Clients not receiving DHCP IP address from HREAP centrally Switched Guest SSID

Hi All,
I am facing a problem in a newly deployed branch site where the Clients are not receiving DHCP IP address from a centrally switched Guest SSID. I see the client status is associated but the policy manager state is in DHCP_REQD.
The dhcp pool is configured on the controller itself. The local guest clients are able to get DHCP and all works fine, the issue is only with the clients in the remote site. The Hreap APs are in connected mode. Could you please suggest what could be the problem. Below is the out of the debug client.
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 Adding mobile on LWAPP AP 3c:ce:73:6d:37:00(1)
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 Reassociation received from mobile on AP 3c:ce:73:6d:37:00
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 0.0.0.0 START (0) Changing ACL 'Guest-ACL' (ACL ID 0) ===> 'none' (ACL ID 255) --- (caller apf_policy.c:1393)
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 Applying site-specific IPv6 override for station 10:40:f3:91:7e:24 - vapId 17, site 'APG-MONZA', interface 'vlan_81'
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 0.0.0.0 START (0) Changing ACL 'none' (ACL ID 255) ===> 'none' (ACL ID 255) --- (caller apf_policy.c:1393)
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 Applying IPv6 Interface Policy for station 10:40:f3:91:7e:24 - vlan 81, interface id 13, interface 'vlan_81'
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 Applying site-specific override for station 10:40:f3:91:7e:24 - vapId 17, site 'APG-MONZA', interface 'vlan_81'
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 0.0.0.0 START (0) Changing ACL 'none' (ACL ID 255) ===> 'none' (ACL ID 255) --- (caller apf_policy.c:1393)
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 STA - rates (8): 140 18 152 36 176 72 96 108 0 0 0 0 0 0 0 0
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 0.0.0.0 START (0) Initializing policy
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 0.0.0.0 START (0) Change state to AUTHCHECK (2) last state AUTHCHECK (2)
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 0.0.0.0 AUTHCHECK (2) Change state to L2AUTHCOMPLETE (4) last state L2AUTHCOMPLETE (4)
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 0.0.0.0 L2AUTHCOMPLETE (4) Plumbed mobile LWAPP rule on AP 3c:ce:73:6d:37:00 vapId 17 apVapId 1
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 0.0.0.0 L2AUTHCOMPLETE (4) Change state to DHCP_REQD (7) last state DHCP_REQD (7)
*apfMsConnTask_3: May 24 13:26:49.372: 10:40:f3:91:7e:24 apfMsAssoStateInc
*apfMsConnTask_3: May 24 13:26:49.373: 10:40:f3:91:7e:24 apfPemAddUser2 (apf_policy.c:222) Changing state for mobile 10:40:f3:91:7e:24 on AP 3c:ce:73:6d:37:00 from Idle to Associated
*apfMsConnTask_3: May 24 13:26:49.373: 10:40:f3:91:7e:24 Scheduling deletion of Mobile Station:  (callerId: 49) in 28800 seconds
*apfMsConnTask_3: May 24 13:26:49.373: 10:40:f3:91:7e:24 Sending Assoc Response to station on BSSID 3c:ce:73:6d:37:00 (status 0) ApVapId 1 Slot 1
*apfMsConnTask_3: May 24 13:26:49.373: 10:40:f3:91:7e:24 apfProcessAssocReq (apf_80211.c:4672) Changing state for mobile 10:40:f3:91:7e:24 on AP 3c:ce:73:6d:37:00 from Associated to Associated
*apfReceiveTask: May 24 13:26:49.373: 10:40:f3:91:7e:24 0.0.0.0 DHCP_REQD (7) State Update from Mobility-Incomplete to Mobility-Complete, mobility role=Local, client state=APF_MS_STATE_ASSOCIATED
*apfReceiveTask: May 24 13:26:49.373: 10:40:f3:91:7e:24 0.0.0.0 DHCP_REQD (7) pemAdvanceState2 4183, Adding TMP rule
*apfReceiveTask: May 24 11:35:53.373: 10:40:f3:91:7e:24 0.0.0.0 DHCP_REQD (7) Adding Fast Path rule
  type = Airespace AP - Learn IP address
  on AP 3c:ce:73:6d:37:00, slot 1, interface = 13, QOS = 3
  ACL Id = 255, Jumbo F
*apfReceiveTask: May 24 13:26:49.373: 10:40:f3:91:7e:24 0.0.0.0 DHCP_REQD (7) Fast Path rule (contd...) 802.1P = 0, DSCP = 0, TokenID = 7006  IPv6 Vlan = 81, IPv6 intf id = 13
*apfReceiveTask: May 24 13:26:49.373: 10:40:f3:91:7e:24 0.0.0.0 DHCP_REQD (7) Successfully plumbed mobile rule (ACL ID 255)
*pemReceiveTask: May 24 13:26:49.373: 10:40:f3:91:7e:24 0.0.0.0 Added NPU entry of type 9, dtlFlags 0x0
*pemReceiveTask: May 24 13:26:49.373: 10:40:f3:91:7e:24 Sent an XID frame
*apfMsConnTask_3: May 24 13:26:49.401: 10:40:f3:91:7e:24 Updating AID for REAP AP Client 3c:ce:73:6d:37:00 - AID ===> 1
*apfReceiveTask: May 24 13:28:49.315: 10:40:f3:91:7e:24 0.0.0.0 DHCP_REQD (7) DHCP Policy timeout
*apfReceiveTask: May 24 13:28:49.315: 10:40:f3:91:7e:24 0.0.0.0 DHCP_REQD (7) Pem timed out, Try to delete client in 10 secs.
*apfReceiveTask: May 24 13:28:49.315: 10:40:f3:91:7e:24 Scheduling deletion of Mobile Station:  (callerId: 12) in 10 seconds
*osapiBsnTimer: May 24 13:28:59.315: 10:40:f3:91:7e:24 apfMsExpireCallback (apf_ms.c:599) Expiring Mobile!
*apfReceiveTask: May 24 13:28:59.315: 10:40:f3:91:7e:24 apfMsExpireMobileStation (apf_ms.c:4897) Changing state for mobile 10:40:f3:91:7e:24 on AP 3c:ce:73:6d:37:00 from Associated to Disassociated
*apfReceiveTask: May 24 13:28:59.315: 10:40:f3:91:7e:24 Scheduling deletion of Mobile Station:  (callerId: 45) in 10 seconds
*osapiBsnTimer: May 24 13:29:09.315: 10:40:f3:91:7e:24 apfMsExpireCallback (apf_ms.c:599) Expiring Mobile!
*apfReceiveTask: May 24 13:29:09.316: 10:40:f3:91:7e:24 Sent Deauthenticate to mobile on BSSID 3c:ce:73:6d:37:00 slot 1(caller apf_ms.c:4981)
*apfReceiveTask: May 24 13:29:09.316: 10:40:f3:91:7e:24 apfMsAssoStateDec
*apfReceiveTask: May 24 13:29:09.316: 10:40:f3:91:7e:24 apfMsExpireMobileStation (apf_ms.c:5018) Changing state for mobile 10:40:f3:91:7e:24 on AP 3c:ce:73:6d:37:00 from Disassociated to Idle
*apfReceiveTask: May 24 13:29:09.316: 10:40:f3:91:7e:24 0.0.0.0 DHCP_REQD (7) Deleted mobile LWAPP rule on AP [3c:ce:73:6d:37:00]
*apfReceiveTask: May 24 13:29:09.316: 10:40:f3:91:7e:24 Deleting mobile on AP 3c:ce:73:6d:37:00(1)
*pemReceiveTask: May 24 13:29:09.317: 10:40:f3:91:7e:24 0.0.0.0 Removed NPU entry.

