Cisco Aironet 1140 Issues (Dropping clients, 5GHz issue, AP Switching)

Greetings,
We've been having issues for a while with these Aironet 1140's. We have two of them in the office and the issue is similar to the first issue displayed in this post:
https://supportforums.cisco.com/docs/DOC-26228
The only difference is that I can't do this since we don't use a controller.
We're using Mac clients on Lion/Mt. Lion. We have no issues connecting to the access points, but occassionally the user will drop off one of the AP's(Access Point 2). Recently I changed the setup from TKIP/WPA to AES-CCM/WPA to get the PHY address to 802.11N instead of 802.11G. I got the speeds working fine, but I suppose this caused an issue of people dropping off at different times. I noticed if I remove the SSID from the preferred list and reconnect it goes from WPA to WPA2. Not sure if this is relevant information, just trying to list what I can to resolve this issue. I haven't had any reported issues with the other Access Point(Access Point 1).
Another issue we have is getting the radio to work on 5GHz for Access Point 1. It seems when a user is connected to the 5GHz signal, it will not load any web pages. Can ping out just fine, and ping internally as well. I've checked to see if the client is getting an IP address, and it is. It also has DNS set to 8.8.8.8 and another DNS IP we use. The other Access Point seems to work just fine with 5GHz enabled. Both work with 2.4GHz with no issues at all.
Lastly, clients are not switching Access Points to the strongest signal. I've tried this test with 5+ machines running different OS's from Snow Leopard to Mt. Lion. The client will not switch over passively, the Laptop must be closed and reopened to re-establish the connection to grab the closest signal. This isn't a huge issue, but it's something I'd like to get fixed. This could have been an ongoing issue before I switched the AP's to AES-CCM, but I've only noticed it after the fact.
If there's any additional information needed that could help resolve these issues, let me know.
Thanks!

The wireless clients/devices decides which WAPs to join.  It's not a "Cisco thing".  It's the standard.
That's what I figured, it's just an issue we have been having lately and trying to rule out the possibility it might be an Access Point issue.
Did you enable WPA and WPA2???  Apple does not like to "choose".  You have to either use WPA OR WPA2.
Actually, yes I should have included my steps of trying to resolve the issue. For some reason, the SSID would not appear in the listing of SSID's so I removed the preferred connection, which was WPA, and manually added it to be WPA2 Personal on the client. Still saw some issues with a few users, others seem to have rectified or they're not telling me.
I checked the event logs on the device and saw this:
Packet to client e0f8.4735.c16e reached max retries, removing the client
After some research, it was recommended to raise the packet retry value to 128. I haven't received any complaints from the 3 people that usually complain about dropped wifi yet, but it's still too soon to say.
The only thing I can think of is the signal strength.  Disable the 2.4 Ghz and see what signal strength you are getting with the 5.0 Ghz.
It should not be signal strength since I am about 10 feet away on my test machine which has the issue as well as any other clients in any distance long enough to grab the connection. I will try turning off 2.4 when there's nobody in the office tomorrow in the morning to see if that actually works. I would like to have it dual band though since we're not all at 5GHz here. With this issue, I was actually fearing that there just may be an issue with the 5GHz radio hardware. We also have an extra 1140 laying around I used for testing; the 5GHz radio worked with identical settings to the one not working.
Thanks for the reply! I will take a look at what you suggested a little further and keep this updated if increasing the packet retry value actually rectified the problem just in case someone else has the same issue.

Similar Messages

  • Cisco Aironet 1140: 3 of our 4 are always hanging

    Our office has 4 Cisco Aironet 1140 access points mounted on the ceiling. They are all powered via PoE. Every few days 3 of the 4 access points hang and have to be rebooted. When they hang I am not able to connect to their web interface to check the logs. The fourth, for some reason, always seems to stay alive.
    I checked the configuration for all AP's and "Hot Standby" is disabled
    They are all using static IP addresses. I've tried 2 different banks of static IP addresses and 3 of 4 still hange so I don't think this is an IP conflict
    I have saved the configurations and compared them and they are all identical, where possible.
    They all have software version: 12.4(21a)JA1
    They all have bootloader version: 12.4(23c)JA1
    I have tried to download the latest software/firmware, but unfortunately I do not have a valid service contract in place with Cisco and therefore can't download the latest version. All of our CISCO hardware was purchased from Amazon resellers and they can't seem to help me with this. I have also tried to contact Cisco and they can't seem to help either. If anyone has a suggestion on how I can get a valid service contract that information would also be very helpful!!!
    Does anyone have any ideas why 3 of our 4 access points would hang? When they hang, I can't login to the web interface and the logs seem to reset when I reset each access point. I have also set up an rsyslog server and I don't see a log entry that would indicate a problem.
    Any ideas?
    Thank you

