Cisco 1040 IOS to CAPWAP possible?
I´m looking to a project where we want to start using Autonomous AP with possibility to change to controller based on near future.
Will Cisco Aironet 1040 Series Access Points allow us to change from IOS to CAPWAP when needed? I read some posts about the oposite process (CAPWAP to IOS) so I think it´s possible on both way. Can some one confirm this to me?
Hi,
Here is the way we convert the AP from LWAPP to IOS (make sure you are using the right image), example is for 1142 AP..
The image that is on the device is LWAPP one, not the autonomous.. if you want to use the AP in autonomous mode then the image should be W7.. that is..
c1140-k9w7-tar.124-21a.JY.tar not c1140-rcvk9w8-tar.124-23c.JA.tar
I request you to do download any image from the below link and perform the conversion from LWAPP image to autonomous..
http://tools.cisco.com/support/downloads/go/PlatformList.x?sftType=IOS+Software&mdfid=282439881&treeName=Wireless&mdfLevel=Model&url=null&modelName=Cisco+Aironet+1140+Access+Point&isPlatform=N&treeMdfId=278875243&modifmdfid=null&imname=&hybrid=Y&imst=N
the methos to convert is..
download TFTPd32 from google and install it on ur PC.. point the image that you have downloaded in the TFTP server..
connect a ethernet cable between ur laptop and AP.. both should be in the same subnet.. and connect a console cable and get the hyperterminal console access and issue the command.. make sure you are able to ping the PC and the AP and vice versa!!
AP>en
AP#debug lwapp console cli or debug capwap console cli
AP#config t
AP(confg)int fa 0
AP(confg-if)ip addr (same subnet as that of the laptop)
AP(confg-if)end
AP#archieve download-sw /force-reload /overwrite tftp:///
AP#archieve download-sw /force-reload /overwrite tftp://<10.0.0.5>/c1140-k9w7-tar.124-21a.JY.tar
The above command will do it for you!!
lemme know if this answered your question..
Regards
Surendra
====
Please dont forget to rate the posts which answered your question and mark it as answered or was helpfull
Similar Messages
-
Im using iphone 4 uk unlock , it has ios 4.2.1 and it does not have software update option.Now i want to update the phone with latest ios is it possible and tel me how ?
The update to iOS 5.0 & higher is an erase/restore deal, so make sure you follow the directions here to update your phone:
http://support.apple.com/kb/ht4972
iOS 7.0.4 will be installed. -
Nexus 2K to Cisco 2960 IOS Switch
Hi,
I am trying to connect Nexus 2K FEX to Cisco 2960 IOS Switch (Trunk config) and causing spanning tree loop having issues. I am aware that I should't be connecting non host port to 2K FEX but it's corner case. I have done similar setup with Access Port configuration and didn't faced any issues.
Nexus 5K config Config
interface Ethernet107/1/47
switchport mode trunk
switchport trunk allowed vlan 500-501
spanning-tree guard root
spanning-tree bpdufilter enable
interface Ethernet108/1/47
switchport mode trunk
switchport trunk allowed vlan 500-501
spanning-tree guard root
spanning-tree bpdufilter enable
2960-Config
interface GigabitEthernet1/0/47
switchport mode trunk
switchport trunk allowed vlan 500-501
spanning-tree bpdufilter enable
interface GigabitEthernet1/0/48
switchport mode trunk
switchport trunk allowed vlan 500-501
spanning-tree bpdufilter enable
Error Log
%FWM-2-STM_LOOP_DETECT: Loops detected in the network for mac 001b.1700.0130 among ports Eth107/1/47
Eth108/1/47 vlan 500 - Disabling dynamic learn notifications for 180 seconds
Should I configure port as "spanning-tree port type network" and create VPC and "storm-control broadcast level" to stop future occurrence? OR Do i have to configure anything else to prevent spanning-tree loops?
Thanks for your help
RiteshHi,
spanning-tree port type network is used for VPC peer-link. Try creating a new VPC and add ports 107/1/47 and 108/1/47 to it and a Portchannel on the 2960 and test.
