%DOT11-7-AUTH_FAILED: %DOT11-6-DISASSOC:

Hello again,
Thought this issue was fixed yesterday after finding out my printer was the MAC address flashing up on the log, however it seems that every device is playing up.
Thanks
James
These are my wirless devices, 
APPLE IPHONE     6809.2780.219a
DELL LAPTOP        0026.c7e2.68be
HTC PHONE           bccf.cca7.43ea
LG TV                    9444.4434.d43c
HP LAPTOP           001f.3c83.bd9e
PRINTER               0080.927b.0edb
SONY ERICSSON  b8f9.3410.9524
PLAYSTATION 3     280d.fcec.27c4
The log....
*Aug 28 21:05:35.845: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station   280d.fcec.27c4 Associated
SSID[THE MATRIX] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
*Aug 28 21:06:32.913: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 280d.fc
ec.27c4 Reason: Sending station has left the BSS SSID[THE MATRIX]
*Aug 28 21:06:37.321: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station   280d.fcec.27c4 Associated
SSID[THE MATRIX] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
*Aug 28 21:07:49.533: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 6809.27
80.219a Reason: Previous authentication no longer valid SSID[THE MATRIX]
*Aug 28 21:09:37.537: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 0080.92
7b.0edb Reason: Previous authentication no longer valid SSID[THE MATRIX]
*Aug 28 21:09:41.117: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station   0080.927b.0edb Reassociat
ed SSID[THE MATRIX] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
*Aug 28 21:11:47.057: %DOT11-7-AUTH_FAILED: Station 6809.2780.219a Authentication failed
*Aug 28 21:11:49.413: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station   6809.2780.219a Associated
SSID[THE MATRIX] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
*Aug 28 21:11:55.321: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 6809.27
80.219a Reason: Sending station has left the BSS SSID[THE MATRIX]
*Aug 28 21:19:21.612: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 0080.92
7b.0edb Reason: Previous authentication no longer valid SSID[THE MATRIX]
*Aug 28 21:19:25.176: %DOT11-7-AUTH_FAILED: Station 0080.927b.0edb Authentication failed
*Aug 28 21:19:39.324: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station   0080.927b.0edb Associated
SSID[THE MATRIX] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
*Aug 28 21:23:54.664: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 0080.92
7b.0edb Reason: Previous authentication no longer valid SSID[THE MATRIX]
*Aug 28 21:23:59.212: %DOT11-7-AUTH_FAILED: Station 0080.927b.0edb Authentication failed
*Aug 28 21:24:07.756: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station   0080.927b.0edb Reassociat
ed SSID[THE MATRIX] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
*Aug 28 21:26:06.168: %SYS-5-CONFIG_I: Configured from console by James on vty1 (192.168.0.2)
*Aug 28 21:28:33.444: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station bccf.cc
a7.43ea Reason: Sending station has left the BSS SSID[THE MATRIX]
*Aug 28 21:37:08.112: %SYS-5-CONFIG_I: Configured from console by James on vty1 (192.168.0.2)
*Aug 28 21:42:36.712: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 0080.92
7b.0edb Reason: Previous authentication no longer valid SSID[THE MATRIX]
*Aug 28 21:42:41.080: %DOT11-7-AUTH_FAILED: Station 0080.927b.0edb Authentication failed
*Aug 28 21:42:46.828: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station   0080.927b.0edb Associated
SSID[THE MATRIX] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
*Aug 28 21:43:20.296: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station CORE 001f.3c83.bd9e Associa
ted SSID[THE MATRIX] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
*Aug 28 21:43:20.300: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 001f.3c
83.bd9e Reason: Sending station has left the BSS SSID[THE MATRIX]
*Aug 28 21:43:25.808: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 001f.3c
83.bd9e Reason: Sending station has left the BSS SSID[THE MATRIX]
This is my running config....
CORE#sh run
Building configuration...
Current configuration : 6692 bytes
! Last configuration change at 21:37:08 UTC Wed Aug 28 2013 by James
version 15.1
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
hostname CORE
boot-start-marker
boot-end-marker
logging buffered 64000
no aaa new-model
dot11 syslog
dot11 ssid THE MATRIX
authentication open
authentication key-management wpa
guest-mode
infrastructure-ssid
wpa-psk ascii 7 xxxxx
ip source-route
ip cef
ip dhcp excluded-address 192.168.0.1 192.168.0.19
ip dhcp excluded-address 192.168.0.61 192.168.0.254
ip dhcp excluded-address 172.0.0.1 172.0.0.10
ip dhcp pool LAN_Addresses
import all
network 192.168.0.0 255.255.255.0
dns-server 8.8.8.8 4.2.2.2
default-router 192.168.0.1
lease 5
ip dhcp pool THE MATRIX
import all
network 172.0.0.0 255.255.255.0
default-router 172.0.0.1
dns-server 8.8.8.8 4.2.2.2
lease 5
no ip domain lookup
ip domain name firewire2013
ip name-server 4.2.2.2
no ipv6 cef
multilink bundle-name authenticated
voice-card 0
crypto pki token default removal timeout 0
crypto pki trustpoint TP-self-signed-3845826623
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3845826623
revocation-check none
crypto pki certificate chain TP-self-signed-3845826623
certificate self-signed 01
  3082022B 30820194 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
  31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
  69666963 6174652D 33383435 38323636 3233301E 170D3133 30383235 30363031
  31385A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
  4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D33 38343538
  32363632 3330819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
  81009FF5 DA191624 A7ECAE35 A3F660AB A049B91F CB83F93F 888EB00D F5E2C20E
  83486395 E7069E1D 36BD1EEB 12AFCE88 2E8F5320 52E67F70 3F4716E9 97B1F33E
  0147A66D D573E9BC 36D35EA1 226D723B FAEDDCB2 C263511B DA745A66 8798BCEC
  F581248B FCD39380 FE92CEB9 09328BCD 71F9D1E1 BCCCB9DB EFA1DC22 ED7CF8BD
  25FD0203 010001A3 53305130 0F060355 1D130101 FF040530 030101FF 301F0603
  551D2304 18301680 143D0167 51FECFA9 ED03DF31 6B0A562E E10A9300 AE301D06
  03551D0E 04160414 3D016751 FECFA9ED 03DF316B 0A562EE1 0A9300AE 300D0609
  2A864886 F70D0101 04050003 8181006B C454436A 370AC181 BBA4017F 41E3DFD2
  CFE9665B 80F797DC B7130067 318318F9 094A4672 5BA2A50F 80EC1225 4C958474
  E309731D 9E4E5265 B861BAF0 36E4996B B396CB6C BF210CE6 59F3D165 441C2302
  3693441B DB45704D 5A6A15F5 79F939F9 6A9DDA84 DFDF5D11 E729D505 A1692E21
  2D95292C 6AC1263E FB35C46E 6D6874
        quit
license udi pid CISCO2811 sn FCZ09237316
username James privilege 15 secret 5 xxxxxxxxxxxxxxxxx
redundancy
class-map type inspect match-any sdm-cls-insp-traffic
class-map type inspect match-all sdm-insp-traffic
match class-map sdm-cls-insp-traffic
class-map type inspect match-any SDM-Voice-permit
match protocol h323
match protocol skinny
match protocol sip
class-map type inspect match-any sdm-cls-icmp-access
match protocol icmp
match protocol tcp
match protocol udp
class-map type inspect match-all sdm-invalid-src
match access-group 102
class-map type inspect match-all sdm-icmp-access
match class-map sdm-cls-icmp-access
class-map type inspect match-all sdm-protocol-http
match protocol http
interface FastEthernet0/0
description CONNECTION TO MODEM>ISP$ETH-WAN$
ip address dhcp
ip nat outside
ip virtual-reassembly in
duplex full
speed 100
no cdp enable
interface FastEthernet0/1
description CONNECTION TO LAB
ip address 192.168.1.1 255.255.255.0
ip nat inside
ip virtual-reassembly in
duplex full
speed 100
interface Dot11Radio0/2/0
description WLAN TO MOBILE USERS
ip address 172.0.0.1 255.255.255.0
ip nat inside
ip virtual-reassembly in
encryption mode ciphers tkip
ssid THE MATRIX
speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0
station-role root
interface FastEthernet0/0/0
description CONNECTION TO CORE PC
no ip address
interface FastEthernet0/0/1
description CONNECTION TO PS3
no ip address
interface FastEthernet0/0/2
description CONNECTION TO ACCESS SERVER
no ip address
interface FastEthernet0/0/3
no ip address
interface Vlan1
description MANAGEMENT INTERFACE
ip address 192.168.0.1 255.255.255.0
ip nat inside
ip virtual-reassembly in
router eigrp 10
network 192.168.0.0 0.0.255.255
redistribute static
ip forward-protocol nd
ip http server
ip http authentication local
ip http secure-server
ip nat inside source list 1 interface FastEthernet0/0 overload
ip nat inside source list 2 interface FastEthernet0/0 overload
ip access-list extended SDM_HTTPS
remark SDM_ACL Category=1
permit tcp any any eq 443
ip access-list extended SDM_SHELL
remark SDM_ACL Category=1
permit tcp any any eq cmd
ip access-list extended SDM_SSH
remark SDM_ACL Category=1
permit tcp any any eq 22
access-list 1 permit 192.168.0.0 0.0.255.255
access-list 2 remark SDM_ACL Category=2
access-list 2 permit 172.0.0.0 0.0.0.255
access-list 70 remark THIS WILL DENY HOST FROM TELNETTING TO R1
access-list 70 deny   192.168.10.50
access-list 70 permit any
access-list 100 remark SDM_ACL Category=128
access-list 100 permit ip host 255.255.255.255 any
access-list 100 permit ip 127.0.0.0 0.255.255.255 any
access-list 100 permit ip 172.0.0.0 0.0.0.255 any
access-list 100 permit ip 192.168.0.0 0.0.0.255 any
access-list 100 permit ip 192.168.1.0 0.0.0.255 any
access-list 101 remark SDM_ACL Category=128
access-list 101 permit ip any any
access-list 102 remark SDM_ACL Category=128
access-list 102 permit ip host 255.255.255.255 any
access-list 102 permit ip 127.0.0.0 0.255.255.255 any
access-list 102 permit ip 172.0.0.0 0.0.0.255 any
access-list 102 permit ip 192.168.0.0 0.0.0.255 any
access-list 102 permit ip 192.168.1.0 0.0.0.255 any
control-plane
mgcp profile default
alias exec s show ip interface brief
alias exec rc show running-config
alias exec r show ip route
alias exec v show version
banner motd ^CCCC
###DO NOT LOG ON AUTHORIZED PERSONNEL ONLY####
^C
line con 0
exec-timeout 100 0
password 7 xxxxxx
logging synchronous
login
line aux 0
exec-timeout 30 0
password 7 xxxxxx
logging synchronous
login
line vty 0 4
access-class 70 in
exec-timeout 100 0
privilege level 15
password 7 xxxxxxx
logging synchronous
login local
transport input telnet ssh
scheduler allocate 20000 1000
end

Tried that and its still the same.  All the devices are playing up.
Could the hardware be toast?
*Aug 30 18:23:43.762: %DOT11-7-AUTH_FAILED: Station 001f.3c83.bd9e Authentication failed
*Aug 30 18:23:49.326: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station CORE 001f.3c83.bd9e Associated SSID[THE MATRIX]
AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
*Aug 30 18:24:03.778: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 001f.3c83.bd9e Reason: Send
ing station has left the BSS SSID[THE MATRIX]
--More--
*Aug 30 18:31:52.314: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station   bccf.cca7.43ea Associated SSID[THE MATRIX] AU
TH_TYPE[OPEN] KEY_MGMT[WPA PSK]
CORE#
*Aug 30 18:32:04.478: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 001f.3c83.bd9e Reason: Send
ing station has left the BSS SSID[THE MATRIX]
CORE#
*Aug 30 18:32:09.114: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station CORE 001f.3c83.bd9e Associated SSID[THE MATRIX]
AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
CORE#
*Aug 30 18:32:18.710: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 001f.3c83.bd9e Reason: Prev
ious authentication no longer valid SSID[THE MATRIX]
CORE#
*Aug 30 18:32:20.230: %DOT11-7-AUTH_FAILED: Station 001f.3c83.bd9e Authentication failed
CORE#
*Aug 30 18:32:26.070: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station CORE 001f.3c83.bd9e Associated SSID[THE MATRIX]
AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
CORE#
*Aug 30 18:32:34.058: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 001f.3c83.bd9e Reason: Send
ing station has left the BSS SSID[THE MATRIX]
CORE#
*Aug 30 18:32:47.258: %DOT11-7-AUTH_FAILED: Station 001f.3c83.bd9e Authentication failed
CORE#
*Aug 30 18:32:47.678: %DOT11-6-ASSOC: Interface Dot11Radio0/2/0, Station CORE 001f.3c83.bd9e Associated SSID[THE MATRIX]
AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
CORE#
*Aug 30 18:33:12.146: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station 001f.3c83.bd9e Reason: Send
ing station has left the BSS SSID[THE MATRIX]
CORE#
*Aug 30 18:33:32.442: Client 001f.3c83.bd9e failed: reached maximum retries
CORE#
*Aug 30 18:33:34.442: Client 001f.3c83.bd9e failed: reached maximum retries
CORE#
*Aug 30 18:33:39.442: Client 001f.3c83.bd9e failed: reached maximum retries
CORE#
*Aug 30 18:33:44.442: Client 001f.3c83.bd9e failed: reached maximum retries
CORE#
*Aug 30 18:33:46.442: Client 001f.3c83.bd9e failed: reached maximum retries
CORE#
*Aug 30 18:33:48.442: Client 001f.3c83.bd9e failed: reached maximum retries
CORE#
*Aug 30 18:33:53.442: Client 001f.3c83.bd9e failed: reached maximum retries
CORE#
*Aug 30 18:34:10.206: %DOT11-6-DISASSOC: Interface Dot11Radio0/2/0, Deauthenticating Station bccf.cca7.43ea Reason: Prev
ious authentication no longer valid SSID[THE MATRIX]