    Here is the config for one of the AP's that keeps hanging:
    ! Last configuration change at 09:18:05 -1000 Mon Jan 30 2012 by admin
    ! NVRAM config last updated at 09:18:05 -1000 Mon Jan 30 2012 by admin
    version 12.4
    no service pad
    service timestamps debug datetime msec
    service timestamps log datetime msec
    service password-encryption
    hostname XXX2
    aaa new-model
    aaa authentication login default local
    aaa authorization exec default local
    aaa session-id common
    clock timezone -1000 -10
    ip name-server 8.8.8.8
    ip name-server 8.8.4.4
    dot11 syslog
    dot11 ssid XXX2
       authentication open
       authentication key-management wpa version 2
       guest-mode
       wpa-psk ascii 7 01234567890123456789012
    username admin privilege 15 password 7 01234567890123456789012
    bridge irb
    interface Dot11Radio0
    no ip address
    no ip route-cache
    encryption mode ciphers aes-ccm
    ssid XXX2
    antenna gain 0
    station-role root
    bridge-group 1
    bridge-group 1 subscriber-loop-control
    bridge-group 1 block-unknown-source
    no bridge-group 1 source-learning
    no bridge-group 1 unicast-flooding
    bridge-group 1 spanning-disabled
    interface GigabitEthernet0
    no ip address
    no ip route-cache
    duplex auto
    speed auto
    no keepalive
    bridge-group 1
    no bridge-group 1 source-learning
    bridge-group 1 spanning-disabled
    interface BVI1
    ip address 192.168.100.252 255.255.255.0
    no ip route-cache
    ip default-gateway 192.168.100.1
    ip http server
    ip http authentication aaa
    no ip http secure-server
    ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
    snmp-server community MyCommunity RO
    bridge 1 route ip
    line con 0
    line vty 0 4
    sntp server 192.43.244.18
    sntp broadcast client
    end

  • How to load a boot image to cisco aironet 1140 series after missing boot image

    Hi all,
    I need a solution for this. When i switch my cisco aironet 1140 , it s blinking with red light .and gives a message "no boot image to load".
    When i tried next time, by pressing escape it shows this message that i have mentioned below.
    ap:
    ap:
    using  eeprom values
    WRDTR,CLKTR: 0x83000800 0x40000000
    RQDC ,RFDC : 0x80000035 0x00000208
    using ÿÿÿÿ ddr static values from serial eeprom
    ddr init done
    Running Normal Memtest...
    Passed.
    IOS Bootloader - Starting system.
    FLASH CHIP:  Numonyx P33
    Checking for Over Erased blocks
    Xmodem file system is available.
    DDR values used from system serial eeprom.
    WRDTR,CLKTR: 0x83000800, 0x40000000
    RQDC, RFDC : 0x80000035, 0x00000208
    PCIE0: link is up.
    PCIE0: VC0 is active
    PCIE1: link is NOT up.
    PCIE1 port 1 not initialized
    PCIEx: initialization done
    flashfs[0]: 1 files, 1 directories
    flashfs[0]: 0 orphaned files, 0 orphaned directories
    flashfs[0]: Total bytes: 32385024
    flashfs[0]: Bytes used: 1536
    flashfs[0]: Bytes available: 32383488
    flashfs[0]: flashfs fsck took 16 seconds.
    Reading cookie from system serial eeprom...Done
    Base Ethernet MAC address: 28:94:0f:d6:c8:62
    Ethernet speed is 100 Mb - FULL duplex
    The system is unable to boot automatically because there
    are no bootable files.
    C1140 Boot Loader (C1140-BOOT-M) Version 12.4(23c)JA3, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Compiled Tue 18-Oct-11 14:51 by prod_rel_team
    ap:
    So , now my question is how to load the boot image ? From where will we get this ? OR
    I m also having another Cisco aironet 1140 , Can i get bootimage from that . Kindly let me know the solution from genius ?

    Take a look at this link as it should have the info you need
    https://supportforums.cisco.com/docs/DOC-14636
    Sent from Cisco Technical Support iPhone App

  • Configuring Cisco Aironet 1140 for Radius and setting up a Radius server

    guys i need some help setting up my Radius to work with cisco aironet 1140, i am new at this however i was tasked with setting up a Radius server and setting our AP with WPA2- enterprise so users can log into our AP using AD credentials.
    When i try to setup on the AP a new SSID i do not see the option for WPA2- enterprise?

    Here are other links with examples:
    https://supportforums.cisco.com/thread/331581
    http://targetcisco.blogspot.com/2011/03/cisco-autonomous-access-point.html
    http://downloads.avaya.com/css/P8/documents/100041614
    Thanks,
    Scott
    Help out other by using the rating system and marking answered questions as "Answered"

  • Can't find autonomous image to Cisco Aironet 1140

    Can anyone gives a link?
    -JeIlMa

    Here you go:
    http://tools.cisco.com/support/downloads/go/PlatformList.x?sftType=IOS+Software&mdfid=282439881&treeName=Wireless&mdfLevel=Model&url=null&modelName=Cisco+Aironet+1140+Access+Point&isPlatform=N&treeMdfId=278875243&modifmdfid=null&imname=&hybrid=Y&imst=N

  • Cisco Aironet 1140 Association

    All,
         Quick question about the association web interface tab on a 1140.  I have noticed that the Device Type shows as "unknown" and the Name shows as "NONE."  Anyone have a clue as to why?  Thanks for any help!
         Dave

    Any resolution on this?
    We have about 20 Cisco Aironet APs and they all show the same, Device type unknown, Name NONE

  • Question regarding the use of Cisco Aironet 1140 series

    We are looking at deploying some of the Cisco Aironet Access Points as standalone. We are essentially setting up a hotspot. They will mainly be in conference rooms at each of our field offices so visitors attending our meetings can have internet access. Do clients have to use Cisco wireless adapters in order to connect
    to any of Cisco Aironet Access Points or can they use whatever wireless card they have as long as it supports the bands available?
    Thx in advance for any advice given.

    Any product which displays the Wi-Fi Certified logo, including everything from Cisco, should interoperate with any other Wi-Fi Certified gear.