#does the client at the remote site roams between AP that connects to different WLC?
#type 9 is not good.
*pemReceiveTask: May 24 13:26:49.373: 10:40:f3:91:7e:24 0.0.0.0 Added NPU entry of type 9, dtlFlags 0x0
#Does your dhcp server getting hits.
#Also, get debug dhcp message & packet.
#Dhcp server is not responding.
*apfReceiveTask: May 24 13:28:49.315: 10:40:f3:91:7e:24 0.0.0.0 DHCP_REQD (7) DHCP Policy timeout
*apfReceiveTask: May 24 13:28:49.315: 10:40:f3:91:7e:24 0.0.0.0 DHCP_REQD (7) Pem timed out, Try to delete client in 10 secs.

Similar Messages

  • Station is not receiving an IP address from DHCP

    Hello guys,
    I have an ASA 5505 functioning as a router to connect to the Internet. Also, it is my DHCP server for my clients, and APs. When I connect my laptop to the ASA, I get an IP address and able to configure my WLC. The APs also receives an IP address from the ASA. However, when I connect to the AP wirelessly as a wireless client, my laptop is not receiving an IP address from the DHCP which is my ASA.
    Here is my topology:
    [3602i]--------[ASA5505]--------[WLC2504]
    Here is my ASA config for my clients:
    interface Vlan12
    description *** DEFAULT GATEWAY FOR Wi-Fi GUESTS
    nameif GUESTS-if
    security-level 100
    ip address 10.2.12.1 255.255.255.0
    dhcpd address 10.2.12.100-10.2.12.131 GUESTS-if
    dhcpd dns 208.67.222.222 208.67.220.220 interface GUESTS-if
    dhcpd lease 1048575 interface GUESTS-if
    dhcpd option 3 ip 10.2.12.1 interface GUESTS-if
    dhcpd enable GUESTS-if
    Here is the WLC interface config:

    Hello jsnyder81,
    I have another question. This is still related to the same network.
    I am able to connect to the wireless network now, and receiving IP address from the ASA 5505; however, I can only ping my wireless gateway. I also don't have access to the Internet.
    When I hard wired my laptop to the ASA's switch port, I am able to browse the Internet, but not via WiFi.
    Here is the routing table that I have on the ASA:
    Gateway of last resort is 192.168.1.1 to network 0.0.0.0
    C    10.2.8.0 255.255.255.0 is directly connected, PRINTERS-if
    C    10.2.9.0 255.255.255.0 is directly connected, FIOS-if
    C    10.2.10.0 255.255.255.0 is directly connected, IP-CAMERAS-if
    C    10.2.11.0 255.255.255.0 is directly connected, WiFi-USERS-if
    C    10.2.12.0 255.255.255.0 is directly connected, GUESTS-if
    C    10.2.13.0 255.255.255.0 is directly connected, WIRED-if
    C    10.2.3.0 255.255.255.0 is directly connected, EXSi-if
    C    10.2.4.0 255.255.255.0 is directly connected, AD/NPS/CA-if
    C    10.2.5.0 255.255.255.0 is directly connected, inside
    C    10.2.6.0 255.255.255.0 is directly connected, WLC-if
    C    10.2.7.0 255.255.255.0 is directly connected, AP-if
    C    10.2.20.0 255.255.255.0 is directly connected, WIRELESS-PILOT-if
    C    10.2.21.0 255.255.255.0 is directly connected, WIRED-PILOT-if
    C    10.2.22.0 255.255.255.0 is directly connected, SERVERS-PILOT-if
    C    192.168.1.0 255.255.255.0 is directly connected, outside
    d*   0.0.0.0 0.0.0.0 [1/0] via 192.168.1.1, outside
    I also have this command:
    same-security-traffic permit inter-interface

  • WLC2412-Clients Not receiving DHCP addresses

    I recently upgraded a clients WLC and they keep saying they are unable to get an IP address from the DHCP server.  It's a simple, flat network and here is what the logs are showing.  Any advice would be greatly appreciated.
    *apfReceiveTask: Apr 11 13:37:25.477: %SIM-3-DHCP_SERVER_NO_REPLY: sim_interface.c:1039 Failed to get DHCP response on interface 'management'. Marking interface dirty.
    *apfReceiveTask: Apr 11 13:37:17.278: %SIM-3-DHCP_SERVER_NO_REPLY: sim_interface.c:1039 Failed to get DHCP response on interface 'management'. Marking interface dirty.
    *apfReceiveTask: Apr 11 13:37:05.880: %SIM-3-DHCP_SERVER_NO_REPLY: sim_interface.c:1039 Failed to get DHCP response on interface 'management'. Marking interface dirty.
    *apfReceiveTask: Apr 11 13:13:47.397: %SIM-3-DHCP_SERVER_NO_REPLY: sim_interface.c:1039 Failed to get DHCP response on interface 'management'. Marking interface dirty.
    *apfReceiveTask: Apr 11 13:37:25.477: %SIM-3-DHCP_SERVER_NO_REPLY: sim_interface.c:1039 Failed to get DHCP response on interface 'management'. Marking interface dirty.
    *apfReceiveTask: Apr 11 13:37:17.278: %SIM-3-DHCP_SERVER_NO_REPLY: sim_interface.c:1039 Failed to get DHCP response on interface 'management'. Marking interface dirty.
    *apfReceiveTask: Apr 11 13:37:05.880: %SIM-3-DHCP_SERVER_NO_REPLY: sim_interface.c:1039 Failed to get DHCP response on interface 'management'. Marking interface dirty.
    *apfReceiveTask: Apr 11 13:13:47.397: %SIM-3-DHCP_SERVER_NO_REPLY: sim_interface.c:1039 Failed to get DHCP response on interface 'management'. Marking interface dirty.