Similar Messages

  • Aironet 1141N only showing %DOT11-6-ROAMED messages

    Hi,
    I have a bit of a strange issue.  We have five 1141N's scattered around the office.  We had an issue reported whereby some people said that they could get to Google but Outlook would not connect to the mail server.  One of our junior engineers simply rebooted one of the access points in that area which seemed to resolve the issue, unfortunate as that doesn't really help work out what the issue was and prevent reoccurance.
    Luckily I have all of the APs logging to a central syslog server.  Looking at the output of the AP in question prior to the reboot I noticed that I only see '
    %DOT11-6-ROAMED messages' like so:
    SCI-OS-AP05: Jul 24 08:11:12.342: %DOT11-6-ROAMED: Station 8c70.5a46.cc90 Roamed to 1caa.076f.f620
    SCI-OS-AP05: Jul 24 08:10:29.295: %DOT11-6-ROAMED: Station 8c70.5a46.cc90 Roamed to 1caa.076f.f620
    SCI-OS-AP05: Jul 24 08:10:23.443: %DOT11-6-ROAMED: Station 44d8.8422.9ab5 Roamed to 1caa.07c6.1580
    SCI-OS-AP05: Jul 24 08:10:09.356: %DOT11-6-ROAMED: Station 040c.ce71.352a Roamed to 1caa.076f.f620
    SCI-OS-AP05: Jul 24 08:09:45.948: %DOT11-6-ROAMED: Station 0021.6ab3.47b4 Roamed to 1caa.07c6.1580
    SCI-OS-AP05: Jul 24 08:09:21.697: %DOT11-6-ROAMED: Station 8c70.5a93.b484 Roamed to 1caa.076f.f620
    SCI-OS-AP05: Jul 24 08:08:57.492: %DOT11-6-ROAMED: Station 0021.6abb.7b1c Roamed to 1caa.076f.f620
    SCI-OS-AP05: Jul 24 08:08:44.112: %DOT11-6-ROAMED: Station 60fb.4231.00b7 Roamed to 1caa.076f.f620
    SCI-OS-AP05: Jul 24 08:08:32.152: %DOT11-6-ROAMED: Station 0021.6abb.7b1c Roamed to 1caa.076f.f620
    SCI-OS-AP05: Jul 24 08:08:08.481: %DOT11-6-ROAMED: Station 8ca9.822c.4562 Roamed to 1caa.07c6.1580
    SCI-OS-AP05: Jul 24 08:08:02.647: %DOT11-6-ROAMED: Station 1474.114f.d117 Roamed to 1caa.07c6.1580
    SCI-OS-AP05: Jul 24 08:07:27.834: %DOT11-6-ROAMED: Station 30f7.c5de.59f6 Roamed to 1caa.07c6.1580
    SCI-OS-AP05: Jul 24 08:07:17.854: %DOT11-6-ROAMED: Station 8c70.5a93.b484 Roamed to 1caa.076f.f620
    SCI-OS-AP05: Jul 24 08:07:07.838: %DOT11-6-ROAMED: Station c09f.4256.b7f9 Roamed to 1caa.076f.f620
    SCI-OS-AP05: Jul 24 08:07:05.090: %DOT11-6-ROAMED: Station 8ca9.822c.4562 Roamed to 1caa.07f4.09d0
    This is unusual as I usually see a mix of 'DOT11-6-ASSOC', 'DOT11-6-ROAMED' and 'DOT11-6-DISASSOC' messages (which all of the other APs were still logging at this time).
    Given this unusual behavious it does suggest that there was some kind of issue.  I wonder if anyone else has observed this behaviour or could suggest which debug flags to enable on the device in question so as to provide more useful information if this happens again in future.
    Thanks,
    JF.

    It seems the claim that Google was working but not the connection to an internal server may have been a red herring, however this issue seems to have appeared on another AP in the same office today.  Same model of AP, same software version.  This time I have managed to get on the device before it's been rebooted.  Very odd.  Shows about 6 associated sessions  (three with each SSID) and then about 15 sessions under "Others:  (not related to any ssid)" with no IP and a state of "Auth_not_A".
    I've checked through the syslog.  Very similar story to the last time this happened on the other AP.  All fine then one morning no authen/deauthen messages, just roam messages.  Have reset the radio interface with a shutdown/no shutdown on dot110 and now have 32 active (and working) sessions.  This points to the radio rather than an issue upstream with the switch, VLANs etc.

  • DOT11-3-TKIP_MIC_FAILURE_REPEATED - PEAP with 1131AG and IntelPro Wireless

    Hi,
    I use windows XP computer with Intel Pro Wireless 2200BG Network card. I succeed to connect to network (IP DHCP received) through AP 1131, IAS authentication and TKIP encryption. But after 1 or 2 minutes, i was disconncted and syslog server received :
    2006-05-19 09:50:29 Local7.Warning 172.30.31.52 120: May 19 08:33:38.549 GMT: %DOT11-4-TKIP_MIC_FAILURE_REPORT: Received TKIP Michael MIC failure report from the station 0016.6f4a.9a20 on the packet (TSC=0x0) encrypted and protected by group key.
    2006-05-19 09:50:29 Local7.Warning 172.30.31.52 121: May 19 08:33:39.544 GMT: %DOT11-4-TKIP_MIC_FAILURE_REPORT: Received TKIP Michael MIC failure report from the station 0016.6f4a.9a20 on the packet (TSC=0x0) encrypted and protected by group key.
    2006-05-19 09:50:29 Local7.Error 172.30.31.52 122: May 19 08:33:39.544 GMT: %DOT11-3-TKIP_MIC_FAILURE_REPEATED: Two TKIP Michael MIC failures were detected within 1 seconds on Dot11Radio0 interface. The interface will be put on MIC failure hold state for next 60 seconds.
    2006-05-19 09:50:30 Local7.Info 172.30.31.52 123: May 19 08:33:39.545 GMT: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0016.6f4a.9a20 Reason: Invalid MIC
    Has somebody ever seen this problem ?
    Regards
    Olivier

    I have been battling this problem for a few weeks. I think I fixed it with the wpa2 patch from Microsoft.
    http://www.microsoft.com/downloads/details.aspx?FamilyID=2726f32f-d52b-4f84-ace8-f7fc20195769&DisplayLang=en

  • Constantly getting error on UC520 Wi-Fi

    Hello,
    I am constantly getting error on UC520W Wifi from last Night, I am not getting with this error,
    Can anyone help me , what is the cause of this error, or is there any issue on UC520,
    Please suggest & help me
    .858: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001320: Jan  8 05:12:22.166: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001321: Jan  8 05:12:22.166: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001322: Jan  8 05:13:23.997: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001323: Jan  8 05:13:24.305: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001324: Jan  8 05:13:24.305: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001325: Jan  8 05:14:33.512: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001326: Jan  8 05:14:33.820: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001327: Jan  8 05:14:33.820: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001328: Jan  8 05:14:50.784: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001329: Jan  8 05:14:51.376: %DOT11-7-AUTH_FAILED: Station 001d.a231.4aad Authentication failed
    001330: Jan  8 05:14:55.941: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001331: Jan  8 05:14:55.941: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001332: Jan  8 05:15:23.594: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001333: Jan  8 05:15:23.914: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001334: Jan  8 05:15:23.914: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001335: Jan  8 05:16:16.128: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001336: Jan  8 05:16:17.112: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001337: Jan  8 05:16:17.116: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001338: Jan  8 05:16:22.072: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001339: Jan  8 05:16:22.376: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001340: Jan  8 05:16:22.376: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001341: Jan  8 05:17:01.454: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001342: Jan  8 05:17:02.026: %DOT11-7-AUTH_FAILED: Station 001d.a231.4aad Authentication failed
    001343: Jan  8 05:17:14.110: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001344: Jan  8 05:17:14.110: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001345: Jan  8 05:17:32.835: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001346: Jan  8 05:17:33.911: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001347: Jan  8 05:17:33.911: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001348: Jan  8 05:18:16.933: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001349: Jan  8 05:18:17.257: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001350: Jan  8 05:18:17.261: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001351: Jan  8 05:18:35.498: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001352: Jan  8 05:18:35.810: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001353: Jan  8 05:18:35.810: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001354: Jan  8 05:18:50.698: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001355: Jan  8 05:18:51.206: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001356: Jan  8 05:18:51.206: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001357: Jan  8 05:18:55.970: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001358: Jan  8 05:19:03.143: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001359: Jan  8 05:19:03.451: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001360: Jan  8 05:19:03.451: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001361: Jan  8 05:19:10.827: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001362: Jan  8 05:19:11.143: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001363: Jan  8 05:19:11.143: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001364: Jan  8 05:19:27.832: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001365: Jan  8 05:19:28.148: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001366: Jan  8 05:19:28.148: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001367: Jan  8 05:19:55.281: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001368: Jan  8 05:19:55.513: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001369: Jan  8 05:19:55.517: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001370: Jan  8 05:20:14.742: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001371: Jan  8 05:20:15.046: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001372: Jan  8 05:20:15.046: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001373: Jan  8 05:20:34.082: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001374: Jan  8 05:20:34.634: %DOT11-7-AUTH_FAILED: Station 001d.a231.4aad Authentication failed
    001375: Jan  8 05:20:47.035: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001376: Jan  8 05:20:47.035: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001377: Jan  8 05:20:54.811: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001378: Jan  8 05:21:11.340: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001379: Jan  8 05:21:11.340: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001380: Jan  8 05:21:23.748: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001381: Jan  8 05:21:24.057: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001382: Jan  8 05:21:24.057: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]kya
    001383: Jan  8 05:22:20.471: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001384: Jan  8 05:22:21.003: %DOT11-7-AUTH_FAILED: Station 001d.a231.4aad Authentication failed
    001385: Jan  8 05:22:25.095: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001386: Jan  8 05:22:25.095: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001387: Jan  8 05:22:39.308: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001388: Jan  8 05:22:39.644: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001389: Jan  8 05:22:39.644: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001390: Jan  8 05:22:52.832: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001391: Jan  8 05:22:53.136: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001392: Jan  8 05:22:53.140: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001393: Jan  8 05:23:24.749: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001394: Jan  8 05:23:25.133: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001395: Jan  8 05:23:25.133: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001396: Jan  8 05:25:46.851: %IPPHONE-6-UNREGISTER_ABNORMAL: ephone-11:SEP001DA2314AAD IP:10.1.1.11 Socket:6 DeviceType:Phone has unregistered abnormally.
    001397: Jan  8 05:27:20.475: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001398: Jan  8 05:27:43.084: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001399: Jan  8 05:27:43.084: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001400: Jan  8 05:27:48.696: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001401: Jan  8 05:28:04.933: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001402: Jan  8 05:28:04.933: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001403: Jan  8 05:28:09.893: %IPPHONE-6-REG_ALARM: Name=SEP001DA2314AAD Load= Last=TCP-timeout
    001404: Jan  8 05:28:10.229: %IPPHONE-6-REGISTER: ephone-11:SEP001DA2314AAD IP:10.1.1.11 Socket:6 DeviceType:Phone has registered.
    001405: Jan  8 05:29:03.851: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001406: Jan  8 05:29:04.159: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001407: Jan  8 05:29:04.159: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001408: Jan  8 05:29:51.725: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001409: Jan  8 05:29:52.029: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001410: Jan  8 05:29:52.033: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001411: Jan  8 05:29:59.734: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001412: Jan  8 05:30:00.042: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001413: Jan  8 05:30:00.042: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001414: Jan  8 05:30:05.878: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001415: Jan  8 05:30:06.190: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001416: Jan  8 05:30:06.190: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001417: Jan  8 05:31:16.469: %IPPHONE-6-REG_ALARM: 10: Name=SEP001BD5019982 Load= SCCP31.8-2-2SR2S Last=TCP-timeout
    001418: Jan  8 05:31:18.461: %IPPHONE-6-UNREGISTER_ABNORMAL: ephone-6:SEP001BD5019982 IP:192.168.4.175 Socket:5 DeviceType:Phone has unregistered abnormally.
    001419: Jan  8 05:31:18.461: %IPPHONE-6-REGISTER: ephone-6:SEP001BD5019982 IP:192.168.4.175 Socket:8 DeviceType:Phone has registered.
    001420: Jan  8 05:31:36.890: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001421: Jan  8 05:31:37.110: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001422: Jan  8 05:31:37.110: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001423: Jan  8 05:32:08.595: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001424: Jan  8 05:32:09.119: %DOT11-7-AUTH_FAILED: Station 001d.a231.4aad Authentication failed
    001425: Jan  8 05:32:11.751: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001426: Jan  8 05:32:11.751: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    Translating "kya"...domain server (63.203.35.55)
    001427: Jan  8 05:32:49.721: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001428: Jan  8 05:32:50.125: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001429: Jan  8 05:32:50.129: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    % Unknown command or computer name, or unable to find computer address
    coinop-uc520#
    coinop-uc520#kya                sh ip dhc
    coinop-uc520#sh ip dhcp bind
    Bindings from all pools not associated with VRF:
    IP address          Client-ID/               Lease expiration        Type
         Hardware address/
         User name
    10.1.1.11           0100.1da2.314a.ad       Jan 09 2011 02:27 PM    Automatic
    192.168.2.11        0100.16d4.3c0e.99       Jan 09 2011 09:41 AM    Automatic
    192.168.2.14        0100.16ea.ee13.28       Jan 09 2011 01:22 PM    Automatic
    192.168.2.16        0100.237d.0081.4b       Jan 09 2011 02:29 PM    Automatic
    192.168.2.19        0100.0c6e.0438.e8       Jan 09 2011 12:43 PM    Automatic
    192.168.2.47        0100.0c29.e2eb.b9       Jan 08 2011 08:20 PM    Automatic
    coinop-uc520#ping
    001430: Jan  8 05:34:17.872: %IPPHONE-6-UNREGISTER_ABNORMAL: ephone-11:SEP001DA2314AAD IP:10.1.1.11 Socket:6 DeviceType:Phone has unregistered abnormally.
    001431: Jan  8 05:38:48.864: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 0016.eaee.1328 Reason: Sending station has left the BSS SSID[coinop]
    001432: Jan  8 05:38:58.460: *** Not encrypted dot1x packet from 0016.eaee.1328 has been discarded
    001433: Jan  8 05:38:58.460: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station coinop-uc520 0016.eaee.1328 Associated SSID[coinop] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001434: Jan  8 05:42:08.512: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001435: Jan  8 05:42:43.133: %DOT11-7-AUTH_FAILED: Station 001d.a231.4aad Authentication failed
    001436: Jan  8 05:42:48.725: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001437: Jan  8 05:42:48.725: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001438: Jan  8 05:43:09.406: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001439: Jan  8 05:43:09.814: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001440: Jan  8 05:43:09.818: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001441: Jan  8 05:43:16.363: %IPPHONE-6-REG_ALARM: Name=SEP001DA2314AAD Load= Last=TCP-timeout
    001442: Jan  8 05:43:16.691: %IPPHONE-6-REGISTER: ephone-11:SEP001DA2314AAD IP:10.1.1.11 Socket:5 DeviceType:Phone has registered.
    001443: Jan  8 05:43:44.072: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 0016.eaee.1328 Reason: Sending station has left the BSS SSID[coinop]
    001444: Jan  8 05:43:53.956: *** Not encrypted dot1x packet from 0016.eaee.1328 has been discarded
    001445: Jan  8 05:43:53.956: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station coinop-uc520 0016.eaee.1328 Associated SSID[coinop] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001446: Jan  8 05:43:57.180: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001447: Jan  8 05:43:57.540: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001448: Jan  8 05:43:58.568: %IPPHONE-6-UNREGISTER_NORMAL: ephone-11:SEP001DA2314AAD IP:10.1.1.11 Socket:5 DeviceType:Phone has unregistered normally.
    001449: Jan  8 05:44:01.572: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001450: Jan  8 05:44:01.572: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001451: Jan  8 05:44:10.565: %IPPHONE-6-REG_ALARM: Name=SEP001DA2314AAD Load= Last=TCP-Bad-ACK
    001452: Jan  8 05:44:12.469: %IPPHONE-6-REGISTER: ephone-11:SEP001DA2314AAD IP:10.1.1.11 Socket:5 DeviceType:Phone has registered.
    001453: Jan  8 05:45:09.259: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001454: Jan  8 05:45:09.575: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001455: Jan  8 05:45:09.575: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001456: Jan  8 05:45:22.868: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001457: Jan  8 05:45:23.176: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001458: Jan  8 05:45:23.176: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001459: Jan  8 05:46:16.934: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001460: Jan  8 05:46:17.246: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001461: Jan  8 05:46:17.246: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001462: Jan  8 05:46:27.466: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001463: Jan  8 05:46:27.770: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001464: Jan  8 05:46:27.770: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001465: Jan  8 05:46:28.198: *** Not encrypted dot1x packet from 0016.eaee.1328 has been discarded
    001466: Jan  8 05:46:35.903: %IPPHONE-6-UNREGISTER_ABNORMAL: ephone-6:SEP001BD5019982 IP:192.168.4.175 Socket:8 DeviceType:Phone has unregistered abnormally.
    001467: Jan  8 05:46:54.820: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    001468: Jan  8 05:46:55.132: *** Not encrypted dot1x packet from 001d.a231.4aad has been discarded
    001469: Jan  8 05:46:55.132: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voic