  • Cisco aironet 1200 Series access point dropping clients

    We are having an issue where our Cisco Aironet 1220 Series AP is constantly dropping clients. We have 3 APs mounted on a single tower, all out of each others range and freq. There are approximatly 30 clients on each AP. We are noticing an increase in dropped customers (up to 20 at a time). ANy suggestions? This only became an issue in the last few weeks, and nothing major has changed.

    Hi
    Even I was facing almost the same kind of problem. But in my case it was wired clients to the workgroup bridge 350.
    I had done lot of testings and reading at that time to resolve this problem.
    However in your case I feel your problem can be resolved by keeping the option "Reliable multicast for Workgroup bridges" disabled in the APs under dot11radio interface settings. This is possibly because the radios cannot associate to more than 20 clients at a time if the option is in the enable mode.
    You need to keep this option enabled in a root bridge when you have problems of dropping the wired clients to the workgroup bridge.
    By keeping this option enabled, you are actually asking the Root bridges to consider the Workgroup bridges as Infrastructure devices and not as clients thereby making the roots to send all the multicasts to the WGBs. However in that case it losses the efficiency of associating more than 20 clients.
    Let me know if this resolves your problem.
    Regards

  • Cisco Aironet 1200 LAP Issues - LAP to Autonomous Mode

    Greetings! After purchasing 4 of the Cisco Aironet 1200 G Series WAPs, I'm now running into a slight issue with them.
    I received these last week with the understanding that if I didn't have the Cisco controller device, I could convert them from being the Lightweight Access Point, back to Autonomous mode with an IOS.
    With this, I checked the documentation that came with the device and found the "Upgrading Autonomous Cisco Aironet Access Points to Lightweight Mode" or http://forum.cisco.com/eforum/servlet/NetProf?page=netprof&forum=Wireless%20-%20Mobility&topic=Getting%20Started%20with%20Wireless&needs_authentication=yes&CommCmd=MB%3Fcmd%3Dadd_discussion%26mode%3Dshow%26needs_authentication%3Dyes%26location%3D.ee7c7c3.
    From there, I followed the instructions listed under Converting a Lightweight Access Point Back to Autonomous Mode. Before the rename of the file, I checked the device and found AIR-LAP1242G-A-K9 for the Model No.
    One of the Cisco Certified admins here was able to obtain the latest build for the IOS for the device or c1240-k9w7-tar.123-8.JEB1.tar. Per the instructions, I renamed the file to coincide with the model of the device.
    I followed the instructions from there, and it looked as if everything was going well. However, after the upgrade, I'm running into an issue with the following:
    File "flash:/c1200-k9w7-mx.123-8.JEB1/c1200-k9w7-mx.123-8.JEB1" uncompressed and installed, entry point: 0x3000
    executing...
    At this point, the device just locks up. All lights are lit green on the device. According do the documentation, it should reboot and from there, I should be able to access the web interface by IP.
    I've tried to perform the upgrade again using the same IOS build, but the same thing happens with the lock up.
    At this point, I'm assuming the issue is with the build of the IOS that I have and I may have to look at getting an older build. However, before doing so, I thought I would post something here to see if anyone had an idea.
    I may have needed to refine my searching of the forums, but wasn't able to find anything in relation to my issue. If there is something out there, I do apologize for the post and will happily refer to any current information.
    If you need any further information in relation to this, please let me know. Any assistance is greatly appreciated. Thank you!

    Hi Jeffrey,
    Reverting the Access Point Back to Autonomous Mode
    Have a look at Step 3
    http://www.cisco.com/en/US/products/hw/wireless/ps430/prod_technical_reference09186a00804fc3dc.html#wp161272
    You can convert an access point from lightweight mode back to autonomous mode by loading a Cisco IOS Release that supports autonomous mode (Cisco IOS release 12.3(7)JA or earlier). If the access point is associated to a controller, you can use the controller to load the Cisco IOS release. If the access point is not associated to a controller, you can load the Cisco IOS release using TFTP.
    Using a TFTP Server to Return to a Previous Release
    Follow these steps to revert from LWAPP mode to autonomous mode by loading a Cisco IOS release using a TFTP server:
    Step 1 The static IP address of the PC on which your TFTP server software runs should be between 10.0.0.2 and 10.0.0.30.
    Step 2 Make sure that the PC contains the access point image file (such as c1200-k9w7-tar.122-15.JA.tar for a 1200 series access point) in the TFTP server folder and that the TFTP server is activated.
    Step 3 Rename the access point image file in the TFTP server folder to c1200-k9w7-tar.default for a 1200 series access point, c1130-k9w7-tar.default for an 1130 series access point, and c1240-k9w7-tar.default for a 1240 series access point.
    Step 4 Connect the PC to the access point using a Category 5 (CAT5) Ethernet cable.
    Step 5 Disconnect power from the access point.
    Step 6 Press and hold MODE while you reconnect power to the access point.
    Step 7 Hold the MODE button until the status LED turns red (approximately 20 to 30 seconds) and then release.
    Step 8 Wait until the access point reboots, as indicated by all LEDs turning green followed by the Status LED blinking green.
    Step 9 After the access point reboots, reconfigure it using the GUI or the CLI.
    From this doc;
    http://www.cisco.com/en/US/products/hw/wireless/ps430/prod_technical_reference09186a00804fc3dc.html#wp161272
    Hope this helps!
    Rob