    (Cisco Controller) show>interface detailed management
    Interface Name................................... management
    MAC Address...................................... 64:00:f1:91:5d:40
    IP Address....................................... 192.168.8.3
    IP Netmask....................................... 255.255.255.0
    IP Gateway....................................... 192.168.8.1
    External NAT IP State............................ Disabled
    External NAT IP Address.......................... 0.0.0.0
    VLAN............................................. 8
    Quarantine-vlan.................................. 0
    Physical Port.................................... 1
    Primary DHCP Server.............................. 192.168.8.49
    Secondary DHCP Server............................ Unconfigured
    DHCP Option 82................................... Disabled
    ACL.............................................. Unconfigured
    AP Manager....................................... No
    Guest Interface.................................. No
    L2 Multicast..................................... Enabled

  • WLC2504 clients not receiving DHCP leases

    I'm stock with a 2504 using version 7.0.220.0 that won't lease out DHCP adresses
    Wifi clients are unable to get a DHCP lease from an external DHCP server.
    The WLC are handling 3 WLAN, 2 using internal DHCP server, 1 (that wont work) using external DHCP. The external DHCP server, is a router/firewall (out of my reach) that suffered from a power out, a short while ago, ever since the DHCP is not working on that VLAN, if client are getting static ip adresses, everything works fine. If i'm using the same network link, and plug it into a computer, I get a DHCP address.
    I've enable DHCP proxy
    Debbuging DHCP, using: Debug DHCP packets enable
    Gives me this:
    *DHCP Socket Task: Nov 08 14:21:11.397: c8:0a:a9:cc:6d:f6 DHCP received op BOOTREQUEST (1) (len 308,vlan 20, port 1, encap 0xec00)
    *DHCP Socket Task: Nov 08 14:21:11.397: c8:0a:a9:cc:6d:f6 DHCP option len (including the magic cookie) 72
    *DHCP Socket Task: Nov 08 14:21:11.397: c8:0a:a9:cc:6d:f6 DHCP option: message type = DHCP INFORM
    *DHCP Socket Task: Nov 08 14:21:11.397: c8:0a:a9:cc:6d:f6 DHCP option: 61 (len 7) - skipping
    *DHCP Socket Task: Nov 08 14:21:11.397: c8:0a:a9:cc:6d:f6 DHCP option: 12 (len 1) - skipping
    *DHCP Socket Task: Nov 08 14:21:11.397: c8:0a:a9:cc:6d:f6 DHCP option: vendor class id = MSFT 5.0 (len 8)
    *DHCP Socket Task: Nov 08 14:21:11.397: c8:0a:a9:cc:6d:f6 DHCP option: 55 (len 13) - skipping
    *DHCP Socket Task: Nov 08 14:21:11.397: c8:0a:a9:cc:6d:f6 DHCP options end, len 72, actual 64
    *DHCP Socket Task: Nov 08 14:21:11.397: c8:0a:a9:cc:6d:f6 DHCP dropping packet (no mscb) found - (giaddr 0.0.0.0, pktInfo->srcPort 68, op: 'BOOTREQUEST')
    Thanks

    Hi Steen,
    When a client is in DHCP REQ state on the controller, the controller drops DHCP inform packets. The client will not go into a RUN state on the controller (this is required for the client to pass traffic) until it receives a DHCP discover packet from the client. DHCP inform packets are forwarded by the controller when DHCP proxy is disabled.
    Please check this, if still u r facing issue then provide more info.
    Can you please paste a client debug of the client having DHCP issues.
    Go to cli of the wlc and run the client debug . Diconnect  the client then reconnect and gather the output and post.
    Regards

  • Cisco E1000 wont connect to internet anymore - not getting DHCP ip address from Comcast modem

    Very strange issue...
    I have Comcast HSI and have been using my Cisco (Linksys) E1000 for about 3 years now. Bought it as a refurb.
    My issue is that the E1000 is NOT receiving the DHCP info from my Comast modem.
    The internet works when my laptop is directly attached to the modem; but when connecting the modem internet port
    to the E1000 internet port it is NOT grabbing my ISP DHCP ip address thus no clients can broswe 'wired or wireless'.
    I even updated the firmware and am starting to think its time to get a 'BRAND NEW' router as this makes NO SENSE!
    I cannot release/renew as i have NO ip address to release.  I have even tried to configure the E1000 as a static 
    using the ipconfig/all from when the laptop and modem was connected. Comcast says they see nothing on their end. 
    I also factory defaulted the router and redid the config to no avail. 
    Any help would be appreciated.
    Solved!
    Go to Solution.

    You need to enable MAC address clone on the router to recognize the connection from your cable modem. The link below would tell you how to configure the router to work with a cable connection and how to do MAC address clone.
    Setting up a Linksys router with Cable Internet service

  • Clients not receiving DHCP on layer 2 Vlan

    I have flexconnect WAPs with local switching and local dhcp server on the switch.
    I have one SSID assigned to a layer 2 vlan.  The wireless clients are unable to receive an ip address on this vlan.  The wired clients are able to receive an ip address on this vlan with no problem.
    The WAP switchport is trunked and all of the layer 3 vlans are working with no problem.
    The layer 2 vlan interface is assign the DHCP -  ip address pool Vendor_VLan
    Any help would be appreciated.
    Thanks
    LH

    Hi LH,
    Have you configured the SSID with "Local Switching" feature. 
    Also did you do the vlan mapping on this FlexConnect AP for the configured SSID ?
    HTH
    Rasika
    **** Pls rate all useful responses ****

  • Laptops do not receive DHCP IP address?

