Configuring the Access Point 1602 IOS 15.2(2)JAX as a Local RADIUS for a MAC authenticator

Hello Everyone,
I have an issue with my Cisco 1602 WAP. I am trying to configure the WPA-PSK and MAC authentication on local RADIUS but I don't know why it doesn't work and client can bypass the MAC authentication. below is partial configuration:
dot11 ssid WLAN
   vlan 20
   authentication open
   authentication key-management wpa version 2
   mbssid guest-mode
   wpa-psk ascii 7 XXX
interface Dot11Radio0
 no ip address
 no ip route-cache
 encryption mode ciphers aes-ccm
 encryption vlan 20 mode ciphers aes-ccm
 ssid WLAN
 antenna gain 0
 stbc
 beamform ofdm
 mbssid
 channel 2462
 station-role root
interface Dot11Radio0.20
 encapsulation dot1Q 20 native
 no ip route-cache
 bridge-group 1
 bridge-group 1 subscriber-loop-control
 bridge-group 1 spanning-disabled
 bridge-group 1 block-unknown-source
 no bridge-group 1 source-learning
 no bridge-group 1 unicast-flooding
interface BVI1
 ip address 10.133.16.2 255.255.255.128
 no ip route-cache
adius-server local
    nas 10.133.16.2 key 7 10.133.16.2
  group MAC
    vlan 20
    ssid WLAN
    block count 3 time infinite
    reauthentication time 1800
 user 54724f80421c  password 54724f80421c group MAC 
Further information can be provided by request.
Cheers,
Parham

what are you trying to accomplish?
With the PSK you aren't telling the client it needs to do .1x auth for the Mac authentication.
If you are just trying to keep some clients off the wireless, I would take a look at doing a MAC ACL (ACL 700)
HTH,
Steve

Similar Messages

  • How to configure the Access point 1602 that I just purchased

    Hi Everyone,
    Hope you can help. I just purchased a AIR-SAP1602I-A-K9 from one internet vendor. Along with it I also purchased an power injector. I tried to use it as a standalone AP. It does not come with any instruction and I am not good at Wifi config. Hope you can help... My setting requirement is very simple:
    - Create and broadcast SSID called MYCSL
    -  Does not need any authentication or encrytion... (is this open authentication?...so that people just connect to the SSID that the user can start to cruise internet without putting in any keys.)
    - The access point does not need any static ip assigned, instead, it gets an ip from one of my dhcp server in the network.
    - How do I connect my laptop to configure it via web http?
    May you tell me what need to be configured? Although this is a new product from a legitimate retailer... Cisco said they could not support it without any Starnet contract... as a consumer...they should give kind of grace period to support the new products...ANyway, hope you can help me here :)
    Thank you very much for your help in advance.
    Takami Chiro

    https://supportforums.cisco.com/discussion/12217126/access-point-air-sap1602e-k9
    Hi Takamai,
    Thanks for marking the answer are correct.
    Sorry to say I didn't understand your question. But reading through line I assume your trying to broadcast the SSID..If that is the case you could use "guest-mode" command under the SSID but if you have multiple SSID to be broadcasted then you will have to use "mbssid guest-mode"
    Hope that helps
    Regards
    Najaf

  • Downgraded A1240 Access point to IOS that support CLI command

    I have a new A1240 and it IOS is working with new command LWAPP and need a control server to manage the access point. It (ios) does not have configure terminal command. I think I can delete the IOS in the flash and load a older version IOS. I went ahead and deleted the IOS and assumed the access point will go to rommon mode and allows me to archive a tar file (older ios) into the access point. However, I only get AP: prompt and stuck here. I can not run copy or archive command. What are recover process. Need your expert guidance. Au Ray Singapore