HTH -
i want to upgrade my iphone to 7 ios is it possible ? if it how can i do ,please help me !
Which iPhone do you have and what version is it currently running?
-
Can't find the cisco mobile ios type
hello,
i use CCA version 3.2, i want to add a cisco mobile ios to the UC520 system so i installed the cisco jabber in my phone but when i tried to add the extension line of the phone in CCA i don't find the type cisco mobile ios with what type can i define the android phone?Your question is a bit confusing, but it looks like you are asking what phone type you should choose for an android phone?
Android is NOT supported as a Jabber client on the UC5XX series.
iPhone is the only supported platform, and only the voice/voicemail component (no video or chat). iPad/Android/etc are NOT supported at all.
-Dan
Please rate useful posts. -
Cisco router - IOS version issue
What happend as ISP provider and provide the service but the Cisco router IOS running at low end version. Pls discuss . Thanks
Sorry, I don't understand the question. Can you please elaborate?
-
Hello to everyone,
I write because I have decided to pass from a cisco 2811 with ios 12.4/k9 to a cisco 1941 ios 15/k9, migrating configuration I have a problem with the ZBF.
I do not know if it's a problem of policy or differences between ios.
Could someone help me please?
Thank you all in advance
Regards,
Salvatore
Update: Configuration modified and IOS upgrade.Salvatore,
I don't know what problem exactly you face with your ZBF, but this may help you trbouleshooting your ZBF.
http://www.cisco.com/en/US/products/sw/secursw/ps1018/products_tech_note09186a0080a63b94.shtml
Thanks! -
Does this mean Actionscript workers on IOS are now possible?
Does this version fo AIR mean that Actionscript workers on IOS are now possible?
not yet, you have to wait
-
Is it possible to use a Cisco 2800 IOS H323 voice gateway for video conferencing over ISDN?
I have seen this page and was wondering if what it says actually is possible and works? I also have got a CUCM 8.6 that I would like to use for call routing via my old 2600XM gatekeeper.
http://www.cisco.com/c/en/us/td/docs/ios/12_4t/12_4t11/h320gw.html#wp1047659I have seen this page and was wondering if what it says actually is possible and works? I also have got a CUCM 8.6 that I would like to use for call routing via my old 2600XM gatekeeper.
http://www.cisco.com/c/en/us/td/docs/ios/12_4t/12_4t11/h320gw.html#wp1047659 -
Cisco wlc ios 7.2 with clients windows 8 can not authenticate with 802.1x
Hello my name is Ivan:
I have a solution a unified solution wireless with a cisco wlc 7.2 and ap cisco. My issue is the follow:
My users are using laptops with OS windows 8, and they can not access to the network wireless because they authenticate in to the network using 802.1x wpa/wpa2 with tkip or aes.
I find a bug in the ios of the wlc. The number is CSCua29504. I would not to change the drivers in the laptop to join the users in to the solution.
Please is possible to find any software to do the upgrade in the wlc? Or perhaps we need to do an upgrade in to cisco lightweight access point?
Please help me in this issue.
Regards
IvanBug ID CSCua29504 has been fixed in WLC firmware 7.0.235.3, 7.3.101.X or 7.4.100.X.
So if you are NOT running any one of these codes, then yes. Upgrade your firmware is your solution.
Fixed in: (12)
7.4(100.0),7.4(1.20),7.3(112.0),7.3(101.0),7.3(1.67)
7.2(111.3),7.2(111.1),7.2(110.4),7.0(236.0),7.0(235.3) -
L3VPN on Cisco ASR9001 IOS XF 4.3.1 (PE router)
Hi all,
I need to know if this configuration is correct on Cisco ASR 9001 to have L3VPN.
This CISCO should be a PE router (other PE router is in another Autonomous System).
RP/0/RSP0/CPU0:ASR9001-2#sh running-config
Mon Oct 6 06:11:16.434 UTC
Building configuration...