    Hi All,
    Iam using 4402-Controller and 1252 Access Points. The AP's are registered on the Controller and get an ip address but the laptops are not getting an ip address. The FWSM on the Core switch is configured as DHCP server with IP of 192.168.5.1. The 4402 WLC Mgmt-Interface also has the gateway of 192.168.5.1. The Mgmt-Interface IP is 192.168.5.5/24.
    The AP-manager Interface IP is 192.168.5.6/24 with gateway of 192.168.5.1.
    The FWSM debug messages says that the DHCP request has been discarded from the DHCP Relay Agent of WLC.
    Has anyone come across this issue before?
    Provide some suggestions to overcome this issue?

    Here is a link that explains the issue you are having.
    http://supportwiki.cisco.com/ViewWiki/index.php/How_to_configure_WLC_as_a_DHCP_relay_server
    or you can try this command to see if it helps:
    config dhcp proxy disable

  • Vmware clients not receiving dhcp from wifi networks

    we are testing mac laptops running windows 7 virtually using vmware fusion at our office. One problem i ran into is windows 7 cant ever get the dhcp information from Domain Controller to get onto the network/internet here at the office. i have set the NIC to bridged mode in vmware fusion. it works fine at my house where i can get on my home network/internet  just not in the office so i know it can be done, but not sure what setting on the cisco wireless lan controller 2106 controlls that feature. can anyone assist me in resolving this? if i plug it into the network using an ethernet cable everything works just fine, so i believe it is just a setting on the wireless controller that needs to be changed, at least thats what i am hoping, im hoping its not some limitation of the system......

    Hi,
    I thought i replied to this post.. but i havent.. extremly sorry!! here is the bug that we are hitting!!
    http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&bugId=CSCsi90344
    There are workarounds to overcome this..
    Workarounds: 1. Configure the virtual machine software for NAT ("shared networking")  mode, not bridged mode.    2. If using 4.1 WLC software, configure the virtual machine to use static  IP addressing, not DHCP.   3. If you have an AP that does H-REAP, change the AP mode to H-REAP and local switching so that DHCP (and other) packets do not traverse the controller.
    lemme know if this answered your question..
    Regards
    Surendra
    ====
    Please dont forget to rate the posts which answered your question and mark it as answered or was helpfull

  • Not receiving temp IPv6 address from router

    I have spent the day trying to get IPv6 internet connectivity working in Arch and Im failing. No matter what I do my Arch install just isnt receiving and ipv6 temp address. If I use the exact same system but boot into another OS i automatically get an IPv6 temp address and can ping 1pv6.google.com .
    If there is anything that might prevent this networking function from working Id appreciate to know what it could be. Thanks a lot.

    I wont consider this solved until auto config works but in the  mean time I have an ugly work around. I created a profile for eth0 to come up at 0.0.0.0 and I got static ipv6 working in my bridge like this
    INTERFACE="br0"
    CONNECTION="bridge"
    DESCRIPTION="Gigabit Bridge"
    POST_UP="ip -6 route add default via fe80::c851:85ff:fed0:e71f dev br0"
    BRIDGE_INTERFACES="eth0"
    IP="dhcp"
    IP6="static"
    ADDR6=(2001:470:1f07:be8:bd9a:b66d:248a:b866/64)
    Gateway6=fe80::c851:85ff:fed0:e71f
    ADDR='192.168.11.66'
    #ROUTES=('192.168.0.0/24 via 192.168.1.2')
    #GATEWAY='192.168.11.1'
    #DNS=('8.8.8.8')

  • Client not receiving the software update FROM SCCM 2012 R2

    We have SCCM 2012 R2 installed and configured for SUP.and i have synchonice the SUP with WSUS server in the same which is there in the same machine.
    Now i can able to deploy the software update from SCCM 2012 R2 without any erro to the windows 7clients, but client side when i check there is no update installed in the clients , but seems there is no error in the client logs

    Hi,
    I'd start with running a "Software Updates Scan Cycle" from the configuration manager control panel applet and check the log file Windowsupdate.log, WUAhandler.log.
    We
    are trying to better understand customer views on social support experience, so your participation in this
    interview project would be greatly appreciated if you have time.
    Thanks for helping make community forums a great place.

  • Mail 4.5 does not receive 2 email addresses from friends

    Why cann't I receive 2 of my friends email but I can receive on my other Mac Mail account? I have OSX 10.6.8 & Mail 4.5!