    Hi Au Ray,
    Have you tried this method?
    Using the MODE button
    You can use the MODE button on 1100 and 1200 series access points to reload the access point image file from an active Trivial File Transfer Protocol (TFTP) server on your network or on a PC connected to the access point Ethernet port.
    This process resets all configuration settings to factory defaults, including passwords, WEP keys, the access point IP address, and SSIDs.
    Follow these steps to reload the access point image file:
    Step 1 The PC you intend to use must be configured with a static IP address in the range of 10.0.0.2 to 10.0.0.30.
    Step 2 Make sure that the PC contains the access point image file (such as c1100-k9w7-tar.122-13.JA.tar for an 1100 series access point or c1200-k9w7-tar.122-13.JA.tar for a 1200 series access point) in the TFTP server folder and that the TFTP server is activated. For additional information, refer to the "Obtaining the Access Point Image File" and "Obtaining TFTP Server Software" sections.
    Step 3 Rename the access point image file in the TFTP server folder to c1100-k9w7-tar.default for an 1100 series access point or c1200-k9w7-tar.default for a 1200 series access point.
    Step 4 Connect the PC to the access point using a Category 5 (CAT5) Ethernet cable.
    Step 5 Disconnect power (the power jack for external power or the Ethernet cable for in-line power) from the access point.
    Step 6 Press and hold the MODE button while you reconnect power to the access point.
    Step 7 Hold the MODE button until the status LED turns red (approximately 20 to 30 seconds), and release the MODE button.
    Step 8 Wait until the access point reboots as indicated by all LEDs turning green followed by the Status LED blinking green.
    Step 9 After the access point reboots, you must reconfigure the access point by using the Web-browser interface or the CLI.
    From this doc;
    http://www.cisco.com/en/US/products/hw/wireless/ps4570/products_configuration_guide_chapter09186a00801d0188.html#wp1040300
    Hope this helps!
    Rob

  • How many clients support access points 1602, 2602, 3602?

    Hi! How many clients support access point 1602, 2602, 3602. I have found for example that the 1602 supports 32 ClientLink clients and max 128 clients, APs 2602, 3602 supports 128 ClientLink clients and max 200 clients. But is it really? And can we say for example that the AP 2602 will withstand max 200 clients?

    The reason the answer varies so much, is because there are so many variables (this is also why the value ranges so much from one manufacture to the next).  When determining the answer you are looking for you need to consider the following factors and likely more:
    AP model and the features it supports
    single, dual, or tri radio AP
    20, 40, or 80Mhz wide channels
    Device type (b/g, b/g/n, a/b/g/n, a/b/g/n/ac, spatial stream support, and channel width support)
    Security/QOS method(s) employed
    Average distance from the AP
    Obstructions between devices and radios
    Number of competing radios for the same channel
    Data rates configuration
    Rogue detection/mitigation configuration
    Surrounding client density not just the area of concern client density
    Noise floor levels
    Application types/per user network load (is it heavy like YouTube traffic or a drone on the network like Pandora)
    Network latency on the switching side - including the internet circuit
    Application of per SSID, per user, and or per application rate limiting
    The list continues, but I think you get the idea
    I have personally seen 80 devices on a 5Ghz radio of a 3500 access point with several other access points and at least 200 other clients in the area and it was working well.  That being said I would never design to expect that many on a single radio, but I think it is better said that you can safely design for 20-30 clients per 2.4Ghz radio and 25-40 clients per 5Ghz radio.
    The default statement of 20-25 per AP and similar low expectation statements concerning Cisco wireless have been around for many years.  It is now 2014.  About 65% of clients support 5Ghz, ~9% support AC (already), ~90% support some form of N, and ~0.01% support B only.  The landscape of wireless is changing fast making questions like this one have ever changing answers.
    I hope this helps :).
    John

  • An issue while Configuring the Access System Console

    I'm facing a problem while Configuring the Access System Console.
    I have installed the policy manager, and when I try to configure the access system, an error message appears "The environment variable TEMP points to a directory that does not exist. To avoid any unexpected behavior, please make sure it points to the correct directory and restart the web server".
    I have checked the temp system variable, and it was correct, and the directory already exist.
    Note: I'm working on windows server 2003.
    I really appreciate any help with this issue.