  • AiroNet 1140 Authentication Issues Windows Server 2008 NPS

    Hello,
    We have an AiroNet 1140 AP that we are trying to configure RADIUS authentication. Our RADIUS server is a Microsoft Windows Server 2008 NPS server. Unfortunately, our Wi-Fi clients are unable to authenticate. We appear to have everything configured on the AP and RADIUS server correctly, but we receive the following errors from the debug on the AP. Doug
    *Mar 14 05:46:58.413: RADIUS/DECODE: No response from radius-server; parse response; FAIL
    *Mar 14 05:46:58.413: RADIUS/DECODE: Case error(no response/ bad packet/ op decode);parse response;
    FAIL
    *Mar 14 05:46:58.413: RADIUS/DECODE: No response from radius-server; parse response; FAIL
    *Mar 14 05:46:58.413: RADIUS/DECODE: Case error(no response/ bad packet/ op decode);parse response;
    FAIL

    Hi Steve, Here is the config for the AP.  Some screenshots of the NPS config are below, too.  Please let me know if you need more information from our NPS server.  Thanks, Doug
    ap#sh run
    Building configuration...
    Current configuration : 2971 bytes
    version 12.4
    no service pad
    service timestamps debug datetime msec
    service timestamps log datetime msec
    service password-encryption
    hostname ap
    logging rate-limit console 9
    enable secret 5 $1$1IPZ$WkdzqdeeGvEPvQLCHfGXU.
    aaa new-model
    aaa group server radius rad_eap
    server 10.20.2.96 auth-port 1645 acct-port 1646
    aaa group server radius rad_mac
    aaa group server radius rad_acct
    aaa group server radius rad_admin
    server 10.20.2.96 auth-port 1645 acct-port 1646
    aaa group server tacacs+ tac_admin
    aaa group server radius rad_pmip
    aaa group server radius dummy
    aaa authentication login eap_methods group rad_eap
    aaa authentication login mac_methods local
    aaa authorization exec default local
    aaa accounting network acct_methods start-stop group rad_acct
    aaa session-id common
    dot11 syslog
    dot11 ssid wifi
       authentication open eap eap_methods
       authentication network-eap eap_methods
       authentication key-management wpa
    username pg_ap privilege 15 secret 5 $1$rg0/$hTYIn.lysNUfxhzxqXonl/
    bridge irb
    interface Dot11Radio0
    no ip address
    no ip route-cache
    encryption mode ciphers aes-ccm
    ssid wifi
    antenna gain 0
    speed  basic-1.0 2.0 5.5 11.0 6.0 9.0 12.0 18.0 24.0 36.0 48.0 54.0 m0. m1. m2. m3. m4. m5. m6. m7.
    m8. m9. m10. m11. m12. m13. m14. m15.
    station-role root
    bridge-group 1
    bridge-group 1 subscriber-loop-control
    bridge-group 1 block-unknown-source
    no bridge-group 1 source-learning
    no bridge-group 1 unicast-flooding
    bridge-group 1 spanning-disabled
    interface Dot11Radio1
    no ip address
    no ip route-cache
    encryption mode ciphers aes-ccm
    ssid wifi
    antenna gain 0
    dfs band 3 block
    speed  basic-6.0 9.0 12.0 18.0 24.0 36.0 48.0 54.0 m0. m1. m2. m3. m4. m5. m6. m7. m8. m9. m10. m11
    . m12. m13. m14. m15.
    channel dfs
    station-role root access-point
    bridge-group 1
    bridge-group 1 subscriber-loop-control
    bridge-group 1 block-unknown-source
    no bridge-group 1 source-learning
    no bridge-group 1 unicast-flooding
    bridge-group 1 spanning-disabled
    interface GigabitEthernet0
    no ip address
    no ip route-cache
    duplex auto
    speed auto
    no keepalive
    bridge-group 1
    no bridge-group 1 source-learning
    bridge-group 1 spanning-disabled
    interface BVI1
    ip address 10.40.0.200 255.255.0.0
    no ip route-cache
    ip default-gateway 10.40.0.1
    ip http server
    no ip http secure-server
    ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
    ip radius source-interface BVI1
    radius-server local
      no authentication mac
      nas 10.20.2.96 key 7 003555402B5F012F3D007B16062C46430759550B3A232F7E0A1636472C01402573
    radius-server attribute 32 include-in-access-req format %h
    radius-server host 10.20.2.96 auth-port 1645 acct-port 1646 key 7 08100A08261D0F3E202A3B5C251E677C26
    677B1C171E08576F7A4C077F19403C337F0C7C7D035B172550305F756934172E327A1B13250C154D4C3F1319305C3514
    radius-server vsa send accounting
    bridge 1 route ip
    line con 0
    line vty 0 4
    end
    ap#

  • WLC 2504 v7.5.102.0 Client Association Issues. Association not consistent

    Hi All,
    I'm having a strange issue whereby client association to my corporate or guest wifi ssid are not consistent. Sometimes I have no issues connecting repeatedly and other times I cannot connect and receive the "Windows was unable to connect to *SSID*"
    I'm unable to determine whether it is a wireless association issue or if its a authentication issue as I have troubles connecting to both my secure (WPA2, AES, 802.1x) corporate wifi or my guest (Open Auth) wifi.
    Currently per day I have about 15 users using the wifi on both SSID's. The access points are right in the vicinity of the users. I have 2 LAP1142 access points on separate 802.11a/b/g/n channels and signal strenght is always high.. I'm certain its not co-channel interference or interference whatsoever. RSSI values are -60dBm and SNR 30+ dB. On average I will have 10 users on the wireless fine but one or two people are unable to connect.
    I have had wireshark run and when it does not connect I do not see anything in the logs. No traffic is captured!
    I cannot see the AAA capturing anything. Signal strength as stated above is high ( I have the AP on my desk!)
    Sometimes I can instantly connect with no troubles and other times its not association at all. I've recently updated to version 7.5 and these issues started to occur. Previous version 7.3 had no problems at all for years!.
    The logs in the WLC show
    *Dot1x_NW_MsgTask_0: Nov 27 04:42:09.956: #DOT1X-3-INVALID_WPA_KEY_MSG_STATE: 1x_eapkey.c:864 Received invalid EAPOL-key M2 msg in START  state - invalid secure bit; KeyLen 24, Key type 1, client 3c:a9:f4:4x:xx:xx
    Does anyone have an idea what could this issue could be?
    Many thanks