    Have you tried rebuilding the mailbox?
    select the mailbox you want to rebuild (your inbox or custom malbox you created)
    click on mailbox in the menubar
    select rebuild
    If you have a lot of email in the mailbox it might take a little time to finish
    I did this when I was no able to see all of my emails and it worked like a charm!

  • Guest VLAN unable to get DHCP IP address from Anchor Controller

    Hello everybody,
    In our test set up, we have two WLC 5508 Controllers connected via Checkpoint UTM-1 firewall Inside and DMZ Interfaces. Both the WLC controllers are connected to the firewall via Cisco 3750 switch. On the Local (Inside) Controller, guest SSID is enabled and attached to the wireless management Interface. On the remote anchor controller, guest SSID is enabled and attached to the Management Interface as well. The following configs are replicated on both the Controllers.
    SSID Name - guest
    Interface - Management ( VLAN 10 on Local and VLAN 20 on remote) -
    Mobility Group: Same configs at both ends
    SSID Anchor : Anchor SSID on local and local SSID on Anchor.
    AP: CAPWAP 3502 Management Subnet
    SSID Security etc all defaults and matching on  both ends
    Checkpoint Firewall Rules: Allowed 16666-7, IP 97 etc on the firewall
    Checkpoint Inside/DMZ to Outside(Internet) is NAT enabled.
    EoIP Tunnel Status: Up, UP - Both ends
    Mping - OK
    eping - OK
    WLC Sofware Version on Local - 7.0.98.0
    WLC Sofware Version on Local - 7.0.116.0
    DHCP Scope: Definitions on Anchor Controller and Guest Anchor SSID points to the Anchor management IP as the Primary DHCP server.
    Management IP Subnet on Local: 10.x.x.x
    Management IP Subnet on Anchor: 172.x.x.x
    The problem definition as follows:
    When guest SSID associates to the local AP, the guest SSID never gets a DHCP address assigned from the Anchor Controller and the following debugs are obtained.
    1. WLAN ID 1 (for Guest SSID Number) delete message appears in the Controller message logs, but the SSID does not DHCP from the local Management Subnet and i can see DHCP request via the tunnel to the Anchor WLC as follows:
    DHCP Socket Task: Feb 24 17:20:46.612: 64:b9:e8:33:2d:13 DHCP received op BOOTREQUEST (1) (len 308,vlan 0, port 13, encap 0xec03)
    *DHCP Socket Task: Feb 24 17:20:46.612: 64:b9:e8:33:2d:13 DHCP processing DHCP DISCOVER (1)
    *DHCP Socket Task: Feb 24 17:20:46.612: 64:b9:e8:33:2d:13 DHCP   op: BOOTREQUEST, htype: Ethernet, hlen: 6, hops: 0
    *DHCP Socket Task: Feb 24 17:20:46.612: 64:b9:e8:33:2d:13 DHCP   xid: 0x49c54774 (1237665652), secs: 42, flags: 0
    *DHCP Socket Task: Feb 24 17:20:46.612: 64:b9:e8:33:2d:13 DHCP   chaddr: 64:b9:e8:33:2d:13
    *DHCP Socket Task: Feb 24 17:20:46.612: 64:b9:e8:33:2d:13 DHCP   ciaddr: 0.0.0.0,  yiaddr: 0.0.0.0
    *DHCP Socket Task: Feb 24 17:20:46.612: 64:b9:e8:33:2d:13 DHCP   siaddr: 0.0.0.0,  giaddr: 0.0.0.0
    *DHCP Socket Task: Feb 24 17:20:46.612: 64:b9:e8:33:2d:13 DHCP successfully bridged packet to EoIP tunnel
    2. Similar debugs on the Anchor controller yields the following results;
    Cisco Controller) >*DHCP Socket Task: Feb 25 04:30:25.488: 64:b9:e8:33:2d:13 DHCP options end, len 72, actual 64
    *DHCP Socket Task: Feb 25 04:36:44.246: 64:b9:e8:33:2d:13 DHCP received op BOOTREQUEST (1) (len 308,vlan 20, port 1, encap 0xec05)
    *DHCP Socket Task: Feb 25 04:36:44.246: 64:b9:e8:33:2d:13 DHCP processing DHCP DISCOVER (1)
    *DHCP Socket Task: Feb 25 04:36:44.246: 64:b9:e8:33:2d:13 DHCP   op: BOOTREQUEST, htype: Ethernet, hlen: 6, hops: 0
    *DHCP Socket Task: Feb 25 04:36:44.246: 64:b9:e8:33:2d:13 DHCP   xid: 0x49c54778 (1237665656), secs: 52, flags: 0
    *DHCP Socket Task: Feb 25 04:36:44.246: 64:b9:e8:33:2d:13 DHCP   chaddr: 64:b9:e8:33:2d:13
    *DHCP Socket Task: Feb 25 04:36:44.246: 64:b9:e8:33:2d:13 DHCP   ciaddr: 0.0.0.0,  yiaddr: 0.0.0.0
    *DHCP Socket Task: Feb 25 04:36:44.246: 64:b9:e8:33:2d:13 DHCP   siaddr: 0.0.0.0,  giaddr: 0.0.0.0
    *DHCP Socket Task: Feb 25 04:36:44.246: 64:b9:e8:33:2d:13 DHCP successfully bridged packet to DS
    *DHCP Socket Task: Feb 25 04:36:53.208: 64:b9:e8:33:2d:13 DHCP received op BOOTREQUEST (1) (len 308,vlan 20, port 1, encap 0xec05)
    *DHCP Socket Task: Feb 25 04:36:53.208: 64:b9:e8:33:2d:13 DHCP processing DHCP DISCOVER (1)
    *DHCP Socket Task: Feb 25 04:36:53.208: 64:b9:e8:33:2d:13 DHCP   op: BOOTREQUEST, htype: Ethernet, hlen: 6, hops: 0
    *DHCP Socket Task: Feb 25 04:36:53.208: 64:b9:e8:33:2d:13 DHCP   xid: 0x49c54778 (1237665656), secs: 61, flags: 0
    *DHCP Socket Task: Feb 25 04:36:53.208: 64:b9:e8:33:2d:13 DHCP   chaddr: 64:b9:e8:33:2d:13
    *DHCP Socket Task: Feb 25 04:36:53.208: 64:b9:e8:33:2d:13 DHCP   ciaddr: 0.0.0.0,  yiaddr: 0.0.0.0
    *DHCP Socket Task: Feb 25 04:36:53.208: 64:b9:e8:33:2d:13 DHCP   siaddr: 0.0.0.0,  giaddr: 0.0.0.0
    *DHCP Socket Task: Feb 25 04:36:53.208: 64:b9:e8:33:2d:13 DHCP successfully bridged packet to DS
    *apfOrphanSocketTask: Feb 25 04:37:49.931: 34:51:c9:59:b1:c7 Invalid MSCB state: ipAddr=169.254.254.148, regType=2, Dhcp required!
    Is there any thing missing in the wireless configs and or the firewall rules as i could not see DHCP request back from the Anchor Controller. Also, after DHCP is obtained, the web authentication request will be redirected to an Amigopod device for authentication. In this case is the redirect URL congiguration to be performed only on the Anchor Controller or is this to be replicated on both the Local and Anchor Controllers.
    Thanks and Regards.