!! IOS XR Configuration 4.3.1
!! Last configuration change at Sun Oct 5 08:23:50 2014 by admin
hostname ASR9001-2
telnet vrf default ipv4 server max-servers 100
ptp
clock
domain 1
profile 1
multicast
transport ethernet
port state slave-only
clock operation two-step
profile 2
transport ethernet
vrf vpnv4
address-family ipv4 unicast
import route-target
65000:111
65001:111
export route-target
65000:111
interface Loopback0
ipv4 address 10.85.0.67 255.255.255.255
interface Loopback1
vrf vpnv4
ipv4 address 2.2.2.2 255.255.255.255
interface MgmtEth0/RSP0/CPU0/0
shutdown
interface MgmtEth0/RSP0/CPU0/1
ipv4 address 10.44.107.35 255.255.255.128
interface GigabitEthernet0/0/0/0
shutdown
interface GigabitEthernet0/0/0/1
ptp
profile 2
shutdown
interface GigabitEthernet0/0/0/2
shutdown
interface GigabitEthernet0/0/0/3
shutdown
interface GigabitEthernet0/0/0/4
shutdown
interface GigabitEthernet0/0/0/5
shutdown
interface GigabitEthernet0/0/0/6
shutdown
interface GigabitEthernet0/0/0/7
shutdown
interface GigabitEthernet0/0/0/8
shutdown
interface GigabitEthernet0/0/0/9
shutdown
interface GigabitEthernet0/0/0/10
shutdown
interface GigabitEthernet0/0/0/11
shutdown
interface GigabitEthernet0/0/0/12
shutdown
interface GigabitEthernet0/0/0/13
shutdown
interface GigabitEthernet0/0/0/14
shutdown
interface GigabitEthernet0/0/0/15
shutdown
interface GigabitEthernet0/0/0/16
shutdown
interface GigabitEthernet0/0/0/17
shutdown
interface GigabitEthernet0/0/0/18
shutdown
interface GigabitEthernet0/0/0/19
shutdown
interface TenGigE0/0/1/0
mtu 9216
shutdown
interface TenGigE0/0/1/1
mtu 9000
ptp
profile p1
ipv4 address 10.85.52.5 255.255.255.252
interface TenGigE0/0/1/2
shutdown
interface TenGigE0/0/1/3
mtu 9000
ipv4 address 10.85.52.1 255.255.255.252
interface TenGigE0/0/2/0
shutdown
interface TenGigE0/0/2/1
shutdown
interface TenGigE0/0/2/2
shutdown
interface TenGigE0/0/2/3
shutdown
router static
address-family ipv4 unicast
10.40.0.0/14 10.44.107.1
141.0.0.0/8 10.44.107.1
router ospf 1
router-id 10.85.0.67
mpls ldp sync
mpls ldp auto-config
area 0.0.0.0
mtu-ignore enable
interface Loopback0
passive enable
interface TenGigE0/0/1/1
interface TenGigE0/0/1/3
router bgp 65000
bgp router-id 10.85.0.67
address-family ipv4 unicast
network 10.85.0.67/32
address-family vpnv4 unicast
neighbor 10.85.0.71
remote-as 65000
update-source Loopback0
address-family ipv4 unicast
address-family vpnv4 unicast
neighbor 10.85.0.72
remote-as 65000
update-source Loopback0
address-family ipv4 unicast
address-family vpnv4 unicast
vrf vpnv4
rd 10.85.0.67:111
address-family ipv4 unicast
redistribute connected
redistribute static
mpls ldp
router-id 10.85.0.67
interface TenGigE0/0/1/1
interface TenGigE0/0/1/3
ssh server v2
ssh server session-limit 100
end"New pin mode is not supported if you are using the RSA native protocol."
I am very aware of this.
"Use the Radius protocol on the RSA Authentication Manager for features like New pin , next token mode etc."
I am also very aware of this too.
However, I do not want to use radius on the
RSA Authentication Manager. I want to use
tacacs+ in the ACS but off-load the
authentication database piece to RSA. I
want to use tacacs because I want to have
separations between Authentication and
Authorization, which is not possible with
radius.
From the router's perspective, it does not
know anything about RSA, it only knows ACS.
