iPhone 4

    There are several other threads here about doing this, or you can look up the "sim swap" method, documented here: http://www.jgmedia.biz/how-to-get-data-and-mms-working-on-straight-talk-iphone-4 -and-iphone-4s-on-ios-6-updated-sim-swap-method/. This does require temporary access to a T-Mobile or Simple Mobile SIM/Micro-SIM card.

  • How can i change regulatory domain C to A of access point

    Recently my office got an access point - (AIR-CAP2602E-C-K9)  which is not synchronizing with controller (AIR-CT2504-5-K9 )as it is in domain A , all other AP also in domain A. Now can i change the domain of access point or what is the possible solution to add new AP with controller ? is it possible to run both domain (A, C)  at the same time with one controller ?   

    Migrating Access Points from the -J Regulatory Domain to the -U Regulatory Domain
    The Japanese government has changed its 5-GHz radio spectrum regulations. These regulations allow a field upgrade of 802.11a 5-GHz radios. Japan allows three frequency sets:
    •J52 = 34 (5170 MHz), 38 (5190 MHz), 42 (5210 MHz), 46 (5230 MHz)
    •W52 = 36 (5180 MHz), 40 (5200 MHz), 44 (5220 MHz), 48 (5240 MHz)
    •W53 = 52 (5260 MHz), 56 (5280 MHz), 60 (5300 MHz), 64 (5320 MHz)
    Cisco has organized these frequency sets into the following regulatory domains:
    •-J regulatory domain = J52
    •-P regulatory domain = W52 + W53
    •-U regulatory domain = W52
    Regulatory domains are used by Cisco to organize the legal frequencies of the world into logical groups. For example, most of the European countries are included in the -E regulatory domain. Cisco access points are configured for a specific regulatory domain at the factory and, with the exception of this migration process, never change. The regulatory domain is assigned per radio, so an access point's 802.11a and 802.11b/g radios may be assigned to different domains.
    For more information please refer to the link-
    http://www.cisco.com/c/en/us/td/docs/wireless/controller/release/notes/321930RN.html#wp111182

  • I cannot change the wpa-psk on a AIR-AP1142N access point

    I am attempting to change the wpa-psk on a wireless access point. When i go under ssid config mode and type the command wpa-psk ascii 7 <14characterkey> it gives me the message "Invalid key length, expecting 18 to 128 characters". Currently we are using 10 character key that I want to change it from. I would assume that I would not have to use an at least 18 character key as currently we are not doing this. Can anyone explain to me what I am doing wrong? I really don't think that I have to use a 18 character key but I could be wrong as I am fairly new to configuring these. Any help would be greatly appreciated.

    I think the problem is in the encryption mode.
    interface Dot11Radio0
      encryption mode ciphers wep128
    It's should be : encryption mode ciphers aes-ccm tkip

  • Points / Certificate question

    I preordered Destiny and used (what I thought) was a combination of available certificates and gift cards. I have been unable to access my points history, but it is saying that I have $5 in certificates to use. I have two questions,
    1) Looking at the order history, I see the gift cards were used, but the points do not seem to be. Can this be confirmed for me?
    2) Can the existing certificate be applied to an existing order? I am concerned with cancelling and replacing the same order as it is for a high demand product and I do not want to lose my ability to get the item.
    3) Since the points history has not been accessible for me, as it seems to be the case with others, will Best Buy make an exception to the policy of reissuing rewards certificates based on this issue?
    4) I have my rewards certificates set to issue at $20. Is there a way to see when I changed this versus when the last two certificates were issued?
    I understand the policy of reissuing, so if that is the final answer, you do not need to send me to the fine print link. I am just hoping the interest of customer service some sort of resolution can be found. If not, I'll chalk it up as lost money to a confusing and broken system.
    Also, if this is Derek answering, you have helped me multiple times with other issues. This is not intended to criticize any individuals. Thanks!

    Good morning ToxicLogics,
    I am more than happy to see if I can help answer your questions!
    Based on your pre-order, it does not appear that any My Best Buy certificates were redeemed.
    If you want to apply any active My Best Buy certificates to your pre-order, then you would need to cancel the existing pre-order and place a new pre-order.
    Are you trying to view your points history by logging into BestBuy.com?  If you want to view the details of your account and access your points/certificates , then you are going to wan to login to MyBestBuy.com.  Your My Best Buy and BestBuy.com accounts appear to be linked.
    I am unable to see when you changed your certificate preference
    I would like to go over your My Best Buy account with you to ensure it is up-to-date and that your certificate preference is correct, so I will be sending you a private message.  You can check your private messages by logging into the forum and clicking on the little yellow envelope at the top of the page.
    Thank you for posting to the forum!
    Derek|Social Media Specialist | Best Buy® Corporate
     Private Message

  • Unable to stop the event logs on access point console

    Hi team,
    I have an AIR-LAP1131AG-E-K9 access point having ios c1130-k9w8-mx.124-21a.JHB1.
    When I am trying to take the console of it there are many logs generated like LWAPP ...Go join the controller, Discover controller etc. and the ap is unable to register to the controller(2112 with ios version 6.0.199.4). I'm trying to enter the command but there are many event msg generated....How do i stop this event log. I tried entering the command no debug all. but still there are many logs...
    I want to enter the the following commands
    #lwapp ap  ip address <ip addr>.
    #lwapp a pip default-gateway <gateway ip addr>
    #lwapp ap controller ip addr <controller ip>
    #wr me
    Revert me back on urgent basis
    Thanks in advance..

    Thanks Rashika,
    Now the access point got registered to the controller..This happened becuse of country Code..
    I have changed the country code to UK, Belgium it started working fine.
    Initially when it was IN the access point was not getting register..
    But now the problem which arised is that the user is unable to get authenticated to the radius server.
    Radius server is reachable and we have done every changes required for radius server authentication.
    Users are getting rejected.
    Customer is saying that the radius server is in IN domain and the WLC/access point is in UK,BE and hence the users are unable to connect..
    Is it so??
    Rply
    Thanks in advance...

Maybe you are looking for