    Check the permissions on the directory that the TEMP variable points to, to ensure that everyone has read/write access to it - maybe that's the problem.
    Regards,
    Colin

  • Cannot associate with the access point error message

    We just got high-speed Internet installed at our house. We have a cable coming into the house that connects to a Linksys WAP54G router in our basement. We have two Dell Dimension computers that we installed Linksys PCI Wireless G Cards into. The computer down the basement is working just fine. The computer upstairs which is directly above the router worked fine the first day. The computer got powered down and upon restart wouldn't connect again. I did a system restore and it worked fine. Windows errored out yesterday, and now even after doing a restore, I cannot get it to connect to the wireless network. The error message "Cannot Associate with the Access Point" comes up. When you search for available wireless networks, none appear. Any ideas?

    Try connecting to the network using the Wireless Zero Configuration...just checkout on the right-hand side bottom of the screen pc right-click the Wireless network connetion icon...click view available wireless networks...click refresh network list...on the same list you will see Change the order of preferred networks...on top of the page click wireless networks...in preferred networks...remove each & every network...click OK. Now, once again right-click the Wireless network connetion icon on right-hand side bottom of the screen & click view available wireless networks...click refresh network list...now you will be able to see your wireless network..if its a secured network it will ask you for the wireless wep key...put in the key...where it says confirm the network key & click connect...it will be CONNECTED....and you will be able to go ONLINE WIRELESSLY!!!

  • Configuring Cisco Access Points 1602i Air-SAP-1602I-Z-K9

    Hi everyone,
    I am having touble configuring cisco access points 1602i. I have configured them and they are broadcasting SSID and clients are able to connect to them, but the only thing which is troublesome is speed. I have 100Mbps bandwidth speed but at access point I am getting speed between 17 to 25. Can anyone please tell me where I am gone wrong.
    I have Juniper Srx210 configured as backbone for providing internet on fiber. Then further I have attached one POE switch (managable). From that switch I have attached 4 access points.
    One more thing,two ports of Juniper is configured as Vlans, one for staff and one for students. I have attached this POE switch to Student Vlan, but haven't configured ports of POE switch as trunk. Please tell me do I have to configure ports as trunk on POE Switch. Is this the cause of slow bandwidth over access points.
    I am also planning to go for Wlan Controller to manage Access points. When I contact my supplier about it, told me the following:
    "You just need to convert the Access points to autonomous mode. Here are    some details, there is no additional charge."
    https://supportforums.cisco.com/message/3889653
    http://www.cisco.com/en/US/docs/wireless/access_point/conversion/lwapp/upgrade/guide/lwapnote.html#wp160918
    http://www.youtube.com/watch?v=QQ_NuxdRhQ4
    https://supportforums.cisco.com/docs/DOC-14960
    I looked at the links but couldn't understand properly. Then I searched over the internet  and found out that
    "a cisco autonomous access point basically runs on its own while a  lightweight access point uses a centralized device called a wireless lan controller to get its configuration.  autonomous access points are managed  individually, while the lightweight access points can be managed centrally.  also, the switchport configurations to support both types of access points will  differ. "
    I didn't understand, why he suggested to go for Wlan controller and to upgrade access points to autonomous mode, when according to above finding, it says that autonomous access points runs individually.
    Please advice.
    I shall be thankfull

    Hello Scott and Leo,
    Thanks for all your help.
    I have managed to install and configure 4 Access points and Now Access points are giving speed between 25 to 45Mbps. Still not enought but it sloving the purpose. Everyone is enjoying their face book. I will soon get the Cisco Wlan Controller as well. I dont know if there is a way to get more speed from these access points. I am ready to buy more equipments if required.
    Anyway, today I need your guys expretise once again. As you know Junipr Srx 210 is configured for fiber internet to provide internet services to school. Now we are changing the building and transfering the line to new building. This time I want to use Cisco router in place of Juniper Srx210. But I need to know what model will support the current configuration for fiber. Would you please tell me what model/series router will be suitable for fiber internet and for implementing other restrictions.
    I am attaching a picture of current jiniper Srx 210 for your consideration.
    I shall be very thankfull to you
    Sarabjit

  • I have a Canon MX882 and more often than note get an error message saying the printer is not connected. I check the printer and the get the message that the access point is accessed. I have reloaded the software and it worked for awhile. Any ideas?