    Thanks for your reply Sandeep. Been working on it all afternoon with debugging.
    To answer your question, sometimes I can connect and sometimes I cannot. This afternoon I haven't been able to connect much at all. 2 out of 20 times perhaps. Other users I can see are connected to the two access points in this office. This isn't just happening on my laptop but several laptops. Same symptom.
    Heres the dot1x output I have captured from the debug of a FAILED association attempt.
    (Cisco Controller) >show debug
    MAC Addr 1.................................. 3C:A9:F4:36:1C:48
    Debug Flags Enabled:
      dot1x aaa enabled.
      dot1x packet enabled.
      dot1x events enabled.
      dot1x states enabled.
    (Cisco Controller) >*DHCP Socket Task: Nov 27 07:44:49.842: 3c:a9:f4:36:1c:48 apfMsRunStateInc
    *apfMsConnTask_4: Nov 27 07:45:15.284: 3c:a9:f4:36:1c:48 Processing RSN IE type 48, length 22 for mobile 3c:a9:f4:36:1c:48
    *apfMsConnTask_4: Nov 27 07:45:15.284: 3c:a9:f4:36:1c:48 Received RSN IE with 0 PMKIDs from mobile 3c:a9:f4:36:1c:48
    *apfMsConnTask_4: Nov 27 07:45:15.284: 3c:a9:f4:36:1c:48 Found an cache entry for BSSID 20:bb:c0:c9:26:92 in PMKID cache at index 0 of station 3c:a9:f4:36:1c:48
    *apfMsConnTask_4: Nov 27 07:45:15.284: 3c:a9:f4:36:1c:48 Removing BSSID 20:bb:c0:c9:26:92 from PMKID cache of station 3c:a9:f4:36:1c:48
    *apfMsConnTask_4: Nov 27 07:45:15.284: 3c:a9:f4:36:1c:48 Resetting MSCB PMK Cache Entry 0 for station 3c:a9:f4:36:1c:48
    *apfMsConnTask_4: Nov 27 07:45:15.284: 3c:a9:f4:36:1c:48 Setting active key cache index 0 ---> 8
    *apfMsConnTask_4: Nov 27 07:45:15.284: 3c:a9:f4:36:1c:48 unsetting PmkIdValidatedByAp
    *apfMsConnTask_4: Nov 27 07:45:15.284: 3c:a9:f4:36:1c:48 apfMsRunStateDec
    *apfMsConnTask_4: Nov 27 07:45:15.284: 3c:a9:f4:36:1c:48 apfMs1xStateDec
    *dot1xMsgTask: Nov 27 07:45:15.287: 3c:a9:f4:36:1c:48 Disable re-auth, use PMK lifetime.
    *dot1xMsgTask: Nov 27 07:45:15.288: 3c:a9:f4:36:1c:48 dot1x - moving mobile 3c:a9:f4:36:1c:48 into Connecting state
    *dot1xMsgTask: Nov 27 07:45:15.288: 3c:a9:f4:36:1c:48 Sending EAP-Request/Identity to mobile 3c:a9:f4:36:1c:48 (EAP Id 1)
    *dot1xMsgTask: Nov 27 07:45:15.288: 3c:a9:f4:36:1c:48 Sending 802.11 EAPOL message  to mobile 3c:a9:f4:36:1c:48 WLAN 3, AP WLAN 3
    *dot1xMsgTask: Nov 27 07:45:15.288: 00000000: 02 00 00 3c 01 01 00 3c  01 00 6e 65 74 77 6f 72  ...<...<..networ
    *dot1xMsgTask: Nov 27 07:45:15.288: 00000010: 6b 69 64 3d 54 50 49 2d  57 49 46 49 2c 6e 61 73  kid=PI-WIFI,nas
    *dot1xMsgTask: Nov 27 07:45:15.288: 00000020: 69 64 3d 4d 2d 54 50 49  2d 51 4c 44 2d 44 43 30  id=M-PI-QLD-DC0
    *dot1xMsgTask: Nov 27 07:45:15.288: 00000030: 30 31 2d 57 43 30 31 2c  70 6f 72 74 69 64 3d 31  01-WC01,portid=1
    *dot1xMsgTask: Nov 27 07:45:29.326: 3c:a9:f4:36:1c:48 Failure sending WPA EAPOL-Key due to invalid state 0 to mobile 3c:a9:f4:36:1c:48
    *dot1xMsgTask: Nov 27 07:45:29.326: 3c:a9:f4:36:1c:48 Unable to send WPA key to mobile 3c:a9:f4:36:1c:48
    (Cisco Controller) >*dot1xMsgTask: Nov 27 07:45:29.326: 3c:a9:f4:36:1c:48 Unable to update broadcast key to mobile 3C:A9:F4:36:1C:48
    *osapiBsnTimer: Nov 27 07:45:45.126: 3c:a9:f4:36:1c:48 802.1x 'txWhen' Timer expired for station 3c:a9:f4:36:1c:48 and for message = M0
    *dot1xMsgTask: Nov 27 07:45:45.126: 3c:a9:f4:36:1c:48 dot1x - moving mobile 3c:a9:f4:36:1c:48 into Connecting state
    *dot1xMsgTask: Nov 27 07:45:45.126: 3c:a9:f4:36:1c:48 Sending EAP-Request/Identity to mobile 3c:a9:f4:36:1c:48 (EAP Id 2)
    *dot1xMsgTask: Nov 27 07:45:45.126: 3c:a9:f4:36:1c:48 Sending 802.11 EAPOL message  to mobile 3c:a9:f4:36:1c:48 WLAN 3, AP WLAN 3
    *dot1xMsgTask: Nov 27 07:45:45.126: 00000000: 02 00 00 3c 01 02 00 3c  01 00 6e 65 74 77 6f 72  ...<...<..networ
    *dot1xMsgTask: Nov 27 07:45:45.126: 00000010: 6b 69 64 3d 54 50 49 2d  57 49 46 49 2c 6e 61 73  kid=PI-WIFI,nas
    *dot1xMsgTask: Nov 27 07:45:45.126: 00000020: 69 64 3d 4d 2d 54 50 49  2d 51 4c 44 2d 44 43 30  id=M-PI-QLD-DC0
    I can see that the WLC has tried to send a EAP-Request/Identity request to the client but no response back. I just don't understand why it works at times and why it doesn't.
    It has the same issues on my guest network which is open authentication. Nothing has changed in regards to configuration and it has been working for years. Only thing that changed was a version upgrade to 7.5 three weeks ago.
    Here is the debug output of the client MAC when attempting to association to the GUEST network.
    (Cisco Controller) >debug client 3C:A9:F4:36:1C:48
    (Cisco Controller) >*apfProbeThread: Nov 27 07:53:48.059: aggregated probe IE: TIMESTAMP
    *apfMsConnTask_4: Nov 27 07:58:02.021: 3c:a9:f4:36:1c:48 Adding mobile on LWAPP AP 20:bb:c0:c9:26:90(0)
    *apfMsConnTask_4: Nov 27 07:58:02.021: 3c:a9:f4:36:1c:48 Association received from mobile on BSSID 20:bb:c0:c9:26:91
    *apfMsConnTask_4: Nov 27 07:58:02.021: 3c:a9:f4:36:1c:48 Global 200 Clients are allowed to AP radio
    *apfMsConnTask_4: Nov 27 07:58:02.021: 3c:a9:f4:36:1c:48 Max Client Trap Threshold: 0  cur: 5
    *apfMsConnTask_4: Nov 27 07:58:02.021: 3c:a9:f4:36:1c:48 Rf profile 600 Clients are allowed to AP wlan
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 Applying Interface policy on Mobile, role Unassociated. Ms NAC State 0 Quarantine Vlan 0 Access Vlan 0