    The DHCP issue is resolved if external DHCP server is configured on a 3750 switch connected to the WLC and the default gateway for DHCP points to the Firewall, which is in the data path between the Inside and Anchor Controllers. DHCP is essentially bridged (no Proxy setting now) from the EoIP tunnel to the Distribution system network. We will test this solution on pilot production and then consider upgrading to 7.0.116.0, as there are about six offices running 7.0.98.0, which will need to be upgraded. 
    For L3 security,  configuration is set up on both the controllers for external captive portal redirection.I will try this only on the Anchor and revert.
    Thanks again very much for all your help.

  • WTR54GS Fails to obtain a DHCP IP Address from Upstream

    Greetings!
    I had effectively given-up on Linksys Router WTR54GS, as it was advertised that it could be plugged into a pre-existing network (friends home network, a hotel room ethernet jack, etc), but sadly the WTR54GS itself is incapable of obtaining a DHCP IP Address from an upstream DHCP server (like the hotel, etc).
    I have tried repeatedly to work with Linksys Support but everyone wants to blame the upstream router, suggesting that I change it's configuration to "Bridged-mode".  Yeah, right.  Like I'm going to walk down to the hotel lobby main desk and tell them that they need to place THEIR network in bridged mode just so my WTR54GS will work.   I was willing to believe that the first router (version 2.0) that I was sent was defective, and let Tech Support talk me into returning it to my vendor and seeking a replacement. 
    I receieved the replacement (this time version 1.0) and had EXACTLY the same problem.  I returned that one as well (marked defective) after talking with Ellen in Linksys 2nd Level Technical Support.  She promised this would be referred to the Linksys Engineering group for further study.  This was 4+ months ago. 
    I would like to buy another one, but am hesitant to buy because I just do not trust Linksys Technical Support anymore.   Can someone please confirm that Linksys Engineering is aware of this problem, acknowledges its existence, and has resolved (or is at least working on resolving) this problem?
    -Elrendhel
    Forum Administrator, Product Reviewer, & Moderator at MobilitySite,
    Forum Admin, Lead Tech Support Mgr & Moderator at GPS Tuner,
    Moderator at Microsoft's Windows Mobile Owners Circle forums.