    Thanks for suggestion,
    But please look apart from 0016.eaee.1328  this MAC address, we have more error like below & I am constantly getting error  from last night, also let you know wi-fi Ip phone is working on i have post my config please suggest if anywhere is wrong
    001461: Jan  8 05:46:17.246: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station SEP001DA2314AAD 001d.a231.4aad Associated SSID[uc520-voice] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    001462: Jan  8 05:46:27.466: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 001d.a231.4aad Reason: Previous authentication no longer valid SSID[uc520-voice]
    dot11 ssid coinop
       vlan 1
       authentication open
       authentication key-management wpa
       guest-mode
       wpa-psk ascii 7 XXXXXXXXXXXXXXXXXXXX
    dot11 ssid uc520-voice
       vlan 100
       authentication open
       authentication key-management wpa
       wpa-psk ascii 7 XXXXXXXXXXXXXXXXXXXX
    ip cef
    ip dhcp relay information trust-all
    ip dhcp use vrf connected
    ip dhcp excluded-address 10.1.1.1 10.1.1.10
    ip dhcp excluded-address 192.168.10.1 192.168.10.10
    ip dhcp excluded-address 10.1.1.200 10.1.1.254
    ip dhcp excluded-address 192.168.2.1 192.168.2.10
    ip dhcp pool phone
       network 10.1.1.0 255.255.255.0
       default-router 10.1.1.1
       option 150 ip 10.1.1.1
    ip dhcp pool data
       network 192.168.2.0 255.255.255.0
       default-router 192.168.2.1
       dns-server 203.7.224.10 203.25.27.50
    ip name-server 63.203.35.55
    username admin privilege 15 password 7 XXXXXXXXXXXXXXXXXXXX
    archive
    log config
      logging enable
      logging size 600
      hidekeys
    ip tftp source-interface Loopback0
    bridge irb
    interface Loopback0
    ip address 10.1.10.2 255.255.255.252
    ip nat inside
    ip virtual-reassembly
    macro description cisco-phone | cisco-phone | cisco-phone | cisco-phone |  cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone |  cisco-phone | cisco-phone | cisco-phone | cisco-phone
    tunnel source XXXXXXXXXXX
    tunnel mode gre multipoint
    tunnel path-mtu-discovery
    interface Tunnel2
    no ip address
    interface FastEthernet0/0
    description $FW_OUTSIDE$
    no ip address
    ip nat outside
    ip virtual-reassembly
    duplex auto
    speed auto
    pppoe enable group global
    pppoe-client dial-pool-number 1
    interface Integrated-Service-Engine0/0
    description cue is initialized with default IMAP group
    ip unnumbered Loopback0
    ip nat inside
    ip virtual-reassembly
    service-module ip address 10.1.10.1 255.255.255.252
    service-module ip default-gateway 10.1.10.2
    macro description cisco-switch | cisco-switch | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phh | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch
    interface FastEthernet0/1/0
    switchport voice vlan 100
    macro description cisco-phone  | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone
    interface FastEthernet0/1/1
    switchport voice vlan 100
    macro description cisco-phone  | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone
    interface FastEthernet0/1/2
    switchport voice vlan 100
    macro description cisco-phone  | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone
    interface FastEthernet0/1/3
    switchport voice vlan 100
    macro description cisco-phone  | cisco-phone | ciscophone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone  | cisco-phone | ciscophone | cisco-phone | cisco-phone | cisco-phone | cisco-phone
    interface FastEthernet0/1/4
    switchport voice vlan 100
    macro description cisco-phone  | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone
    interface FastEthernet0/1/5
    switchport voice vlan 100
    macro description cisco-phone  | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone
    interface FastEthernet0/1/6
    switchport voice vlan 100
    macro description cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch |  native | cisco-phone itch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch |  native
    interface FastEthernet0/1/7
    switchport voice vlan 100
    macro description cisco-phone  | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone | cisco-phone
    interface FastEthernet0/1/8
    switchport mode trunk
    macro description cisco-switc | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switch | cisco-switc
    interface Dot11Radio0/5/0
    no ip address
    ip virtual-reassembly
    encryption vlan 100 mode ciphers tkip
    encryption vlan 1 mode ciphers tkip
    ssid coinop
    ssid uc520-voice
    speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0 54.0
    station-role root
    world-mode dot11d country AU both
    bridge-group 1
    bridge-group 1 subscriber-loop-control
    bridge-group 1 block-unknown-source
    no bridge-group 1 source-learning
    no bridge-group 1 unicast-flooding
    interface Dot11Radio0/5/0.1
    encapsulation dot1Q 100
    bridge-group 1
    bridge-group 1 subscriber-loop-control
    bridge-group 1 block-unknown-source
    no bridge-group 1 source-learning
    no bridge-group 1 unicast-flooding
    interface Dot11Radio0/5/0.2
    encapsulation dot1Q 1 native
    bridge-group 2
    bridge-group 2 subscriber-loop-control
    bridge-group 2 spanning-disabled
    bridge-group 2 block-unknown-source
    no bridge-group 2 source-learning
    no bridge-group 2 unicast-flooding
    interface Virtual-Template1
    ip unnumbered Dialer1
    ip nat inside
    ip virtual-reassembly
    peer default ip address pool IP_POOL
    no keepalive
    ppp encrypt mppe 40
    ppp authentication chap ms-chap pap
    interface Virtual-Template2 type tunnel
    ip unnumbered BVI2
    ip nat inside
    ip virtual-reassembly
    shutdown
    tunnel mode ipsec ipv4
    tunnel protection ipsec profile SDM_Profile1
    interface Virtual-Template7 type tunnel
    ip unnumbered BVI2
    ip nat inside
    ip virtual-reassembly
    shutdown
    tunnel mode ipsec ipv4
    tunnel protection ipsec profile SDM_Profile1
    interface Vlan1
    no ip address
    ip virtual-reassembly
    bridge-group 2
    bridge-group 2 spanning-disabled
    interface Vlan100
    no ip address
    ip virtual-reassembly
    bridge-group 1
    bridge-group 1 spanning-disabled
    interface Dialer1
    mtu 1492
    ip address negotiated
    ip mtu 1492
    ip nat outside
    ip virtual-reassembly
    encapsulation ppp
    ip route-cache flow
    ip tcp adjust-mss 1492
    dialer pool 1
    dialer-group 1
    ppp authentication pap callin
    ppp chap refuse
    ppp pap sent-username [email protected] password 7 XXXXXXXXXXXXXXXXXXXX
    crypto map vpnmap
    interface BVI1
    ip address 10.1.1.1 255.255.255.0
    ip nat inside
    ip virtual-reassembly
    interface BVI2
    ip address 192.168.2.1 255.255.255.0
    ip nat inside
    ip virtual-reassembly