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 Re-applying interface policy for client
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 0.0.0.0 START (0) Changing IPv4 ACL 'none' (ACL ID 255) ===> 'none' (ACL ID 255) --- (caller apf_policy.c:2164)
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 0.0.0.0 START (0) Changing IPv6 ACL 'none' (ACL ID 255) ===> 'none' (ACL ID 255) --- (caller apf_policy.c:2185)
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 apfApplyWlanPolicy: Apply WLAN Policy over PMIPv6 Client Mobility Type
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 In processSsidIE:4565 setting Central switched to TRUE
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 In processSsidIE:4568 apVapId = 2 and Split Acl Id = 65535
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 Applying site-specific Local Bridging override for station 3c:a9:f4:36:1c:48 - vapId 2, site 'default-group', interface 'guest'
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 Applying Local Bridging Interface Policy for station 3c:a9:f4:36:1c:48 - vlan 650, interface id 12, interface 'guest'
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 processSsidIE  statusCode is 0 and status is 0
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 processSsidIE  ssid_done_flag is 0 finish_flag is 0
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 STA - rates (8): 130 132 139 150 12 18 24 36 0 0 0 0 0 0 0 0
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 suppRates  statusCode is 0 and gotSuppRatesElement is 1
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 STA - rates (12): 130 132 139 150 12 18 24 36 48 72 96 108 0 0 0 0
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 extSuppRates  statusCode is 0 and gotExtSuppRatesElement is 1
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 0.0.0.0 START (0) Initializing policy
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 0.0.0.0 START (0) Change state to AUTHCHECK (2) last state START (0)
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 0.0.0.0 AUTHCHECK (2) Change state to L2AUTHCOMPLETE (4) last state AUTHCHECK (2)
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 Not Using WMM Compliance code qosCap 00
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 0.0.0.0 L2AUTHCOMPLETE (4) Plumbed mobile LWAPP rule on AP 20:bb:c0:c9:26:90 vapId 2 apVapId 2 flex-acl-name:
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 0.0.0.0 L2AUTHCOMPLETE (4) Change state to DHCP_REQD (7) last state L2AUTHCOMPLETE (4)
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 apfMsAssoStateInc
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 apfPemAddUser2 (apf_policy.c:333) Changing state for mobile 3c:a9:f4:36:1c:48 on AP 20:bb:c0:c9:26:90 from Idle to Associated
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 apfPemAddUser2:session timeout forstation 3c:a9:f4:36:1c:48 - Session Tout 65535, apfMsTimeOut '65535' and sessionTimerRunning flag is  0
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 Scheduling deletion of Mobile Station:  (callerId: 49) in 65535 seconds
    *apfMsConnTask_4: Nov 27 07:58:02.022: 3c:a9:f4:36:1c:48 Func: apfPemAddUser2, Ms Timeout = 65535, Session Timeout = 65535
    *apfMsConnTask_4: Nov 27 07:58:02.023: 3c:a9:f4:36:1c:48 Sending Assoc Response to station on BSSID 20:bb:c0:c9:26:91 (status 0) ApVapId 2 Slot 0
    *apfMsConnTask_4: Nov 27 07:58:02.023: 3c:a9:f4:36:1c:48 apfProcessAssocReq (apf_80211.c:7957) Changing state for mobile 3c:a9:f4:36:1c:48 on AP 20:bb:c0:c9:26:90 from Associated to Associated
    *apfMsConnTask_4: Nov 27 07:58:02.026: 3c:a9:f4:36:1c:48 Updating AID for REAP AP Client 20:bb:c0:c9:26:90 - AID ===> 4
    *apfReceiveTask: Nov 27 07:58:04.998: 3c:a9:f4:36:1c:48 0.0.0.0 DHCP_REQD (7) State Update from Mobility-Incomplete to Mobility-Complete, mobility role=Local, client state=APF_MS_STATE_ASSOCIATED
    *apfReceiveTask: Nov 27 07:58:04.998: 3c:a9:f4:36:1c:48 0.0.0.0 DHCP_REQD (7) pemAdvanceState2 5716, Adding TMP rule
    *apfReceiveTask: Nov 27 07:58:04.998: 3c:a9:f4:36:1c:48 0.0.0.0 DHCP_REQD (7) Adding Fast Path rule
      type = Airespace AP - Learn IP address
      on AP 20:bb:c0:c9:26:90, slot 0, interface = 1, QOS = 0
      IPv4 ACL ID = 255, IPv
    *apfReceiveTask: Nov 27 07:58:04.998: 3c:a9:f4:36:1c:48 0.0.0.0 DHCP_REQD (7) Fast Path rule (contd...) 802.1P = 0, DSCP = 0, TokenID = 15206  Local Bridging Vlan = 650, Local Bridging intf id = 12
    *apfReceiveTask: Nov 27 07:58:04.998: 3c:a9:f4:36:1c:48 0.0.0.0 DHCP_REQD (7) Successfully plumbed mobile rule (IPv4 ACL ID 255, IPv6 ACL ID 255, L2 ACL ID 255)
    *pemReceiveTask: Nov 27 07:58:04.999: 3c:a9:f4:36:1c:48 0.0.0.0 Added NPU entry of type 9, dtlFlags 0x0
    *pemReceiveTask: Nov 27 07:58:04.999: 3c:a9:f4:36:1c:48 Sent an XID frame
    *IPv6_Msg_Task: Nov 27 07:58:05.000: 3c:a9:f4:36:1c:48 Pushing IPv6 Vlan Intf ID 12: fe80:0000:0000:0000:f0a7:e03b:151a:3af8 , and MAC: 3C:A9:F4:36:1C:48 , Binding to Data Plane. SUCCESS !! dhcpv6bitmap 0
    *IPv6_Msg_Task: Nov 27 07:58:05.000: 3c:a9:f4:36:1c:48 Link Local address fe80::f0a7:e03b:151a:3af8 updated to mscb. Not Advancing pem state.Current state: mscb in apfMsMmInitial mobility state and client state APF_MS_STATE_A
    (Cisco Controller) >