Are you saying that even though ACS passes the
credentials to RSA, it is still RSA native
protocol? i.e. udp port 5500?
Thanks. -
Cisco SSL-VPN / webvpn with Cisco 2901 IOS 15.3.3M
Dear Community,
I have a strange issue that I am hoping some of you will be able to assist with.
I am running an environment with the following specifications
Cisco ISR G2 2901 with IOS 15.3.3M
Security Licence enabled
Data Licence enabled
VPN Licence enabled
Cisco ISR G2 2951 with IOS 15.3.3M
Security Licence enabled
Data Licence enabled
SM with ESX server.
Desktop Environment
Windows XP SP3
Internet Explorer 8
Desktop Environment 2
Windows 8
Internet Explorer 10
I have a ESX server set up with a web page on the 2951. The 2901 unit has a SSL VPN / web vpn service set up on it to allow the Desktop Environments to connect to the 2951 web page. The Desktop Environments are not allowed to directly connect to the 2951 router that is why the SSL-VPN / web vpn is used.
This system was initially working with IOS 15.2.4M2 however an update of the IOS was required and now the VPN does not fully function correctly.
PROBLEM: Now the webvpn interface loads with the welcome screen and login. After logging in it has a screen with a link to the webpage on the 2951. When I try open this webpage on the 2951 and the SSL-VPN starts to build I only get half my web page. There seems to be a problem where I only get half a page loading or just a blank page with just HTML headers. I have tried changing the page to just HTML but it still does not display properly. This is with Internet Explorer ( all versions ). With firefox there are no problems but I cannot run this browser as my environment will not allow it.
If anyone can assit me here it would really make my day.
Thanks,
WillCan anyone help with this ?
-
Hi, I'm trying to create Site-to-Site VPN between Cisco ASA 5505 and Cisco Router 3945.
I've tried create configuration with and without ASA wizard, but anyway it doesn't work.
Please help me to find where is the issue.
I have two sites and would like to get access from 192.168.83.0 to 192.168.17.0
192.168.17.0 --- S1.S1.S1.S1 (IOS Router) ==================== S2.S2.S2.S2 (ASA 5505) --- 192.168.83.0
Here is my current configuration.
Thanks for your help.
IOS Configuration
version 15.2
crypto isakmp policy 1
encr aes 256
authentication pre-share
group 2
crypto isakmp key cisco address 198.0.183.225
crypto isakmp invalid-spi-recovery
crypto ipsec transform-set AES-SET esp-aes esp-sha-hmac
mode transport
crypto map static-map 1 ipsec-isakmp
set peer S2.S2.S2.S2
set transform-set AES-SET
set pfs group2
match address 100
interface GigabitEthernet0/0
ip address S1.S1.S1.S1 255.255.255.240
ip nat outside
ip virtual-reassembly in
duplex auto
speed auto
crypto map static-map
interface GigabitEthernet0/1
ip address 192.168.17.1 255.255.255.0
ip nat inside
ip virtual-reassembly in
duplex auto
speed auto
access-list 100 permit ip 192.168.17.0 0.0.0.255 192.168.83.0 0.0.0.255
ASA Configuration
ASA Version 8.4(3)
interface Ethernet0/0
switchport access vlan 2
interface Vlan1
nameif inside
security-level 100
ip address 192.168.83.1 255.255.255.0
interface Vlan2
nameif outside
security-level 0
ip address S2.S2.S2.S2 255.255.255.248
ftp mode passive
same-security-traffic permit intra-interface
object network inside-network
subnet 192.168.83.0 255.255.255.0
object network datacenter
host S1.S1.S1.S1
object network datacenter-network
subnet 192.168.17.0 255.255.255.0
object network NETWORK_OBJ_192.168.83.0_24
subnet 192.168.83.0 255.255.255.0