  • CISCO AIR-AP1252AG-E-K9 is keep rebooting with no reason

    Hello
    I have an cisco AIR-AP1252AG-E-K9  and it reeboots randomly with no aparent reason
    this is the configuration
    aaa group server radius rad_eap
    server 10.10.1.2 auth-port 1645 acct-port 1646
    aaa group server radius rad_mac
    aaa group server radius rad_acct
    server 10.10.1.2 auth-port 1645 acct-port 1646
    aaa group server radius rad_admin
    aaa group server tacacs+ tac_admin
    aaa group server radius rad_pmip
    aaa group server radius dummy
    aaa authentication login eap_methods group rad_eap
    aaa authentication login mac_methods local
    aaa authorization exec default local
    aaa accounting network acct_methods start-stop group rad_acct
    aaa session-id common
    clock timezone +0200 2
    ip domain name diamant.local
    dot11 activity-timeout unknown default 32400
    dot11 activity-timeout client default 32400 maximum 32400
    dot11 activity-timeout repeater default 32400 maximum 32400
    dot11 activity-timeout workgroup-bridge default 32400 maximum 32400
    dot11 activity-timeout bridge default 32400 maximum 32400
    dot11 ssid cisco
       authentication open eap eap_methods
       authentication network-eap eap_methods
       authentication key-management wpa
       guest-mode
    dot11 ssid diamant4
       authentication open eap eap_methods
       authentication network-eap eap_methods
       authentication key-management wpa
       guest-mode
    dot11 arp-cache
    power inline negotiation prestandard source
    username root privilege 15 password 7 060506324F41
    username Cisco privilege 15 password 7 1047051613121F120D0A2D2E2862626C7A46
    bridge irb
    interface Dot11Radio0
    no ip address
    no ip route-cache
    encryption mode ciphers aes-ccm
    ssid diamant4
    speed  basic-1.0 basic-2.0 basic-5.5 basic-11.0 basic-6.0 basic-9.0 basic-12.0 basic-18.0 basic-24.0 basic-36.0 basic-48.0 basic-54.0 m0. m1. m2. m3. m4. m5. m6. m7. m8. m9. m10. m11. m12. m13. m14. m15.
    channel width 40-above
    channel 2412
    station-role root
    payload-encapsulation dot1h
    bridge-group 1
    bridge-group 1 subscriber-loop-control
    bridge-group 1 block-unknown-source
    no bridge-group 1 source-learning
    no bridge-group 1 unicast-flooding
    bridge-group 1 spanning-disabled
    interface Dot11Radio1
    no ip address
    no ip route-cache
    encryption mode ciphers aes-ccm
    ssid cisco
    dfs band 1 3 block
    speed  basic-6.0 basic-9.0 basic-12.0 basic-18.0 basic-24.0 basic-36.0 basic-48.0 basic-54.0 m0. m1. m2. m3. m4. m5. m6. m7. m8. m9. m10. m11. m12. m13. m14. m15.
    channel width 40-above
    channel dfs
    station-role root
    payload-encapsulation dot1h
    world-mode legacy
    bridge-group 1
    bridge-group 1 subscriber-loop-control
    bridge-group 1 block-unknown-source
    no bridge-group 1 source-learning
    no bridge-group 1 unicast-flooding
    bridge-group 1 spanning-disabled
    interface GigabitEthernet0
    no ip address
    no ip route-cache
    duplex auto
    speed auto
    bridge-group 1
    no bridge-group 1 source-learning
    bridge-group 1 spanning-disabled
    interface BVI1
    ip address dhcp client-id GigabitEthernet0
    no ip route-cache
    ip http server
    no ip http secure-server
    ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
    ip radius source-interface BVI1
    logging history size 200
    no cdp run
    radius-server attribute 32 include-in-access-req format %h
    radius-server host 10.10.1.2 auth-port 1645 acct-port 1646 key 7 13011E13060D0A3E
    radius-server vsa send accounting
    bridge 1 route ip
    and the logs
    *Mar  1 00:00:06.207: %SOAP_FIPS-2-SELF_TEST_IOS_SUCCESS: IOS crypto FIPS self test passed
    *Mar  1 00:00:07.035: %SOAP_FIPS-2-SELF_TEST_RAD_SUCCESS: RADIO crypto FIPS self test passed on interface Dot11Radio 0
    *Mar  1 00:00:07.543: %SOAP_FIPS-2-SELF_TEST_RAD_SUCCESS: RADIO crypto FIPS self test passed on interface Dot11Radio 1
    *Mar  1 02:00:09.599 +0200: %SYS-6-CLOCKUPDATE: System clock has been updated from 00:00:09 UTC Fri Mar 1 2002 to 02:00:09 +0200 Fri Mar 1 2002, configured from console by console.
    *Mar  1 02:00:09.755 +0200: %LINK-3-UPDOWN: Interface GigabitEthernet0, changed state to up
    *Mar  1 02:00:09.763 +0200: %SYS-5-CONFIG_I: Configured from memory by console
    *Mar  1 02:00:09.767 +0200: %SYS-5-RESTART: System restarted --
    Cisco IOS Software, C1250 Software (C1250-K9W7-M), Version 12.4(10b)JDA3, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2009 by Cisco Systems, Inc.
    Compiled Sun 07-Jun-09 03:50 by prod_rel_team
    *Mar  1 02:00:09.767 +0200: %SNMP-5-COLDSTART: SNMP agent on host ap is undergoing a cold start
    *Mar  1 20:39:11.027 +0200: %SSH-5-ENABLED: SSH 1.99 has been enabled
    *Mar  1 20:39:11.027 +0200: %LINEPROTO-5-UPDOWN: Line protocol on Interface BVI1, changed state to up
    *Mar  1 20:39:11.027 +0200: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to up
    *Mar  1 20:39:11.531 +0200: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to reset
    *Mar  1 20:39:11.531 +0200: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Mar  1 20:39:13.055 +0200: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to down
    *Mar  1 20:39:13.055 +0200: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Mar  1 20:39:14.311 +0200: %CDP_PD-4-POWER_OK: Full power - AC_ADAPTOR inline power source
    *Mar  1 20:39:17.919 +0200: %DOT11-6-DFS_SCAN_START: DFS: Scanning frequency 5280 MHz for 60 seconds.
    *Mar  1 20:39:17.919 +0200: %DOT11-6-FREQ_USED: Interface Dot11Radio1, frequency 5280 selected
    *Mar  1 20:39:17.919 +0200: %DOT11-4-FREQ_CHANGED: Interface Dot11Radio1, channel or channel width changed: 40Mhz above not allowed on channel
    *Mar  1 20:39:17.923 +0200: %LINK-3-UPDOWN: Interface Dot11Radio1, changed state to up
    *Mar  1 20:39:17.931 +0200: %LINK-3-UPDOWN: Interface Dot11Radio0, changed state to up
    Apr  6 12:05:00.537 +0200: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to up
    Apr  6 12:05:00.537 +0200: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    Apr  6 12:05:00.709 +0200: %DHCP-6-ADDRESS_ASSIGN: Interface BVI1 assigned DHCP address 10.10.1.243, mask 255.255.255.0, hostname ap
    Apr  6 12:05:32.729 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station PC186 5894.6b5d.6c00 Associated KEY_MGMT[WPAv2]
    Apr  6 12:05:34.325 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.3b1f Associated KEY_MGMT[WPAv2]
    Apr  6 12:05:34.481 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.305d Associated KEY_MGMT[WPAv2]
    Apr  6 12:05:35.117 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   0025.9cde.155a Associated KEY_MGMT[WPAv2]
    Apr  6 12:05:45.493 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  687f.74fb.2fe0 Associated KEY_MGMT[WPAv2]
    Apr  6 12:05:59.545 +0200: %DOT11-6-DFS_SCAN_COMPLETE: DFS scan complete on frequency 5280 MHz
    Apr  6 12:06:06.561 +0200: %DOT11-6-ASSOC: Interface Dot11Radio1, Station  0025.9cf8.9149 Associated KEY_MGMT[WPAv2]
    Apr  6 12:06:56.471 +0200: %DOT11-6-ASSOC: Interface Dot11Radio1, Station   0025.9cde.0fc5 Associated KEY_MGMT[WPAv2]
    Apr  6 12:08:11.008 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0025.9cde.155a Reason: Previous authentication no longer valid
    Apr  6 12:08:11.016 +0200: %DOT11-4-MAXRETRIES: Packet to client 0025.9cde.155a reached max retries, removing the client
    Apr  6 12:08:14.124 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   0025.9cde.155a Associated KEY_MGMT[WPAv2]
    Apr  6 12:08:17.608 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0025.9cde.155a Reason: Previous authentication no longer valid
    Apr  6 12:08:48.950 +0200: %DOT11-7-AUTH_FAILED: Station 0025.9cde.155a Authentication failed
    Apr  6 12:08:48.950 +0200: %DOT11-4-MAXRETRIES: Packet to client 0025.9cde.155a reached max retries, removing the client
    Apr  6 12:09:12.978 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   0025.9cde.155a Associated KEY_MGMT[WPAv2]
    Apr  6 12:25:35.510 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.305d Reason: Sending station has left the BSS
    Apr  6 12:25:35.530 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.305d Associated KEY_MGMT[WPAv2-CP]
    Apr  6 12:35:32.229 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.3b1f Reason: Sending station has left the BSS
    Apr  6 12:35:32.245 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.3b1f Associated KEY_MGMT[WPAv2-CP]
    Apr  6 12:37:27.996 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.3b1f Reason: Sending station has left the BSS
    Apr  6 12:37:28.016 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.3b1f Associated KEY_MGMT[WPAv2-CP]
    Apr  6 12:54:07.729 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.2fe0 Reason: Previous authentication no longer valid
    Apr  6 12:54:09.457 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  687f.74fb.2fe0 Associated KEY_MGMT[WPAv2]
    Apr  6 12:54:36.236 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.2fe0 Reason: Previous authentication no longer valid
    Apr  6 10:54:56.515: Client 687f.74fb.2fe0 failed: reached maximum retries
    Apr  6 12:55:37.141 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  687f.74fb.2fe0 Associated KEY_MGMT[WPAv2]
    Apr  6 13:30:07.002 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 5894.6b5d.6c00 Reason: Sending station has left the BSS
    Apr  6 13:30:17.442 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.3b1f Reason: Sending station has left the BSS
    Apr  6 13:30:17.802 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.3b1f Associated KEY_MGMT[WPAv2-CP]
    Apr  6 13:34:59.087 +0200: %DOT11-4-MAXRETRIES: Packet to client 687f.74fb.3b1f reached max retries, removing the client
    Apr  6 13:34:59.087 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.3b1f Reason: Previous authentication no longer valid
    Apr  6 13:35:02.743 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.3b1f Associated KEY_MGMT[WPAv2]
    Apr  6 13:35:23.451 +0200: %DOT11-4-MAXRETRIES: Packet to client 687f.74fb.3b1f reached max retries, removing the client
    Apr  6 13:35:23.455 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.3b1f Reason: Previous authentication no longer valid
    Apr  6 13:35:26.743 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.3b1f Associated KEY_MGMT[WPAv2]
    Apr  6 13:36:40.768 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.3b1f Reason: Sending station has left the BSS
    Apr  6 13:38:59.004 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.3b1f Associated KEY_MGMT[WPAv2]
    Apr  6 13:40:56.655 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.3b1f Reason: Sending station has left the BSS
    Apr  6 13:40:56.703 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.3b1f Associated KEY_MGMT[WPAv2-CP]
    Apr  6 13:56:42.322 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 0025.9cf8.9149 Reason: Previous authentication no longer valid
    Apr  6 13:56:45.490 +0200: %DOT11-6-ASSOC: Interface Dot11Radio1, Station  0025.9cf8.9149 Associated KEY_MGMT[WPAv2]
    Apr  6 13:56:49.302 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 0025.9cf8.9149 Reason: Previous authentication no longer valid
    Apr  6 11:57:11.623: Client 0025.9cf8.9149 failed: reached maximum retries
    Apr  6 14:12:43.510 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.305d Reason: Sending station has left the BSS
    Apr  6 14:12:43.526 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.305d Associated KEY_MGMT[WPAv2-CP]
    Apr  6 14:49:12.472 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.305d Reason: Previous authentication no longer valid
    Apr  6 14:49:15.628 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.305d Associated KEY_MGMT[WPAv2]
    Apr  6 14:49:21.672 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.305d Reason: Previous authentication no longer valid
    Apr  6 14:49:53.282 +0200: %DOT11-7-AUTH_FAILED: Station 687f.74fb.305d Authentication failed
    Apr  6 14:49:53.282 +0200: %DOT11-4-MAXRETRIES: Packet to client 687f.74fb.305d reached max retries, removing the client
    Apr  6 14:52:04.097 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station PC186 5894.6b5d.6c00 Associated KEY_MGMT[WPAv2]
    Apr  6 15:14:29.682 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0025.9cde.155a Reason: Previous authentication no longer valid
    Apr  6 15:15:03.124 +0200: %DOT11-7-AUTH_FAILED: Station 0025.9cde.155a Authentication failed
    Apr  6 15:15:03.124 +0200: %DOT11-4-MAXRETRIES: Packet to client 0025.9cde.155a reached max retries, removing the client
    Apr  6 15:21:02.660 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.3b1f Reason: Previous authentication no longer valid
    Apr  6 15:21:02.664 +0200: %DOT11-4-MAXRETRIES: Packet to client 687f.74fb.3b1f reached max retries, removing the client
    Apr  6 15:21:05.780 +0200: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   687f.74fb.3b1f Associated KEY_MGMT[WPAv2]
    Apr  6 15:21:09.808 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 687f.74fb.3b1f Reason: Previous authentication no longer valid
    Apr  6 15:21:41.058 +0200: %DOT11-7-AUTH_FAILED: Station 687f.74fb.3b1f Authentication failed
    Apr  6 15:21:41.058 +0200: %DOT11-4-MAXRETRIES: Packet to client 687f.74fb.3b1f reached max retries, removing the client
    Apr  6 15:24:36.911 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 0025.9cde.0fc5 Reason: Previous authentication no longer valid
    Apr  6 15:24:41.435 +0200: %DOT11-7-AUTH_FAILED: Station 0025.9cde.0fc5 Authentication failed
    Apr  6 15:24:45.131 +0200: %DOT11-6-ASSOC: Interface Dot11Radio1, Station   0025.9cde.0fc5 Associated KEY_MGMT[WPAv2]
    Apr  6 15:24:54.127 +0200: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 0025.9cde.0fc5 Reason: Previous authentication no longer valid
    Apr  6 15:25:27.623 +0200: %DOT11-7-AUTH_FAILED: Station 0025.9cde.0fc5 Authentication failed
    Apr  6 15:25:27.623 +0200: %DOT11-4-MAXRETRIES: Packet to client 0025.9cde.0fc5 reached max retries, removing the client

    i found something about how to reach the maximum N speed
    Factors that Affect 802.11n Throughput
    There are circumstances where 802.11n devices cannot operate at their  maximum capable data rates. There are various reasons why this occurs.  This is the list of factors that affect 802.11n throughput:
    When 802.11n clients operate in a mixed environment with 802.11a or  802.11 b/g clients, 802.11n provides a protection mechanism to  interoperate with 802.11a or 802.11 b/g clients. This introduces an  overhead and reduces the throughput of 802.11n devices. Maximum  throughput is achieved in Greenfield mode where only 802.11n clients exist.
    Factors such as Channel width, Guard Interval and Reduced IFS (RIFS) play a major role in the bandwidth. Table 1 and Table 2 show how these factors affect the bandwidth.
    Clients ability to send a Block Ack instead of individual frame acknowledgements.
    MCS Index configured on the WLC.
    Proximity to AP—Clients closer to the AP experience higher data  rates. As clients move farther away from the AP, signal strength  reduces. As a result, data rate decreases steadily.
    RF environment—Amount of noise and interference in the environment.  The less the noise and interference, the greater the bandwidth.
    Encryption/ Decryption—Encryption in general reduces the throughput  due to the overhead involved in the data encryption/decryption process.  However, advanced encryption standards, such as AES, can provide better  throughput when compared to other encryption standards, such as TKIP and  WEP.
    Wired Network Infrastructure—Bandwidth of the wired infrastructure  determines the speed of the traffic to and from the wired network to the  wireless clients.
    If using an AP1250, change the AP to H-REAP mode for a 5-10% boost.
    If using an AP1140, keep the AP in local mode and enable TCP MSS on the controller. Use the config ap tcp-adjust-mss enable all 1363 command in order to enable it.
    Disable RRM scanning to prevent any throughput drops when going off channel. This can yield a 1-3% improvement.
    Disable RLDP to ensure the AP does not attempt to connect to rogue devices during testing.
    Use a Wireless Controller 5508 as the data plane is superior to the 4404-series.
    My questions are:
    1. How i can i put the access point to operate only in N mode (because all my clients are N)
    2.The guard interval can be modify ?
    3. How to put my AP in H-REAP (can i do this without WLC?)
    4. How to disable RRM
    5.How to disable RLDP.
    Thank you.

  • PS3 associate with UC520W Wifi

    Recently I come this weird error when PS3 connect to UC520W Wifi.
    PS3 version 2.53
    UC520W IOS 12.4(22)T
    Does anyone know what causing this and how can I solve it ?
    000193: Dec 22 23:14:23.151: %DOT11-7-AUTH_FAILED: Station 00XX.XXXX.XXXX Authentication failed
    000194: Dec 22 23:14:24.835: %DOT11-6-ASSOC: Interface Dot11Radio0/5/0, Station 00XX.XXXX.XXXX Associated SSID[MYSSID] AUTH_TYPE[OPEN] KEY_MGMT[WPAv2 PSK]
    000195: Dec 22 23:14:34.659: %IP_VFR-3-SYSTEM_ERROR: BVI1: IP VFR System failure - Unable to create fragment chain
    000196: Dec 22 23:14:34.659: %SYS-2-BADSHARE: Bad refcount in datagram_done, ptr=853CDAD0, count=0, -Traceback= 0x80F1D668 0x80205388 0x81D03BE8 0x81D04A40 0x81D05608 0x81D06EA8 0x813638F4 0x80B5F20C 0x80B5F36C 0x802750A0 0x8091BB44 0x8091F37C 0x80906F70 0x809D6C58 0x801AC224 0x80026588
    000197: Dec 22 23:14:34.659: %SYS-2-BADSHARE: Bad refcount in datagram_done, ptr=853D7A48, count=0, -Traceback= 0x80F1D668 0x80205388 0x8026A110 0x80B5F1D4 0x80B5F36C 0x802750A0 0x8091BB44 0x8091F37C 0x80906F70 0x809D6C58 0x801AC224 0x80026588 0x80026588 0x801AC2E4 0x801ADC20 0x801ADECC
    000198: Dec 22 23:14:34.759: %IP_VFR-3-SYSTEM_ERROR: BVI1: IP VFR System failure - Unable to create fragment chain
    000199: Dec 22 23:14:34.759: %SYS-2-BADSHARE: Bad refcount in datagram_done, ptr=853DB33C, count=0, -Traceback= 0x80F1D668 0x80205388 0x81D03BE8 0x81D04A40 0x81D05608 0x81D06EA8 0x813638F4 0x80B5F20C 0x80B5F36C 0x802750A0 0x8091BB44 0x8091F37C 0x80906F70 0x809D6C58 0x801AC224 0x80026588
    000200: Dec 22 23:14:34.759: %SYS-2-BADSHARE: Bad refcount in datagram_done, ptr=853D1790, count=0, -Traceback= 0x80F1D668 0x80205388 0x8026A110 0x80B5F1D4 0x80B5F36C 0x802750A0 0x8091BB44 0x8091F37C 0x80906F70 0x809D6C58 0x801AC224 0x80026588 0x80026588 0x801AC2E4 0x801ADE28 0x801ADDB8
    000201: Dec 22 23:14:34.963: %IP_VFR-3-SYSTEM_ERROR: BVI1: IP VFR System failure - Unable to create fragment chain
    000202: Dec 22 23:14:34.963: %SYS-2-BADSHARE: Bad refcount in datagram_done, ptr=853C4E54, count=0, -Traceback= 0x80F1D668 0x80205388 0x81D03BE8 0x81D04A40 0x81D05608 0x81D06EA8 0x813638F4 0x80B5F20C 0x80B5F36C 0x802750A0 0x8091BB44 0x8091F37C 0x80906F70 0x809D6C58 0x801AC224 0x80026588
    000203: Dec 22 23:14:34.963: %SYS-2-BADSHARE: Bad refcount in datagram_done, ptr=853C7BE4, count=0, -Traceback= 0x80F1D668 0x80205388 0x8026A110 0x80B5F1D4 0x80B5F36C 0x802750A0 0x8091BB44 0x8091F37C 0x80906F70 0x809D6C58 0x801AC224 0x80026588 0x80026588 0x801AC2E4 0x8230B09C
    000204: Dec 22 23:14:35.367: %IP_VFR-3-SYSTEM_ERROR: BVI1: IP VFR System failure - Unable to create fragment chain
    000205: Dec 22 23:14:35.367: %SYS-2-BADSHARE: Bad refcount in datagram_done, ptr=853C744C, count=0, -Traceback= 0x80F1D668 0x80205388 0x81D03BE8 0x81D04A40 0x81D05608 0x81D06EA8 0x813638F4 0x80B5F20C 0x80B5F36C 0x802750A0 0x8091BB44 0x8091F37C 0x80906F70 0x809D6C58 0x801AC224 0x80026588
    000206: Dec 22 23:14:35.367: %SYS-2-BADSHARE: Bad refcount in datagram_done, ptr=853C59B8, count=0, -Traceback= 0x80F1D668 0x80205388 0x8026A110 0x80B5F1D4 0x80B5F36C 0x802750A0 0x8091BB44 0x8091F37C 0x80906F70 0x809D6C58 0x801AC224 0x80026588 0x80026588 0x801AC2E4 0x801AFB44
    000222: Dec 22 23:14:53.591: %DOT11-6-DISASSOC: Interface Dot11Radio0/5/0, Deauthenticating Station 00XX.XXXX.XXXX Reason: Sending station has left the BSS SSID[MYSSID]