  • Connected clients on Aironet 1140

    I've been using Aironet 1140 series access point for a while. Recently it started to drop the wireless clients quite often. we have nearly 20 wireless users and one access point. they are mix of apple macs, windows and mobile phone users. when i went in to see the connected clients all the clients whown on the web page are connected through cable to our LAN. whay is it showing as connected to dot11 radio? am i missing something here? thanks

    Can you post a screen shot?  You sure the devices on your lan doesn't ahve a wireless card?
    Thanks,
    Scott
    Help out other by using the rating system and marking answered questions as "Answered"

  • Migration to Exchange 2013 from 2010 - Client side issues

    Hi Everyone, 
       I've been having issues with clients connecting to an existing Exchange server (Getting login prompt- but not usual reason).  
    We currently run Exchange 2010 with approx 200 mailboxes on the server.  Last night I renewed the certificate on the 2010 server (go daddy SAN cert, all ok) and added the cert to my new Exchange 2013 server.  I tested it with my account, and a
    test account approx 12 times, and had not login prompt when launching Outlook. All seemed ok, until this morning.....
    This morning, most (not all) users are getting the login prompt.  We are able to get by this by inputting domain\username and Outlook opens fine and is able to connect.  No users are on the Exchange 2013 server yet (only 1 test account) 
    I've been googling all morning and I'm not seeing anything directly relating to my issue.  I've read about the Anon vs Negotiate issues (KB2834139) - But - the strange thing is all clients are set to negotiate network security (And encrypt data) This
    is opposite of what the MS article says.  CLients are all Outlook 2010 
    Here are my outlook anywhere settings: 
    ServerName               : exchange2010
    IISAuthenticationMethods : {Basic}
    ServerName               : exchange2013A
    IISAuthenticationMethods : {Basic, Ntlm}
    ServerName               : exchange2013B
    IISAuthenticationMethods : {Basic, Ntlm}
    Identity                          ClientAuthenticationMethod IISAuthenticationMethods
    exchange2010\Rpc (Default Web Site)                        Basic {Basic}
    exchange2013a\Rpc (Default Web Site)                       Ntlm {Basic, Ntlm}
    exchange2013b\Rpc (Default Web Site)                       Ntlm {Basic, Ntlm}
    If I change the Exchange 2010 server to NTLM, will this resolve what I'm seeing? And do I need to restart RPC Client Access and Transport Service to make changes take effect? Or reboot the whole server? 
    If you need more info or logs please let me know
    Thank you for any help! 
    -Jeff