access-list outside_access_in extended permit icmp any any echo-reply
access-list outside_access_in extended deny ip any any log
access-list outside_cryptomap extended permit ip 192.168.83.0 255.255.255.0 object datacenter-network
pager lines 24
logging enable
logging asdm informational
mtu inside 1500
mtu outside 1500
ip local pool vpn_pool 192.168.83.200-192.168.83.254 mask 255.255.255.0
icmp unreachable rate-limit 1 burst-size 1
no asdm history enable
arp timeout 14400
nat (inside,outside) source dynamic inside-network interface
nat (inside,outside) source static inside-network inside-network destination static inside-network inside-network no-proxy-arp route-lookup
nat (inside,outside) source static inside-network inside-network destination static datacenter-network datacenter-network no-proxy-arp route-lookup
nat (inside,outside) source static NETWORK_OBJ_192.168.83.0_24 NETWORK_OBJ_192.168.83.0_24 destination static datacenter-network pdatacenter-network no-proxy-arp route-lookup
access-group outside_access_in in interface outside
route outside 0.0.0.0 0.0.0.0 DEFAULT_GATEWAY 1
crypto ipsec ikev1 transform-set vpn-transform-set esp-3des esp-sha-hmac
crypto ipsec ikev1 transform-set vpn-transform-set mode transport
crypto ipsec ikev1 transform-set L2L_SET esp-aes esp-sha-hmac
crypto ipsec ikev1 transform-set L2L_SET mode transport
crypto dynamic-map dyno 10 set ikev1 transform-set vpn-transform-set
crypto map vpn 1 match address outside_cryptomap
crypto map vpn 1 set pfs
crypto map vpn 1 set peer S1.S1.S1.S1
crypto map vpn 1 set ikev1 transform-set L2L_SET
crypto map vpn 20 ipsec-isakmp dynamic dyno
crypto map vpn interface outside
crypto isakmp nat-traversal 3600
crypto ikev1 enable outside
crypto ikev1 policy 10
authentication pre-share
encryption 3des
hash sha
group 2
lifetime 86400
crypto ikev1 policy 20
authentication pre-share
encryption aes-256
hash sha
group 2
lifetime 86400
group-policy GroupPolicy_S1.S1.S1.S1 internal
group-policy GroupPolicy_S1.S1.S1.S1 attributes
vpn-tunnel-protocol ikev1
group-policy remote_vpn_policy internal
group-policy remote_vpn_policy attributes
vpn-tunnel-protocol ikev1 l2tp-ipsec
username artem password 8xs7XK3To4s5WfTvtKAutA== nt-encrypted
username admin password rqiFSVJFung3fvFZ encrypted privilege 15
tunnel-group DefaultRAGroup general-attributes
address-pool vpn_pool
default-group-policy remote_vpn_policy
tunnel-group DefaultRAGroup ipsec-attributes
ikev1 pre-shared-key *****
tunnel-group DefaultRAGroup ppp-attributes
authentication ms-chap-v2
tunnel-group S1.S1.S1.S1 type ipsec-l2l
tunnel-group S1.S1.S1.S1 general-attributes
default-group-policy GroupPolicy_S1.S1.S1.S1
tunnel-group S1.S1.S1.S1 ipsec-attributes
ikev1 pre-shared-key *****
class-map inspection_default
match default-inspection-traffic
policy-map type inspect dns preset_dns_map
parameters
message-length maximum client auto
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect rsh
inspect rtsp
inspect esmtp
inspect sqlnet
inspect skinny
inspect sunrpc
inspect xdmcp
inspect sip
inspect netbios
inspect tftp
inspect ip-options
inspect icmp
service-policy global_policy global
prompt hostname context
no call-home reporting anonymous
Cryptochecksum:f55f10c19a0848edd2466d08744556eb
: endThanks for helping me again. I really appreciate.
I don't hve any NAT-exemptions in Cisco IOS Router. Transform-set I will change soon, but I've tried with tunnel mode and it didn't work.
Maybe NAT-exemptions is the issue. Can you advice me which exemptions should be in Cisco IOS Router?
Because on Cisco ASA I guess I have everything.