    Use nothing for encryption with mac filter and see if you can associate. Then move up to static wep. The PS probably doesn't respond quick enough for your controller. You might increase EAP timeouts from the cli.

  • WDS & PEAP

    Hi,
    I am using Cisco ACS and Cisco AP AIR-AP1231G-A-K9. They are configured so that client can be authenticated using PEAP. However, as soon as join the AP to WDS. It stops working and no clients can now be authenticated by PEAP.
    000066: *Mar 1 00:52:26.875 UTC: %WLCCP_AP-6-INFRA: WLCCP Infrastructure Authenticated
    000067: *Mar 1 00:52:34.468 UTC: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0013.ce55.7876 Reason: Previous authentication no longer valid
    000068: *Mar 1 00:52:35.077 UTC: %DOT11-7-AUTH_FAILED: Station 0013.ce55.7876 Authentication failed
    Any suggestions? Thanks.
    Andrew

    Hi Andrew,
    This certainly looks like a problem between the WDS and the ACS Server. Have a look at the following;
    Wireless Domain Services Configuration
    In order to use WDS, you must designate one AP or the WLSM as the WDS. A WDS AP must use a WDS user name and password to establish a relationship with an authentication server. The authentication server can be either an external RADIUS server or the Local RADIUS Server feature in the WDS AP. The WLSM must have a relationship with the authentication server, even though WLSM does not need to authenticate to the server.
    Other APs, called infrastructure APs, communicate with the WDS. Before registration occurs, the infrastructure APs must authenticate themselves to the WDS. An infrastructure server group on the WDS defines this infrastructure authentication.
    One or more client server groups on the WDS define client authentication.
    When a client attempts to associate to an infrastructure AP, the infrastructure AP passes the credentials of the user to the WDS for validation. If the WDS sees the credentials for the first time, WDS turns to the authentication server to validate the credentials. The WDS then caches the credentials, in order to eliminate the need to return to the authentication server when the same user attempts authentication again.
    From this doc;
    http://www.cisco.com/en/US/products/hw/wireless/ps4570/products_configuration_example09186a00801c951f.shtml
    Hope this helps!
    Rob