    Hi,
    Please confirm if the Login prompt issue occurs when users open the Outlook client at first time after renewing Exchange certificate or happens when opening the Outlook every time.
    I noticed that the user can connect to Exchange server after inputting domain\username. Please confirm if the issue happens to external users who use Outlook Anywhere. For Outlook Anywhere coexistence,
    please choose NTLM for IIS authentication.
    Set-OutlookAnywhere -Identity "exchange2010\Rpc (Default Web Site)" -IISAuthenticationMethods Basic,Ntlm
    Regards,
    Winnie Liang
    TechNet Community Support

  • Issue installing Client 9.2.0.1

    Oracle rookie here having an issue installing Client 9.2.0.1....
    I've installed the client software on a few machines without any issue. Now, I am installing it on the passive node of a cluster (cluster is running SQL Server 2000) and there is a problem. The install was successful once, until I noticed it installed under D:\oracle\ora92. I needed to install it on C, because that's where I installed it on the active node. However, when I run the installer (C:\9.2.0.1 Client\autorun\autorun.exe), it does not allow me to change the path or the name. If I change the Path to be be C:\oracle\ora92, the name (OraName92, in this case) goes away. If I retype OraName92 in the name box, the path goes back to D:\oracle\ora92.
    I tried altering some ini files and that didn't work. I searched the registry and there are tons of references to the old install paths, but even changing some registry settings (specifically, HKLM\Software\Oracle\ORACLE_HOME and ORACLE_HOME_NAME) did not work. I didn't touch any other keys, but I did back up the registry.
    Anyone have any thoughts on how I can get this installed on C? Thanks...
    Peter

    Just for giggles, I tried altering the following registry key:
    HKLM\Software\Oracle\ALL_HOMES\ID0\Path
    The value used to be D:\oracle\ora92, and I changed it to C:\oracle\ora92. When I start the installer program, it picks it up as the value for OraHome92. I have nothing to lose by trying this, but my only question would be, will the installer overwrite the existing keys in the registry? I'm hoping that's what it will do, because I don't want any stray references to D:\oracle\ora92 lying around.
    If anyone knows anything about this, please let me know. Thanks for all your help!
    Peter

  • Final Cut Pro dropped frame rate issue

    Hi there, i currently shot a short film on the canon 5d mark II 30fps and i am trying to edit it in final cut studio 2. I have recently bought the new macbook pro 15inch 2gb module.
    Now the canon footage is h.264 but when importing the clips into final cut pro 6 there is a lot of dropped frame rate issues but I thought this machine could handle HD footage?
    Can someone more advanced than myself recommend what i am doing wrong or a work flow that i can work with to stop dropped frame rates and render times.
    Last piece of information, the project will be entered in film festivals in the spring its only a 3 minute short and i have 5 folders of footage under 4gb each which was taken from the camera
    Thanks for your help.
    Michael

    You are missing a huge conceptual point. If the file can not spool off of the hard drive fast enough, you get dropped frames. It isn't a processor or ram issue right now, it is a hard drive speed issue. Your system drive is overtaxed trying to run OSX, applications AND spool video. It just can't keep up. Changing the graphic card isn't going to help (and how do you change the card in a laptop?)
    Get an external esata drive - with the new MacBookPro you'll need an esata Expresscard34 adapter for the computer to connect the drive. Firewire is not an option with that machine and USB2 will not cut it with high data rate formats like ProRes.
    When you drop in the ProRes clip to the timeline and it tells you there is a mismatch, this means your preset for the timeline is something other than your clip. You WANT ProRes and you need the sequence to match your clip - tell the program to CHANGE the sequence to match the clip.
    Video is not easy and it isn't inexpensive. Time to open up those manuals and your wallet!
    Good luck,
    x

Maybe you are looking for

  • Photosmart 5520e: Copying Photos

    I cant find any information om how to copy photos. I have a 5x7 color photo that I want to copy onto glossy 5x7 HP photo paper. Ive been able to coax the photo paper thru the printer..which isnt an easy thing to do. Ige selected "color" on the printe

  • TRANSFER VIDEOS TO DVD

    how does ipad transfer to a dvd

  • Problems with struts MessageResources.properties files

    hi, I am a newbie in using struts. I have the following resources. Resources: java:j2sdk1.4.X struts:1.2.4 webserver:tomcat 5 jsp:2.0 servlets:2.4 IDE:Ecilipse 3.0 IDE Problem: I have copied the struts_blank.war file into tomcat webapps dir. Inside E

  • SQL STUDIO ACCESS

    All, im new to MAXDB and i have installed it along with the SAP PORTAL installation. My server name ia ERP and the database name is J2E, but i was not able to login to the database using SQL Studio, any thoughts.. please let me know BTW i get the fol

  • Need help with while loop

    Hi, I'm running a while loop to run through some results of a search. Anyway I know how to list the strings but my last item is a JComboBox (drop down box.) How do I go about changing that so its right for a drop down box. Its the one with questions