Here is show crypto session detail
router(config)#do show crypto session detail
Crypto session current status
Code: C - IKE Configuration mode, D - Dead Peer Detection
K - Keepalives, N - NAT-traversal, T - cTCP encapsulation
X - IKE Extended Authentication, F - IKE Fragmentation
Interface: GigabitEthernet0/0
Session status: DOWN
Peer: 198.0.183.225 port 500 fvrf: (none) ivrf: (none)
Desc: (none)
Phase1_id: (none)
IPSEC FLOW: permit ip 192.168.17.0/255.255.255.0 192.168.83.0/255.255.255.0
Active SAs: 0, origin: crypto map
Inbound: #pkts dec'ed 0 drop 0 life (KB/Sec) 0/0
Outbound: #pkts enc'ed 0 drop 0 life (KB/Sec) 0/0
Should I see something in crypto isakmp sa?
pp-border#sh crypto isakmp sa
IPv4 Crypto ISAKMP SA
dst src state conn-id status
IPv6 Crypto ISAKMP SA
Thanks again for your help. -
i need safari on my ipod i had it now it is gone and it is really annoying i cannot download some apps all because of an ios thing i would appreciate it if i could get ios 7 so someone please help me
You may have to consider, if possible, a visit to an Apple Store with Genius
bar. Usually it's best to try & set an appointment. If you know an actual Store
you may call and ask if they can help you set a time to discuss this issue so
as to save you some trouble with using the online Genius bar scheduling.
Find an Apple Authorized Service Provider
Visit an Apple Retail Store
Find Locations - Country Selector - Apple: https://locate.apple.com/country
The iPod Touch you have may not accept the latest iOS8.x system, so if you
have older marginal Apps, they would not work and may not have equal or
similar replacements under the latest iOS version. iOS7 may not be available
and if you should upgrade to iOS8, you probably won't be able to revert back.
After looking around Support online, I do not see a method of restoring Safari
but your device may have one built-in to it; perhaps part of a reset process.
I am not certain... There are some items you may have to attach the Touch to
a computer and use it to see about updates or replacement software.
http://www.apple.com/support/contact/
To ask a knowledgeable product specialist, and have the iPod Touch model
and serial number handy, may be the best way to go. Expect that with any
upgrade to a newer iOS system software, old apps won't work and new ones
that could be available, may not look, feel or act in the same way as old ones.
Good luck & happy computing! -
How do you backup a Cisco 2950 IOS image?
I cant find anywhere on Cisco's website on how to do this or anywhere else for that matter.
Hector,
The copy tftp method is the most commonly used method to copy files from flash to a TFTP server or vice versa. But if you have CMS (cluster management suite) instlled on your flash, there will be an associated html folder and many other files that are extracted in flash. To upload these files, along with the IOS image, you will need to use the following command.
archive upload-sw tftp:///IOS-CMS2950.tar
This will compress all the files (IOS and CMS files) together in a tar (compressed) format and upload it to the TFTP server specified by
Copying each of the above files individually will consume a lot of time.
Maybe you are looking for
-
I get an error coode 5506 when i try to link to my comp. can you help
i have been try to link to my computer to down load music and recive an error message 5506. Can you help me?
-
How do i move photos from stream to mac?
I am tring to get the photos from strem on my iPad to my mac...frustrating...sync didn't do it...Help?
-
Connect via Windows Powershell in SCCM 2012 CONSOLE (with PowerShell 4.0 installed)
Hi, When trying to "Connect via Windows Powershell" in the SCCM 2012 console, I get the message that Powershell 3.0 is not installed... (which actually isn't installed, we have PS4.0 installed). Do we need to install PS3.0 also to get it working or i
-
How to reduce the posted depreciation
hi, i need to reduce the depreciation for the fiscal year 2007-08. Assume that Depreciation amount was posted as Rs.12000.00 in the last fiscal year . Now i want to reduce only Rs.2000.00 in the same year. i.e 31.03.2008. how to reduce the depreciati
-
Transaction/Program/FM for finding out Total Expenditure of Project
Hi Gurus, Can any one please tell me, is there any Transaction code/Program/FM to find out the <b>Total Expenditures on any particular project </b> Thanks in advance Warm Regards, Izhar Khan