  • Clients disconnected from AP, Sending station has left the BSS

    Issue Experienced
    Clients randomly disconnects average time before disconnect is 15 minutes
    Current AP running config
    Current configuration : 2449 bytes
    ! Last configuration change at 16:49:26 UTC Mon Feb 24 2014
    version 15.2
    no service pad
    service timestamps debug datetime msec
    service timestamps log datetime msec
    service password-encryption
    hostname BE-AP4
    logging rate-limit console 9
    enable secret 5 secret
    no aaa new-model
    no ip cef
    dot11 syslog
    dot11 vlan-name Manufacturing vlan 15
    dot11 ssid BE-WAP1
       vlan 15
       authentication open
       authentication key-management wpa
       guest-mode
       wpa-psk ascii 7 password
    dot11 guest
    power inline negotiation injector override
    username admin privilege 15 password 7
    bridge irb
    interface Dot11Radio0
     no ip address
     no ip route-cache
     encryption mode ciphers tkip
     encryption vlan 15 mode ciphers tkip
     ssid BE-WAP1
     antenna gain 0
     antenna ab-antenna
     stbc
     speed  basic-1.0 basic-2.0 basic-5.5 basic-11.0 basic-6.0 basic-9.0 basic-12.0 basic-18.0 basic-24.0 basic-36.0 basic-48.0 basic-54.0 m0. m1. m2. m3. m4. m5. m6. m7. m8. m9. m10. m11. m12. m13. m14. m15. m16. m17. m18. m19. m20. m21. m22. m23.
     channel 2442
     station-role root
    interface Dot11Radio0.15
     encapsulation dot1Q 15 native
     no ip route-cache
     bridge-group 1
     bridge-group 1 subscriber-loop-control
     bridge-group 1 spanning-disabled
     bridge-group 1 block-unknown-source
     no bridge-group 1 source-learning
     no bridge-group 1 unicast-flooding
    interface Dot11Radio1
     no ip address
     no ip route-cache
     shutdown
     antenna gain 0
     peakdetect
     dfs band 3 block
     channel dfs
     station-role root
     bridge-group 1
     bridge-group 1 subscriber-loop-control
     bridge-group 1 spanning-disabled
     bridge-group 1 block-unknown-source
     no bridge-group 1 source-learning
     no bridge-group 1 unicast-flooding
    interface GigabitEthernet0
     no ip address
     no ip route-cache
     duplex auto
     speed auto
    interface GigabitEthernet0.15
     encapsulation dot1Q 15 native
     no ip route-cache
     bridge-group 1
     bridge-group 1 spanning-disabled
     no bridge-group 1 source-learning
    interface BVI1
     ip address 192.168.15.68 255.255.255.0
     no ip route-cache
    ip default-gateway 192.168.15.254
    ip forward-protocol nd
    ip http server
    no ip http secure-server
    ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
    Log Output
    *Feb 24 15:39:30.226: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b464 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:39:44.446: %DOT11-6-ROAMED: Station 0017.23a9.b464 Roamed to 544a.00e1.e5c0
    *Feb 24 15:39:44.446: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b464 Reason: Sending station has left the BSS
    *Feb 24 15:39:53.154: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b474 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:39:57.670: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b464 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:40:08.602: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230b.9bdf Associated KEY_MGMT[WPA PSK]
    *Feb 24 15:40:49.662: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230a.ee2e Associated KEY_MGMT[WPA PSK]
    *Feb 24 15:41:19.318: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230a.ee16 Associated KEY_MGMT[WPA PSK]
    *Feb 24 15:43:31.622: %SYS-5-CONFIG_I: Configured from http by  on 192.168.1.97
    *Feb 24 15:43:31.622: %SYS-5-CONFIG_I: Configured from http by  on 192.168.1.97
    *Feb 24 15:43:31.622: %SYS-5-CONFIG_I: Configured from http by  on 192.168.1.97
    *Feb 24 15:43:31.630: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230a.ee16 
    *Feb 24 15:43:31.630: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230a.ee2e 
    *Feb 24 15:43:31.630: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230b.9bdf 
    *Feb 24 15:43:31.630: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b464 
    *Feb 24 15:43:31.630: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b474 
    *Feb 24 15:43:31.630: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b461 
    *Feb 24 15:43:31.630: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b470 
    *Feb 24 15:43:31.630: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.c1e8 
    *Feb 24 15:43:31.630: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 843a.4b55.1136 
    *Feb 24 15:43:31.630: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 843a.4b5e.cd44 
    *Feb 24 15:43:31.630: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 843a.4b55.12ec 
    *Feb 24 15:43:31.642: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Feb 24 15:43:31.654: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Feb 24 15:43:32.642: %DOT11-4-DIVER2_USED: Interface Dot11Radio0, Mcs rates 16-23 disabled due to only two transmit or receive antennas enabled
    *Feb 24 15:43:32.654: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Feb 24 15:43:32.682: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Feb 24 15:43:32.690: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Feb 24 15:43:32.698: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Feb 24 15:43:33.726: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Feb 24 15:43:33.746: %DOT11-4-MAXRETRIES: Packet to client 843a.4b5e.cd44 reached max retries, removing the client
    *Feb 24 15:43:33.766: %DOT11-4-MAXRETRIES: Packet to client 843a.4b55.12ec reached max retries, removing the client
    *Feb 24 15:43:34.726: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Feb 24 15:43:36.210: %SYS-5-CONFIG_I: Configured from http by  on 192.168.1.97
    *Feb 24 15:44:09.450: %DOT11-6-ASSOC: Interface Dot11Radio0, Station BE-AP4 6c88.145d.0db8 Associated KEY_MGMT[WPA PSK]
    *Feb 24 15:45:27.522: %DOT11-6-ASSOC: Interface Dot11Radio0, Station BE-AP4 843a.4b5e.cd44 Associated KEY_MGMT[WPA PSK]
    *Feb 24 15:45:27.526: %DOT11-6-ASSOC: Interface Dot11Radio0, Station BE-AP4 843a.4b55.12ec Associated KEY_MGMT[WPA PSK]
    *Feb 24 15:45:27.890: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230b.9bdf Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:45:28.614: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230a.ee16 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:45:28.842: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230a.ee6b Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:45:28.850: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.c1e8 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:45:28.862: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b470 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:45:28.866: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b461 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:45:29.102: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b464 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:45:29.110: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b474 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:45:29.350: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230a.ee2e Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:47:17.174: %DOT11-7-AUTH_FAILED: Station cc3a.6194.ec3c Authentication failed
    *Feb 24 15:48:32.938: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 15:48:38.150: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 15:49:11.446: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 15:49:23.094: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 15:49:56.018: %DOT11-6-ASSOC: Interface Dot11Radio0, Station BE-AP4 843a.4b55.1136 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 15:50:44.850: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 15:50:52.198: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 15:50:58.106: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 15:51:44.738: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 15:51:50.150: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 15:51:58.738: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 15:55:27.622: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 843a.4b55.12ec Reason: Sending station has left the BSS
    *Feb 24 15:55:27.650: %DOT11-6-ASSOC: Interface Dot11Radio0, Station BE-AP4 843a.4b55.12ec Associated KEY_MGMT[WPA PSK]
    *Feb 24 16:01:57.442: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b470 Reason: Sending station has left the BSS
    *Feb 24 16:05:48.854: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b461 Reason: Sending station has left the BSS
    *Feb 24 16:06:28.310: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  f409.d8b0.313d Associated KEY_MGMT[WPA PSK]
    *Feb 24 16:06:50.414: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b464 Reason: Sending station has left the BSS
    *Feb 24 16:06:56.102: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b474 Reason: Sending station has left the BSS
    *Feb 24 16:08:13.282: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b461 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:08:13.914: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b474 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:08:15.870: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b464 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:08:28.066: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.c1e8 Reason: Sending station has left the BSS
    *Feb 24 16:08:34.610: %DOT11-6-ROAMED: Station 0017.230b.9bdf Roamed to 544a.00e1.ef70
    *Feb 24 16:08:34.610: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230b.9bdf Reason: Sending station has left the BSS
    *Feb 24 16:08:34.622: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b461 Reason: Sending station has left the BSS
    *Feb 24 16:08:34.934: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b474 Reason: Sending station has left the BSS
    *Feb 24 16:08:35.846: %DOT11-6-ROAMED: Station 0017.230a.ee6b Roamed to 00e1.6d4f.6090
    *Feb 24 16:08:35.846: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230a.ee6b Reason: Sending station has left the BSS
    *Feb 24 16:08:36.394: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b464 Reason: Sending station has left the BSS
    *Feb 24 16:08:36.398: %DOT11-4-MAXRETRIES: Packet to client 0017.23a9.b464 reached max retries, removing the client
    *Feb 24 16:08:37.426: %DOT11-6-ROAMED: Station 0017.230a.ee2e Roamed to 00e1.6d4f.6090
    *Feb 24 16:08:37.426: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230a.ee2e Reason: Sending station has left the BSS
    *Feb 24 16:08:57.994: %DOT11-6-ROAMED: Station 0017.230a.ee16 Roamed to 544a.00e1.e5c0
    *Feb 24 16:08:57.994: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230a.ee16 Reason: Sending station has left the BSS
    *Feb 24 16:10:00.562: %DOT11-7-AUTH_FAILED: Station cc3a.6194.ec3c Authentication failed
    *Feb 24 16:10:00.562: %DOT11-4-MAXRETRIES: Packet to client cc3a.6194.ec3c reached max retries, removing the client
    *Feb 24 16:12:41.694: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station f409.d8b0.313d Reason: Sending station has left the BSS
    *Feb 24 16:13:06.994: %DOT11-7-AUTH_FAILED: Station cc3a.6194.ec3c Authentication failed
    *Feb 24 16:13:47.870: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  f409.d8b0.313d Associated KEY_MGMT[WPA PSK]
    *Feb 24 16:16:24.822: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 16:16:32.262: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 16:16:46.838: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 16:16:56.050: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 16:17:16.262: %DOT11-7-AUTH_FAILED: Station 0017.2313.c7bc Authentication failed
    *Feb 24 16:20:37.806: %DOT11-4-MAXRETRIES: Packet to client f409.d8b0.313d reached max retries, removing the client
    *Feb 24 16:20:37.806: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station f409.d8b0.313d Reason: Previous authentication no longer valid
    *Feb 24 16:20:37.810: %DOT11-4-MAXRETRIES: Packet to client f409.d8b0.313d reached max retries, removing the client
    *Feb 24 16:20:39.142: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  f409.d8b0.313d Associated KEY_MGMT[WPA PSK]
    *Feb 24 16:21:40.406: %DOT11-6-ROAMED: Station f409.d8b0.313d Roamed to 544a.00e1.ef70
    *Feb 24 16:21:40.406: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station f409.d8b0.313d Reason: Sending station has left the BSS
    *Feb 24 16:25:45.006: %DOT11-7-AUTH_FAILED: Station f409.d8b0.313d Authentication failed
    *Feb 24 16:25:45.010: %DOT11-4-MAXRETRIES: Packet to client f409.d8b0.313d reached max retries, removing the client
    *Feb 24 16:31:32.954: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b474 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:31:33.654: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.c1e8 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:31:36.866: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230a.ee6b Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:31:38.538: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230a.ee2e Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:31:38.666: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b470 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:31:40.526: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230a.ee16 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:31:42.414: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230b.9bdf Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:31:51.362: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b461 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:31:53.554: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b464 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:44:45.258: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  f409.d8b0.313d Associated KEY_MGMT[WPA PSK]
    *Feb 24 16:47:39.350: %DOT11-6-ROAMED: Station 6c88.145d.0db8 Roamed to 544a.00e1.ef70
    *Feb 24 16:47:39.350: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 6c88.145d.0db8 Reason: Sending station has left the BSS
    *Feb 24 16:49:26.394: %SYS-5-CONFIG_I: Configured from http by  on 192.168.1.97
    *Feb 24 16:49:26.394: %SYS-5-CONFIG_I: Configured from http by  on 192.168.1.97
    *Feb 24 16:49:26.398: %SYS-5-CONFIG_I: Configured from http by  on 192.168.1.97
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station f409.d8b0.313d 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b464 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b461 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230b.9bdf 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230a.ee16 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b470 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230a.ee2e 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230a.ee6b 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.c1e8 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b474 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 843a.4b55.12ec 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 843a.4b55.1136 
    *Feb 24 16:49:26.398: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 843a.4b5e.cd44 
    *Feb 24 16:49:26.410: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to down
    *Feb 24 16:49:26.422: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to reset
    *Feb 24 16:49:27.414: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to down
    *Feb 24 16:49:27.442: %LINK-6-UPDOWN: Interface Dot11Radio0, changed state to up
    *Feb 24 16:49:27.450: %DOT11-4-MAXRETRIES: Packet to client 843a.4b55.12ec reached max retries, removing the client
    *Feb 24 16:49:27.502: %DOT11-4-MAXRETRIES: Packet to client 0017.23a9.b464 reached max retries, removing the client
    *Feb 24 16:49:27.510: %DOT11-4-MAXRETRIES: Packet to client 0017.23a9.b470 reached max retries, removing the client
    *Feb 24 16:49:27.522: %DOT11-4-MAXRETRIES: Packet to client 0017.23a9.c1e8 reached max retries, removing the client
    *Feb 24 16:49:27.530: %DOT11-4-MAXRETRIES: Packet to client 0017.23a9.b461 reached max retries, removing the client
    *Feb 24 16:49:27.530: %DOT11-4-MAXRETRIES: Packet to client 0017.23a9.b474 reached max retries, removing the client
    *Feb 24 16:49:27.594: %DOT11-4-MAXRETRIES: Packet to client 0017.230a.ee2e reached max retries, removing the client
    *Feb 24 16:49:28.134: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230b.9bdf Associated KEY_MGMT[WPA PSK]
    *Feb 24 16:49:28.442: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0, changed state to up
    *Feb 24 16:49:29.806: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230a.ee2e Associated KEY_MGMT[WPA PSK]
    *Feb 24 16:49:35.038: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  f409.d8b0.313d Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:49:37.294: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230a.ee16 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:49:37.418: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.230a.ee6b Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:49:41.622: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.c1e8 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:49:41.642: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b474 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:49:41.726: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b461 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:49:42.522: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b470 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:49:42.886: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b464 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 16:49:57.310: %DOT11-6-ASSOC: Interface Dot11Radio0, Station BE-AP4 6c88.145d.0db8 Associated KEY_MGMT[WPA PSK]
    *Feb 24 16:50:02.818: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station f409.d8b0.313d Reason: Sending station has left the BSS
    *Feb 24 16:50:06.014: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  f409.d8b0.313d Associated KEY_MGMT[WPA PSK]
    *Feb 24 16:52:37.670: %DOT11-7-AUTH_FAILED: Station 9018.7cb5.01f5 Authentication failed
    *Feb 24 16:57:13.026: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b474 Reason: Sending station has left the BSS
    *Feb 24 16:57:13.034: %DOT11-4-MAXRETRIES: Packet to client 0017.23a9.b474 reached max retries, removing the client
    *Feb 24 16:58:37.262: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b464 Reason: Sending station has left the BSS
    *Feb 24 16:58:43.302: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b461 Reason: Sending station has left the BSS
    *Feb 24 16:58:46.710: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.c1e8 Reason: Sending station has left the BSS
    *Feb 24 16:58:48.338: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b470 Reason: Sending station has left the BSS
    *Feb 24 17:02:27.078: %DOT11-7-AUTH_FAILED: Station 9018.7cb5.01f5 Authentication failed
    *Feb 24 17:04:45.486: %DOT11-6-ASSOC: Interface Dot11Radio0, Station BE-AP4 843a.4b55.12ec Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 17:04:46.514: %DOT11-7-AUTH_FAILED: Station 9018.7cb5.01f5 Authentication failed
    *Feb 24 17:19:47.858: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 6c88.145d.0db8 Reason: Sending station has left the BSS
    *Feb 24 17:19:59.694: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.c1e8 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 17:25:36.682: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b470 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 17:26:40.910: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b470 Reason: Sending station has left the BSS
    *Feb 24 17:27:01.002: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b470 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 17:27:27.390: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b470 Reason: Sending station has left the BSS
    *Feb 24 17:27:47.626: %DOT11-4-MAXRETRIES: Packet to client f409.d8b0.313d reached max retries, removing the client
    *Feb 24 17:27:47.626: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station f409.d8b0.313d Reason: Previous authentication no longer valid
    *Feb 24 17:27:47.630: %DOT11-4-MAXRETRIES: Packet to client f409.d8b0.313d reached max retries, removing the client
    *Feb 24 17:31:49.458: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.c1e8 Reason: Sending station has left the BSS
    *Feb 24 17:32:53.530: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 843a.4b55.12ec Reason: Sending station has left the BSS
    *Feb 24 17:40:59.858: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.c1e8 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 18:08:22.578: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.c1e8 Reason: Sending station has left the BSS
    *Feb 24 18:36:31.482: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230b.9bdf Reason: Previous authentication no longer valid
    *Feb 24 18:57:16.774: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b470 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 18:57:25.642: %DOT11-7-AUTH_FAILED: Station f409.d8b0.313d Authentication failed
    *Feb 24 18:57:38.958: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  f409.d8b0.313d Associated KEY_MGMT[WPA PSK]
    *Feb 24 18:59:28.442: %DOT11-6-ASSOC: Interface Dot11Radio0, Station BE-AP4 6c88.145d.0db8 Associated KEY_MGMT[WPA PSK]
    *Feb 24 19:23:40.450: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b470 Reason: Sending station has left the BSS
    *Feb 24 19:40:30.433: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 6c88.145d.0db8 Reason: Sending station has left the BSS
    *Feb 24 19:40:30.449: %DOT11-6-ASSOC: Interface Dot11Radio0, Station BE-AP4 6c88.145d.0db8 Associated KEY_MGMT[WPA PSK]
    *Feb 24 19:45:30.009: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 6c88.145d.0db8 Reason: Sending station has left the BSS
    *Feb 24 19:45:38.109: %DOT11-6-ASSOC: Interface Dot11Radio0, Station BE-AP4 6c88.145d.0db8 Associated KEY_MGMT[WPA PSK]
    *Feb 24 19:48:41.953: %DOT11-4-MAXRETRIES: Packet to client 6c88.145d.0db8 reached max retries, removing the client
    *Feb 24 19:48:41.953: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 6c88.145d.0db8 Reason: Previous authentication no longer valid
    *Feb 24 19:48:42.029: %DOT11-4-MAXRETRIES: Packet to client 6c88.145d.0db8 reached max retries, removing the client
    *Feb 24 19:48:45.305: %DOT11-6-ASSOC: Interface Dot11Radio0, Station BE-AP4 6c88.145d.0db8 Associated KEY_MGMT[WPA PSK]
    *Feb 24 19:52:20.877: %CDP_PD-4-POWER_OK: Full power - NEGOTIATED inline power source
    *Feb 24 19:52:21.877: %CDP_PD-4-POWER_OK: Full power - NEGOTIATED inline power source
    *Feb 24 19:52:30.957: %CDP_PD-4-POWER_OK: Full power - NEGOTIATED inline power source
    *Feb 24 19:52:31.957: %CDP_PD-4-POWER_OK: Full power - NEGOTIATED inline power source
    *Feb 24 19:57:43.173: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 6c88.145d.0db8 Reason: Sending station has left the BSS
    *Feb 24 20:00:09.885: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b433 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:01:08.445: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b465 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:01:25.453: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b453 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:01:47.549: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b449 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:02:07.469: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b456 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:02:23.713: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b5da Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:02:45.761: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b466 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:02:53.133: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b449 Reason: Sending station has left the BSS
    *Feb 24 20:02:57.913: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b456 Reason: Sending station has left the BSS
    *Feb 24 20:03:14.521: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b5db Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:03:24.673: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b466 Reason: Sending station has left the BSS
    *Feb 24 20:03:29.653: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b453 Reason: Sending station has left the BSS
    *Feb 24 20:03:39.125: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b458 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:03:49.093: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b5da Reason: Sending station has left the BSS
    *Feb 24 20:03:51.113: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b5d7 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:03:52.549: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b5da Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:03:54.905: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b433 Reason: Sending station has left the BSS
    *Feb 24 20:04:12.565: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b458 Reason: Sending station has left the BSS
    *Feb 24 20:04:19.213: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b5db Reason: Sending station has left the BSS
    *Feb 24 20:04:22.865: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b465 Reason: Sending station has left the BSS
    *Feb 24 20:04:24.965: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b465 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:04:26.341: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b433 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:04:27.089: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b5d7 Reason: Sending station has left the BSS
    *Feb 24 20:05:29.437: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b5d7 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:06:46.761: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b470 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:06:50.233: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b474 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:07:03.725: %DOT11-6-ASSOC: Interface Dot11Radio0, Station CBP BE 0017.23a9.b461 Reassociated KEY_MGMT[WPA PSK]
    *Feb 24 20:07:52.513: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230a.ee16 Reason: Previous authentication no longer valid
    *Feb 24 20:08:09.513: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.230a.ee6b Reason: Previous authentication no longer valid
    *Feb 24 20:08:40.685: %DOT11-6-ROAMED: Station f409.d8b0.313d Roamed to 2c3e.cf54.f590
    *Feb 24 20:08:40.685: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station f409.d8b0.313d Reason: Sending station has left the BSS
    *Feb 24 20:09:40.053: %DOT11-7-AUTH_FAILED: Station f409.d8b0.313d Authentication failed
    *Feb 24 20:31:25.833: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b433 Reason: Sending station has left the BSS
    *Feb 24 20:31:29.373: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b5d7 Reason: Sending station has left the BSS
    *Feb 24 20:31:52.053: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b5da Reason: Sending station has left the BSS
    *Feb 24 20:32:29.245: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b465 Reason: Sending station has left the BSS
    *Feb 24 20:33:46.221: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b470 Reason: Sending station has left the BSS
    *Feb 24 20:33:49.717: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b474 Reason: Sending station has left the BSS
    *Feb 24 20:34:03.213: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0017.23a9.b461 Reason: Sending station has left the BSS

    Hi
    if you want to get any higher data rates (802.11n) you have to configure WPA2/AES & not TKIP
    dot11 ssid BE-WAP1
       vlan 15
       authentication open
       authentication key-management wpa version 2
       guest-mode
       wpa-psk ascii 7 password
    interface Dot11Radio0
     encryption vlan 15 mode ciphers aes-ccm
     no encryption vlan 15 mode ciphers tkip
     ssid BE-WAP1
    Also enable 5GHz band as well. Then see if the problem occurs for both bands
    interface Dot11Radio1
     encryption vlan 15 mode ciphers aes-ccm
     ssid BE-WAP1
     channel width 40-above
     no shut
    interface Dot11Radio0.15
     encapsulation dot1Q 15 native
     bridge-group 1
    HTH
    Rasika
    **** Pls rate all useful responses ****