    So you have connected WTR through the correct (blue) port to the internet connection?
    You have configured the WTR for wired internet connection type?
    You have configured the WTR for DHCP?
    What does the WTR say on the Status page?
    Have you tested the WTR inside your home network?

  • TS4002 Not receiving emails w/ attachments from a few of my existing contacts

    This is a problem I just started having in the last couple weeks! I am not receiving emails w/ attachments from two of my every day mail contacts. Both of these people are with different organizations with different email accounts. If they send me an email without an attachment I receive it, but when they send one with an attachment, I don't even get a notification that they TRIED to send it! I have missed multiple emails from important business clients and my realtor! I have received hundreds of emails from these clients over the last 3 years. The attachments are simple PDF files so I know they are not exceeding the limit. They do not show up on the iCloud site, in my Mail app, or on my iPhone.
    I have had several other contacts send me attachments which I receive as expected.
    I have an @me.com account. Have had no complaints until now.
    Any help?

    Hi Tattoosleeve,
    I suggest double check the Anti-Spam configuration if you have enabled it. More details in the following link:
    http://technet.microsoft.com/en-us/library/aa997242.aspx
    Did the customers get NDRs when they can't send to your org? If yes, please paste the details without sensitive information for the further troubleshooting.
    I want to double confirm your Exchange server version. If you are using Exchange Online, I suggest contact Exchange Online Forum for help so that we can get more professional suggestion. For your convenience:
    http://social.technet.microsoft.com/Forums/msonline/en-US/home?forum=onlineservicesexchange
    Thanks
    Mavis
    Mavis Huang
    TechNet Community Support

  • Airport extreme not receiving an ip address

    Hey i was wondering if anyone knew why my airport extreme is not receiving an ip address. Im connected to the internet through a cable modem connected to a airport extreme. I know the internet works because when i connect directly to my macpro book the internet works fine.......its just when i try to use my wireless network. Also its not my wireless card in my laptop because it works fine with other wireless networks. The other thing is i know my airport extreme works because it will connect for a while and then it wont connect at all until i reset everything (modem, computer, airport).....any suggestions?
    I called apple support and they said it was a comcast problem and comcast said it was a problem with my airport extreme......figures huh?
    macpro book 15"   Mac OS X (10.4.8)  
    macpro book 15"   Mac OS X (10.4.8)  

    i think i found the answer while browsing the archives.
    http://discussions.apple.com/thread.jspa?messageID=2202720&#2202720
    sjones posted this:
    FIXED!
    Ok, after getting the usual run around with apple not being able to advise me about my ISP and my ISP not being able to advise me about apple some wonderful support person at my ISP let a bit of info slip: Comcast have decomissioned a load of bad DNS servers today.
    If you use Comcast and cannot connect via wireless try this:
    Open applications/utilities/airport admin utility
    select your base station
    click configure
    click internet
    whatever is typed into the dns servers input boxes, delete it
    update your base station
    and you are connected to the internet.
    It makes perfect sense if you have this problem. You base station has been trying to connect to the WAN using a decomissioned dns server. All Comcast dns servers are now distributed dynamically via the dhcp server.
    I am working again! Hope you are too.
    I tried it, and was able to connect to my mini-mac for the first time. Phew! Now, I'm going to try the printer and my powerbook. I hope my tinkering with those does not tamper with the delicate balance of the universe.
    Sjones, if you see this, THANK YOU!
    Power PC G4 & Mac Mini   Mac OS X (10.4.3)  

Maybe you are looking for

  • Handling ends of branches in dom trees.

    Hi all, I am currently trying to convert a XQueryResultSet into a org.w3c.dom.Document. So far I can extract all the nodes, and their attributes and children and place all of this information into the document. However when I get to the very end of a

  • DB13 - AllOff+Log backup is shown in red

    Dear Experts, In DB13 ALLOff+Log is displayed in red .When I doble clicked on same and checkd the detail log the return code is shown as 0000 Success in green color.All the files are backup successfully. I check the detailed log in which nothng is sh

  • Creating Scrollbar

    Hi, I had created a loader which can load an array of images. However, when there are more images, the images actually got hidden as the size of the application is too small to accommodate all the images. I would need to create a scroll bar. I tried

  • Shuffle 2ng won't work with Windows 7

    shuffle 2nd Gen does great with XP but Win 7 won't recognize

  • How to import updated version of APEX app without losing saved IR's?

    Oracle XE 11.2 Apex 4.1 Linux Red Hat 5.4 ============ Does anyone have suggestions on how to import updated version of APEX app without losing saved IR's? Also, I want to maintain app id from update to update (from revision to revision). In fact, I