    I have a Canon MX882 printer and more often than note get an error message that says "Printer not Connected." When I check the printer itself, I get confirmation that the access point is connected. I tried reloading the software and that seemed to have solved the problem for awhile but I'm experiencing the same problem. Any ideas what is causing this?

    Did you delete all receipts with iDVD in the file name  with either a .PKG or .BOM extension that reside in the HD/Library/Receipts folder and from the /var/db/receipts/  folder before installing the new copy?  If not then do so and delete the new application also.
    Click to view full size
    Then install iPhoto from the disk it came on originally and apply all necessary updaters: Apple - Support - Downloads
    OT

  • Asking to enter a device password in the access point but I don't have an access point

    I installed the Intel Proseet Wireless Client and upon connection to my Linksys router a wizard comes up asking me to "enter the device password to my access point or external registrar".  It displays an 8 digit number in the device password field.  My only option at that point is to go "back", "next" or "cancel".  If I click "next" it eventually fails to connect to my wireless router.  I do not have an access point installed.  Only the router and cable modem.  Any suggestions would be appreciated.
    Message Edited by dougieg on 11-06-2009 05:12 PM

    If its asking you for the Access Point password when you are trying to connect to your Wireless Network, It means you need to input the Wireless Security Key which you have setup on your Router.
    When you are trying to connect to your Wireless Network and it ask you for the 8 digit password, you need to Flip your router upside down and below you will find a 8 digit pin number (0000-0000) it will be in these format. Just input the 8digit pin without (-) and click on Next and it will connect you to your wireless network. Once successfully connected to your Network wirelessly you should be able to go online Wirelessly from your Computer. 

  • Can I use the Ethernet Port for a computer when it is also used as a wireless network with an Airport Extreme as the access point for the wireless network

    Can I use the Ethernet Port  of the A1264 Airport Express to connect to the Ethernet port of a computer that does not have wireless capability when the Airport Express is also used on a wireless network with an Airport Extreme 5th generation as the access point for the network?
    I have AE 5th gen
    looking to buy (from ebay) the AEX A1264
    Various computers, printers and hubs for the network
    Is this possible to do?

    Bob, Thanks for the info. I have read different articles that said yes, but I wanted to make sure before I commit to buy. I have an older A1084 which I could not use the Ethernet port. I know at one point I was able to when I was on 10.4. Now that I am on an Intel processor and 10.8 I am going to have to upgrade some of my Apple wireless hardware.
    Thanks Again.

  • How to configure the Access Server?

    Hi All
    I am in the process of migrating from 11.0.1 to 12.0.
    I have some real-time jobs.
    For this I need to configure the Access Server.
    I can understand I should do this from Server Manager>Edit Access Server Config>Add
    Here what info we need to give? Does it mean we need to give the server name on which current version is installed? How to choose the port?
    My old version DI 11.0.1 is using port 4000. Also in the DS Mgmt Console, I am defaultly getting the Old Job Server in the Adapter Config node. How to remove this?
    Someone plz help me on this.
    Thank You
    Ganesh Sampath

    You have to explicitly share directories on external/secondary volumes.
    Use the Server admin app to configure file sharing, and select which directory/directories on the second drive you want to share, then they'll be available to clients.

  • LGBD390 blu-ray cannot find the access point of WRT160N/3.