  • HWIC-AP-AG-A keep on disconnecting wireless clients sometime its ok but sometimes its not

    hi,
    i have a  HWIC-AP-AG-A running in 2801 router.
    RTR01(config-if)#do sho run int Dot11Radio0/1/0
    Building configuration...
    Current configuration : 367 bytes
    interface Dot11Radio0/1/0
    no ip address
    no dot11 extension aironet
    encryption vlan 30 mode ciphers tkip
    encryption vlan 40 mode ciphers tkip
    encryption vlan 10 mode ciphers tkip
    ssid GuestUsers
    ssid InternalUsers
    ssid SecureZone
    speed basic-6.0 9.0 12.0 18.0 24.0 36.0 48.0 54.0
    channel 2412
    station-role root
    no cdp enable
    end
    RTR01(config-if)#do sho run int Dot11Radio0/1/1
    Building configuration...
    Current configuration : 325 bytes
    interface Dot11Radio0/1/1
    no ip address
    encryption vlan 30 mode ciphers tkip
    encryption vlan 40 mode ciphers tkip
    encryption vlan 10 mode ciphers tkip
    ssid GuestUsers
    ssid InternalUsers
    ssid SecureZone
    speed basic-6.0 9.0 12.0 18.0 24.0 36.0 48.0 54.0
    station-role root
    no cdp enable
    there are days that the wireless signal is keep on disconnecting.. im no sure what is the problem or.. what can i do?
    n Interface FastEthernet0/3/0, changed state to up
    *Jan 12 11:00:25.511: %LINK-3-UPDOWN: Interface BVI30, changed state to down
    *Jan 12 11:00:25.511: %LINK-3-UPDOWN: Interface BVI40, changed state to down
    *Jan 12 11:00:26.535: %LINEPROTO-5-UPDOWN: Line protocol on Interface BVI30, changed state to down
    *Jan 12 11:00:26.535: %LINEPROTO-5-UPDOWN: Line protocol on Interface BVI40, changed state to down
    *Jan 12 11:00:27.679: %DSPRM-5-UPDOWN: DSP 1 in slot 0, changed state to up
    *Jan 12 11:00:28.091: %LINK-3-UPDOWN: Interface Foreign Exchange Office 0/0/0, changed state to up
    *Jan 12 11:00:28.503: %LINK-3-UPDOWN: Interface Foreign Exchange Office 0/0/1, changed state to up
    *Jan 12 11:00:28.735: %LINK-3-UPDOWN: Interface Foreign Exchange Station 0/2/1, changed state to up
    *Jan 12 11:00:28.843: %LINK-3-UPDOWN: Interface Foreign Exchange Station 0/2/0, changed state to up
    *Jan 12 11:00:31.563: %LINEPROTO-5-UPDOWN: Line protocol on Interface Tunnel1, changed state to up
    *Jan 12 11:00:32.290: %DHCP-6-ADDRESS_ASSIGN: Interface FastEthernet0/0 assigned DHCP address 222.164.193.47, mask 255.255.252.0, hostname marlonmalinao.homeip.net
    *Jan 12 11:00:33.582: %LINEPROTO-5-UPDOWN: Line protocol on Interface Tunnel100, changed state to up
    *Jan 12 11:00:42.381: %DUAL-5-NBRCHANGE: IP-EIGRP(0) 123: Neighbor 10.10.254.1 (Tunnel1) is up: new adjacency
    *Jan 12 11:00:44.773: %SSH-5-SSH2_SESSION: SSH2 Session request from 172.25.254.4 (tty = 0) using crypto cipher 'aes256-cbc', hmac 'hmac-sha1' Succeeded
    *Jan 12 11:00:56.652: %SSH-5-SSH2_USERAUTH: User 'mc.malinao' authentication for SSH2 Session from 172.25.254.4 (tty = 0) using crypto cipher 'aes256-cbc', hmac 'hmac-sha1' Succeeded
    *Jan 12 11:00:57.948: %DOT11-6-FREQ_USED: Interface Dot11Radio0/1/1, frequency 5320 selected
    *Jan 12 11:00:57.952: %LINK-3-UPDOWN: Interface Dot11Radio0/1/1, changed state to up
    *Jan 12 11:00:59.076: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0/1/1, changed state to up
    *Jan 12 11:01:00.172: %LINK-3-UPDOWN: Interface BVI30, changed state to up
    *Jan 12 11:01:01.171: %LINEPROTO-5-UPDOWN: Line protocol on Interface BVI30, changed state to up
    *Jan 12 11:01:05.499: %LINK-3-UPDOWN: Interface BVI40, changed state to up
    *Jan 12 11:01:06.499: %LINEPROTO-5-UPDOWN: Line protocol on Interface BVI40, changed state to up
    *Jan 12 11:01:13.202: %IPPHONE-6-REG_ALARM: 14: Name=SEP001E4AF3B6D4 Load= SCCP70.8-4-2S Last=UCM-closed-TCP
    *Jan 12 11:01:13.206: %IPPHONE-6-REGISTER: ephone-6:SEP001E4AF3B6D4 IP:172.25.254.61 Socket:1 DeviceType:Phone has registered.
    *Jan 12 11:01:25.401: %DOT11-6-ASSOC: Interface Dot11Radio0/1/1, Station   8c7b.9dde.e8f9 Associated SSID[InternalUsers] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    *Jan 12 11:01:37.236: %DOT11-6-ASSOC: Interface Dot11Radio0/1/1, Station MCMRTR01 0019.d2b8.3c68 Associated SSID[GuestUsers] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    *Jan 12 11:03:15.542: %DOT11-6-DISASSOC: Interface Dot11Radio0/1/1, Deauthenticating Station 0013.e8a2.a4c1 Reason: Sending station has left the BSS SSID[InternalUsers]
    *Jan 12 11:03:43.247: %LINK-3-UPDOWN: Interface Dot11Radio0/1/0, changed state to up
    *Jan 12 11:03:44.247: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio0/1/0, changed state to up
    *Jan 12 11:07:20.957: %DOT11-7-AUTH_FAILED: Station 0013.e8a2.a4c1 Authentication failed
    *Jan 12 11:07:32.720: %DOT11-6-ASSOC: Interface Dot11Radio0/1/1, Station MCMX61 0013.e8a2.a4c1 Associated SSID[GuestUsers] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    *Jan 12 11:08:16.023: %DOT11-6-DISASSOC: Interface Dot11Radio0/1/1, Deauthenticating Station 8c7b.9dde.e8f9 Reason: Previous authentication no longer valid SSID[InternalUsers]
    *Jan 12 11:08:16.343: %DOT11-6-ASSOC: Interface Dot11Radio0/1/1, Station   8c7b.9dde.e8f9 Associated SSID[InternalUsers] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    *Jan 12 11:09:21.208: %DOT11-4-MAXRETRIES: Packet to client 8c7b.9dde.e8f9 reached max retries, removing the client
    *Jan 12 11:09:21.208: %DOT11-6-DISASSOC: Interface Dot11Radio0/1/1, Deauthenticating Station 8c7b.9dde.e8f9 Reason: Previous authentication no longer valid SSID[InternalUsers]

    Your wireless clients will associate to the best AP interms of signal strenght and signal to noise etc.
    There is an LWAPP tunnel between the access point and the controller.
    At the controller there will be logical interfaces for the wireless LANS that are asssociated to specific VLANs on the wired network.
    It doesn't matter where you are in the building as a client as its the controller that puts the client data onto the wired network.
    All client data is tunneled between the access point and the controller.
    With regard to the losing IP address situation. I assume that the clients do initially get an IP address and then lose it after a period of time.
    Check the session timeout paramter on the controller (look on the WLAN-Advanced).
    There is a bug with some versions of software relating to session timeouts. Try setting the timeout to 65535 seconds. The default setting is probably 30 minutes.

  • Lan connectivity Issue on autonomous AP with throttles

              Hello,
      I encounter a strange problem on several AP 1242 in version 12.4(25d)JA1 of a customer :
      He has 10 autonomous AP covering a factory and is using them for laptop connectivity and TOIP with mainly 7921 Cisco Wifi Phones.
      The phones are configured to use only 802.11a.
      The APs loose LAN connectivity randomly and therefore the clients don't work anymore.
      The AP are connected on a 2960 and a 3560 wich are in turn connected on a 3750 wich route the trafic.
      After checking spanning-tree no loops are present.
      When I check the counters on the AP involved I see the "trhottles" and "ignored" counters incrementing on the fa0 link of the AP impacted wich mean I think it can't handle the incoming traffic. This incoming traffic seems not to be too big however. I can see drops on the switch interface connecting the AP.
    There is a lot of roaming on the AP due to people walking in the factory with their wifi phones.
    Here is a view of the fa0 counters :
    AP1242-LOGIST#sh int fa0
    FastEthernet0 is up, line protocol is up
      Hardware is PowerPCElvis Ethernet, address is 001d.a1ce.26e2 (bia 001d.a1ce.26e2)
      MTU 1500 bytes, BW 100000 Kbit/sec, DLY 100 usec,
         reliability 255/255, txload 1/255, rxload 1/255
      Encapsulation ARPA, loopback not set
      Full-duplex, 100Mb/s, MII
      ARP type: ARPA, ARP Timeout 04:00:00
      Last input 00:00:00, output 00:00:00, output hang never
      Last clearing of "show interface" counters never
      Input queue: 0/160/0/0 (size/max/drops/flushes); Total output drops: 0
      Queueing strategy: fifo
      Output queue: 0/40 (size/max)
      5 minute input rate 81000 bits/sec, 53 packets/sec
      5 minute output rate 29000 bits/sec, 26 packets/sec
         7447113 packets input, 674891974 bytes
         Received 286839 broadcasts, 0 runts, 0 giants, 549631 throttles
         0 input errors, 0 CRC, 0 frame, 0 overrun, 549631 ignored
         0 watchdog
         0 input packets with dribble condition detected
         4422100 packets output, 609868806 bytes, 0 underruns
         0 output errors, 0 collisions, 4 interface resets
         1 unknown protocol drops
         0 babbles, 0 late collision, 0 deferred
         0 lost carrier, 0 no carrier
         0 output buffer failures, 0 output buffers swapped out
      Here is a small part of logs concerning roaming, i don't see errors or log indicating that something is wrong nor in the switches log :
    Jun  6 12:57:27.007: %DOT11-6-ASSOC: Interface Dot11Radio1, Station SEP001E4A3EE15D 001e.4a3e.e15d Associated KEY_MGMT[WPAv2 PSK]
    Jun  6 12:57:42.499: %DOT11-6-ASSOC: Interface Dot11Radio1, Station SEP588D09D3A92B 588d.09d3.a92b Reassociated KEY_MGMT[WPAv2 PSK]
    Jun  6 12:58:02.620: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 588d.09d3.a92b Reason: Sending station has left the BSS
    Jun  6 12:58:03.653: %DOT11-6-ASSOC: Interface Dot11Radio1, Station SEP588D09D3A92B 588d.09d3.a92b Reassociated KEY_MGMT[WPAv2 PSK]
    Jun  6 12:59:15.564: %DOT11-6-ROAMED: Station 588d.09d3.a92b Roamed to 001e.134c.5a50
    Jun  6 12:59:15.564: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 588d.09d3.a92b Reason: Sending station has left the BSS
    Jun  6 12:59:41.905: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 442b.0355.ab28 Reason: Previous authentication no longer valid
    Jun  6 12:59:54.728: %DOT11-6-ASSOC: Interface Dot11Radio1, Station SEP442B0355AB28 442b.0355.ab28 Associated KEY_MGMT[WPAv2 PSK]
    Jun  6 13:01:12.541: %DOT11-6-ASSOC: Interface Dot11Radio1, Station SEP588D09D3A92B 588d.09d3.a92b Reassociated KEY_MGMT[WPAv2 PSK]
    Jun  6 13:02:35.841: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 001e.4a3e.d875 Reason: Previous authentication no longer valid
    Jun  6 13:02:36.489: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   ec85.2f7c.c837 Associated KEY_MGMT[WPAv2 PSK]
    Jun  6 13:03:29.256: %DOT11-6-ROAMED: Station 588d.09d3.a92b Roamed to 001e.134c.5a50
    Jun  6 13:03:29.256: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 588d.09d3.a92b Reason: Sending station has left the BSS
    Jun  6 13:04:32.754: %DOT11-6-ASSOC: Interface Dot11Radio1, Station SEP001E4A3ED875 001e.4a3e.d875 Associated KEY_MGMT[WPAv2 PSK]
    Jun  6 13:06:47.858: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 001e.4a3e.e15d Reason: Previous authentication no longer valid
    Jun  6 13:07:18.107: %DOT11-6-ROAMED: Station 001f.6c7a.5101 Roamed to 001d.a2bb.15b0
    Jun  6 13:07:18.107: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 001f.6c7a.5101 Reason: Sending station has left the BSS
    Jun  6 13:07:38.109: %DOT11-6-ASSOC: Interface Dot11Radio1, Station SEP588D09D3A92B 588d.09d3.a92b Reassociated KEY_MGMT[WPAv2 PSK]
    Jun  6 13:07:42.031: %DOT11-6-ROAMED: Station 588d.09d3.a92b Roamed to 001e.134c.5a50
    Jun  6 13:07:42.031: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 588d.09d3.a92b Reason: Sending station has left the BSS
    Jun  6 13:07:46.489: %DOT11-6-ASSOC: Interface Dot11Radio1, Station SEP001F6C7A5101 001f.6c7a.5101 Reassociated KEY_MGMT[WPAv2 PSK]
    Jun  6 13:08:27.712: %DOT11-6-ASSOC: Interface Dot11Radio1, Station SEP588D09D3A92B 588d.09d3.a92b Reassociated KEY_MGMT[WPAv2 PSK]
    Jun  6 13:08:44.502: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 588d.09d3.a92b Reason: Sending station has left the BSS
    Jun  6 13:08:44.572: %DOT11-6-ASSOC: Interface Dot11Radio1, Station SEP588D09D3A92B 588d.09d3.a92b Associated KEY_MGMT[WPAv2 PSK]
    Jun  6 13:08:56.778: %DOT11-6-ROAMED: Station 588d.09d3.a92b Roamed to 001e.134c.5a50
    Jun  6 13:08:56.779: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 588d.09d3.a92b Reason: Sending station has left the BSS
    Jun  6 13:09:17.874: %DOT11-6-ROAMED: Station 001f.6c7a.5101 Roamed to 003a.9a92.8d70
    Jun  6 13:09:17.874: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station 001f.6c7a.5101 Reason: Sending station has left the BSS
    The AP are configured as follow :
    Current configuration : 5184 bytes
    ! No configuration change since last restart
    version 12.4
    no service pad
    service timestamps debug datetime msec
    service timestamps log datetime msec
    service password-encryption
    hostname AP1242-LOGIST
    logging rate-limit console 9
    aaa new-model
    aaa authentication login default local
    aaa authorization exec default local
    aaa session-id common
    clock timezone gmt+1 1
    clock summer-time gmt recurring last Sun Mar 2:00 last Sun Oct 3:00
    dot11 syslog
    dot11 vlan-name Data vlan 11
    dot11 vlan-name Voix vlan 14
    dot11 vlan-name Webguest vlan 5
    dot11 ssid WLAN_data
       vlan 11
       authentication open
       authentication key-management wpa
       mbssid guest-mode
       wpa-psk ascii 7 10600C0E261B173C252203797479633F371A29
    dot11 ssid WLAN_voice
       vlan 14
       authentication open
       authentication key-management wpa
       mbssid guest-mode
       wpa-psk ascii 7 080F49592A1500203B2D25567A7A7622263C0C
    dot11 ssid Webguest
       vlan 5
       authentication open
       mbssid guest-mode
    dot11 wpa handshake timeout 1000
    dot11 arp-cache
    dot11 priority-map avvid
    dot11 phone
    power inline negotiation prestandard source
    class-map match-all _class_voice0
    match ip dscp ef
    class-map match-all _class_voice1
    match ip dscp cs3
    policy-map voice
    class _class_voice0
      set cos 6
    class _class_voice1
      set cos 3
    bridge irb
    interface Dot11Radio0
    no ip address
    no ip route-cache
    encryption vlan 11 mode ciphers aes-ccm
    encryption vlan 14 mode ciphers aes-ccm
    ssid WLAN_data
    ssid WLAN_voice
    ssid Webguest
    mbssid
    power client 17
    channel 2472
    station-role root
    dot11 qos class voice local
        admission-control
        admit-traffic narrowband max-channel 75 roam-channel 6
    dot11 qos class voice cell
        admission-control
    no cdp enable
    infrastructure-client
    interface Dot11Radio0.5
    encapsulation dot1Q 5
    no ip route-cache
    no cdp enable
    bridge-group 5
    bridge-group 5 subscriber-loop-control
    bridge-group 5 block-unknown-source
    no bridge-group 5 source-learning
    no bridge-group 5 unicast-flooding
    bridge-group 5 spanning-disabled
    interface Dot11Radio0.11
    encapsulation dot1Q 11
    no ip route-cache
    no cdp enable
    bridge-group 11
    bridge-group 11 subscriber-loop-control
    bridge-group 11 block-unknown-source
    no bridge-group 11 source-learning
    no bridge-group 11 unicast-flooding
    bridge-group 11 spanning-disabled
    interface Dot11Radio0.14
    encapsulation dot1Q 14
    no ip route-cache
    no cdp enable
    bridge-group 14
    bridge-group 14 subscriber-loop-control
    bridge-group 14 block-unknown-source
    no bridge-group 14 source-learning
    no bridge-group 14 unicast-flooding
    bridge-group 14 spanning-disabled
    interface Dot11Radio1
    no ip address
    no ip route-cache
    encryption vlan 11 mode ciphers aes-ccm
    encryption vlan 14 mode ciphers aes-ccm
    ssid WLAN_data
    ssid WLAN_voice
    ssid Webguest
    no dfs band block
    mbssid
    channel dfs
    station-role root
    interface Dot11Radio1.5
    encapsulation dot1Q 5
    no ip route-cache
    no cdp enable
    bridge-group 5
    bridge-group 5 subscriber-loop-control
    bridge-group 5 block-unknown-source
    no bridge-group 5 source-learning
    no bridge-group 5 unicast-flooding
    bridge-group 5 spanning-disabled
    interface Dot11Radio1.11
    encapsulation dot1Q 11
    no ip route-cache
    no cdp enable
    bridge-group 11
    bridge-group 11 subscriber-loop-control
    bridge-group 11 block-unknown-source
    no bridge-group 11 source-learning
    no bridge-group 11 unicast-flooding
    bridge-group 11 spanning-disabled
    interface Dot11Radio1.14
    encapsulation dot1Q 14
    no ip route-cache
    no cdp enable
    bridge-group 14
    bridge-group 14 subscriber-loop-control
    bridge-group 14 block-unknown-source
    no bridge-group 14 source-learning
    no bridge-group 14 unicast-flooding
    bridge-group 14 spanning-disabled
    interface FastEthernet0
    no ip address
    no ip route-cache
    speed 100
    full-duplex
    no cdp enable
    hold-queue 160 in
    interface FastEthernet0.1
    encapsulation dot1Q 1 native
    no ip route-cache
    no cdp enable
    bridge-group 1
    no bridge-group 1 source-learning
    bridge-group 1 spanning-disabled
    interface FastEthernet0.5
    encapsulation dot1Q 5
    no ip route-cache
    no cdp enable
    bridge-group 5
    no bridge-group 5 source-learning
    bridge-group 5 spanning-disabled
    interface FastEthernet0.11
    encapsulation dot1Q 11
    no ip route-cache
    no cdp enable
    bridge-group 11
    no bridge-group 11 source-learning
    bridge-group 11 spanning-disabled
    interface FastEthernet0.14
    encapsulation dot1Q 14
    no ip route-cache
    no cdp enable
    bridge-group 14
    no bridge-group 14 source-learning
    bridge-group 14 spanning-disabled
    service-policy input voice
    service-policy output voice
    interface BVI1
    ip address 10.17.10.5 255.255.255.0
    no ip route-cache
    ip default-gateway 10.17.10.254
    ip http server
    ip http authentication aaa
    no ip http secure-server
    ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
    logging trap warnings
    logging 10.15.51.115
    no cdp run
    bridge 1 route ip
    line con 0
    line vty 0 4
    sntp server 10.15.1.50
    sntp broadcast client
    end
    Does someone ever experienced a similar problem ?
    When I shut radio interfaces they're is no more problems on the LAN. Can this be an overlapping coverage issue ?
    Can someone please give me advices on how to troubleshoot this issue ?
    Thank you in advance as I'm a bit stuck.
    Best Regards,