    I have been trying to set up the wireless connection to be able to view streamed movies from netflix through my LGBD390 blu-ray player.  I have successfully connected the wireless router to my Embarq router.  When I check status, it says it is enabled and connection is o.k.  I have been on the phone with Linksys (and was charged $9.99 which did not solve my problem).  I also have chatted and so far that has not worked either.  I have downloaded the upgrade for the firmware.  No matter what I do, the blu-ray cannot find the access point of the router.
    Can you help?

    thank you for your responsse Wizzard, but there are things I need to change that I don't know how to do.  I have no idea  how to assign static ip, subnet and gateway on the blu-ray.  When I went to the link , it was actually for  adifferent router than mine.  I have a WRT160N/v3.  I also did not know what to put in the protocol.  and if I should just put the number in the beg. and ending.   I also don't think I have an ethernet adapter.  Maybe you could give me more information.  Thanks in advance.

  • How do I see the clients that are connected to the access point?

    Hello,
    In Wireless Control System (WCS), how do I see all the clients that are connected to the Access Point? I can do a particular search that if I know the mac address. But what I really like to know is that which clients is connected to the network. That means it sould be able to show me, example, Client A is connected to AP 1. The problem in WCS is that I can't do that. Can some please advice how I am able to do this? Thanks.

    Two ways:
    First:
    Under monitor, go to Access Points, then chose the target AP and click on it to open a menu, go to the Current Associated Clients tab.
    Second:
    User the search tool on your upper right corner, type in the target AP name, execute the search, on the results, click view list, on the list chose you AP and then go to the Current Associated Clients tab.
    Enjoy.
    Phil.

  • Can not associate with the access point

    Greetings!
    I am just new here. I am trying to set-up a wireless connection from our linksys router. I recently purchased a linksys wireless internet receiver thru USB connection. Now, my problem is the pc that is supposed to receive a wireless connection is stating " can not associate with the access point". I am not too good about computers, that is why I am seeking you help.
    I hope I can hear from you guys.
    Thanks in advance.
    Cheers!
    Square

    Lets start with the bad news, no wireless connection. Good news, fixable.
    Make sure all your security settings on the usb adapter are correct. If router is set for wep set adapter to wep,and so on. Also check all your firewalls, in windows, and on any virus suites that you may have running. Try turning off all firewalls, other than router, and see if that helps. Also download the easy link advisor from the linksys home page. Make sure your ssid, and network names are set the same for router, and adapter.
    Stlbluesfan30
    Cisco Network Academy Student

  • How do you remove a manually configured wireless access point on the iphone 4S?

    I have manually configured my iPhone 4s to point to a wireless access point that I no longer use. How do I delete it from the list of access points on my iPhone?

    You can only "Forget this Network" while actually connected to the network, so ignore iamjeremi's post. Other than restoring your phone as a new device, you can't if you cannot connect to the network anymore.

Maybe you are looking for

  • Problem with java beans and jsp on web logic 6.0 sp1

              HI ,           I am using weblogic6.0 sp1.           i have problem with jsp and java beans.           i am using very simple java bean which stores name and email           from a html form.           but i am getting following errors:    

  • How to track no of  salesorders changed in particular day

    hi experts, can u please guide me for my requirement. i have a requirement to upload changed salesorders for everyday to applicatio nserver. can u please explain me how to get changed sales orders data? explain me the logic Thanks Gopi

  • How to get out of Recovery Mode? Please help!!

    Hello all, I have a Nomad Muvo^2 that is stuck in Reocvery Mode. Turns out that when i loaded recovery mode, i didn't really need it cuz it was just my computer that was messed up. Now with a new computer and me being able to access the E dri've for

  • Journal Import Process

    Hi All, I have successfully completed the journal import process . Now, If I want to run this Journal Import process using FND_SUBMIT.SUBMIT_REQUEST wrote in procedure then what parameters I have to pass ? Request to guide me Thanks Sanjay

  • Cumulative Cash Flow report

    Hi,        Can anyone tell me how to generate the cumulative cashflow report? (ex: from april/10 to till date and for the perticular month) Thanks in advance