         Hi Scott,
    Thanks for your reply.
    Do you think this can be the origin of the issue my customer encounters or is it only to be standard ? As this change will have to be made on all clients, if there is a chance it solves the problem I will do it ASAP, if not I will delay it in a less busy period :-)
    Can the constant roaming associations and dissasociations overload the AP and make it stop responding on the LAN or is it only a throuhput problem ?
    Thanks in advance for your answer.
    Best Regards,

  • AIR-AP1142N-A-K9 configuration issue for guest ssid

    I'm trying to get the guest ssid working.  I was frustrated so saved my old config and wiped out everything on this AP.  Now my bvi1 does not come online.
    ap#sh ip int bri
    Interface                  IP-Address      OK? Method Status                Protocol
    BVI1                       192.168.2.249   YES NVRAM  down                  down    
    Dot11Radio0                unassigned      YES NVRAM  up                    up      
    Dot11Radio0.50             unassigned      YES unset  up                    up      
    Dot11Radio0.51             unassigned      YES unset  up                    up      
    Dot11Radio1                unassigned      YES NVRAM  administratively down down    
    GigabitEthernet0           unassigned      YES NVRAM  up                    up      
    GigabitEthernet0.50        unassigned      YES unset  up                    up      
    GigabitEthernet0.51        unassigned      YES unset  up                    up      
    ap#
    ap#sh int bvi
    *May  6 15:05:24.611: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  847a.8835.4f22 Associated KEY_MGMT[WPAv2 PSK]1
    BVI1 is down, line protocol is down
      Hardware is BVI, address is 003a.99eb.8d00 (bia b862.1fe9.9af0)
      Internet address is 192.168.2.249/24
      MTU 1500 bytes, BW 54000 Kbit, DLY 5000 usec,
         reliability 255/255, txload 1/255, rxload 1/255
      Encapsulation ARPA, loopback not set
      ARP type: ARPA, ARP Timeout 04:00:00
      Last input never, output never, output hang never
      Last clearing of "show interface" counters never
      Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
      5 minute input rate 0 bits/sec, 0 packets/sec
      5 minute output rate 0 bits/sec, 0 packets/sec
         0 packets input, 0 bytes, 0 no buffer
         Received 0 broadcasts, 0 runts, 0 giants, 0 throttles
         0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort
         3 packets output, 180 bytes, 0 underruns
         0 output errors, 0 collisions, 0 interface resets
         0 unknown protocol drops
         0 output buffer failures, 0 output buffers swapped out
    ap#
    I have a private vlan 50 and the public vlan 51.  The private ssid seems to work and allow connectivity to the internet but I don't understand with the same configuration the Public ssid doesn't seem to work.
    I get this output when trying to connect with my cell phone. 
    *May  6 15:00:37.288: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 847a.8835.4f22 Reason: Sending station has left the BSS
    *May  6 15:00:38.432: %DOT11-6-ASSOC: Interface Dot11Radio0, Station TYLOR-NB 9c4e.3617.483c Reassociated KEY_MGMT[WPAv2 PSK]
    *May  6 15:00:42.935: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  847a.8835.4f22 Associated KEY_MGMT[WPAv2 PSK]
    *May  6 15:00:54.320: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   2c44.01c3.70a6 Associated KEY_MGMT[WPAv2 PSK]
    *May  6 15:01:13.913: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 847a.8835.4f22 Reason: Sending station has left the BSS
    *May  6 15:01:17.281: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  847a.8835.4f22 Associated KEY_MGMT[WPAv2 PSK]
    *May  6 15:01:48.181: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 847a.8835.4f22 Reason: Sending station has left the BSS
    *May  6 15:01:51.583: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  847a.8835.4f22 Associated KEY_MGMT[WPAv2 PSK]
    *May  6 15:02:22.500: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 847a.8835.4f22 Reason: Sending station has left the BSS
    *May  6 15:03:41.852: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  847a.8835.4f22 Associated KEY_MGMT[WPAv2 PSK]
    SSID [PUBLIC] :
    MAC Address    IP address      Device        Name            Parent         State     
    847a.8835.4f22 0.0.0.0         ccx-client    -               self           Assoc    
    ap#
    ap#show run
    Building configuration...
    Current configuration : 2746 bytes
    version 12.4
    no service pad
    service timestamps debug datetime msec
    service timestamps log datetime msec
    service password-encryption
    hostname ap
    enable secret 5 $1$4jEJ$ajpjBvSx3DUhxyvLADj.91
    aaa new-model
    aaa authentication login default local
    aaa authorization exec default local
    aaa session-id common
    dot11 syslog
    dot11 ssid PRIVATE
       vlan 50
       authentication open
       authentication key-management wpa version 2
       mbssid guest-mode
       wpa-psk ascii 7 01150F035E050E0A2D
    dot11 ssid PUBLIC
       vlan 51
       authentication open
       authentication key-management wpa version 2
       mbssid guest-mode
       wpa-psk ascii 7 045D02010A2F444B05
    username Admin privilege 15 password 7 0526071D3545175840
    bridge irb
    interface Dot11Radio0
     no ip address
     no ip route-cache
     encryption vlan 50 mode ciphers aes-ccm
     encryption vlan 51 mode ciphers aes-ccm
     encryption mode ciphers aes-ccm tkip
     ssid PRIVATE
     ssid PUBLIC
     antenna gain 0
     mbssid
     station-role root
    interface Dot11Radio0.50
     encapsulation dot1Q 50 native
     no ip route-cache
     bridge-group 50
     bridge-group 50 subscriber-loop-control
     bridge-group 50 block-unknown-source
     no bridge-group 50 source-learning
     no bridge-group 50 unicast-flooding
     bridge-group 50 spanning-disabled
    interface Dot11Radio0.51
     encapsulation dot1Q 51
     no ip route-cache
     bridge-group 51
     bridge-group 51 subscriber-loop-control
     bridge-group 51 block-unknown-source
     no bridge-group 51 source-learning
     no bridge-group 51 unicast-flooding
     bridge-group 51 spanning-disabled
    interface Dot11Radio1
     no ip address
     no ip route-cache
     shutdown
     antenna gain 0
     dfs band 3 block
     channel dfs
     station-role root
     bridge-group 1
     bridge-group 1 subscriber-loop-control
     bridge-group 1 block-unknown-source
     no bridge-group 1 source-learning
     no bridge-group 1 unicast-flooding
     bridge-group 1 spanning-disabled
    interface GigabitEthernet0
     no ip address
     no ip route-cache
     duplex auto
     speed auto
     no keepalive
    interface GigabitEthernet0.50
     encapsulation dot1Q 50 native
     no ip route-cache
     bridge-group 50
     no bridge-group 50 source-learning
     bridge-group 50 spanning-disabled
    interface GigabitEthernet0.51
     encapsulation dot1Q 51
     no ip route-cache
     bridge-group 51
     no bridge-group 51 source-learning
     bridge-group 51 spanning-disabled
    interface BVI1
     ip address 192.168.2.249 255.255.255.0
     no ip route-cache
    ip default-gateway 192.168.2.1
    ip http server
    ip http authentication aaa
    no ip http secure-server
    ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
    bridge 1 route ip
    line con 0
    line vty 0 4
    end      
    switch config:
    interface FastEthernet1/0/46
     switchport trunk encapsulation dot1q
     switchport trunk native vlan 50
     switchport trunk allowed vlan 50,51
     switchport mode trunk

    Hi
    I know the bridge-group have to be identical to the sub interface number and vlan number
    This is true for all other vlans except for native vlan. For native vlan sub-interfaces bridge group number always should be 1. In your case, if vlan 50 is the native vlan (192.168.2.x/24 belong vlan) then configure bridge-group 1 under those .50 sub-interfaces. Then everything should work :)
    It is ideal if you could put AP management (BVI IP) into separate vlan & two user groups put vlan 50 & 51. Here is a sample configuration where vlan 110 is Mgmt & vlan 12,13 for user vlans.
    http://mrncciew.com/2012/10/24/multiple-ssid-config-on-autonomous-ap/
    HTH
    Rasika
    **** Pls rate all useful responses ****

  • My 851W only allows a single wireless connection at a time

    1st device associates fine.  2nd device gets message - You are either  out or range of  credentials incorrect. If I shut down the wireless  adapter in the 1st  device the 2nd immediately associates.   Re-enable adapter in 1st device and now it cannot associate, same out of range or credentials message
    Here's the full config
    #sh run
    Building configuration...
    Current configuration : 7426  bytes
    version 12.4
    no service pad
    service  tcp-keepalives-in
    service tcp-keepalives-out
    service timestamps debug  datetime msec localtime show-timezone
    service timestamps log datetime msec  localtime show-timezone
    service password-encryption
    service  sequence-numbers
    hostname  saa01.panjde.nj
    boot-start-marker
    boot system flash 
    boot-end-marker
    logging buffered 51200
    logging console  informational
    enable secret 5 <omittted>
    no aaa  new-model
    clock timezone EST -5
    clock summer-time EDT recurring
    no ip  source-route
    no ip dhcp use vrf connected
    ip dhcp excluded-address  10.10.10.1
    ip dhcp excluded-address 10.10.10.25 10.10.10.254
    ip dhcp  pool sdm-pool1
       import all
       network 10.10.10.0 255.255.255.224
        default-router 10.10.10.1
    ip cef
    ip inspect name DEFAULT100  cuseeme
    ip inspect name DEFAULT100 ftp
    ip inspect name DEFAULT100  h323
    ip inspect name DEFAULT100 icmp
    ip inspect name DEFAULT100 rcmd
    ip  inspect name DEFAULT100 realaudio
    ip inspect name DEFAULT100 rtsp
    ip  inspect name DEFAULT100 esmtp
    ip inspect name DEFAULT100 sqlnet
    ip inspect  name DEFAULT100 streamworks
    ip inspect name DEFAULT100 tftp
    ip inspect  name DEFAULT100 tcp
    ip inspect name DEFAULT100 udp
    ip inspect name  DEFAULT100 vdolive
    ip tcp synwait-time 10
    no ip bootp server
    ip ssh  time-out 60
    ip ssh authentication-retries 2
    crypto pki  trustpoint TP-self-signed-1218768189
    enrollment selfsigned
    subject-name  cn=IOS-Self-Signed-Certificate-1218768189
    revocation-check  none
    rsakeypair TP-self-signed-1218768189
    crypto pki  certificate chain TP-self-signed-1218768189
    certificate self-signed 01
       30820253 308201BC A0030201 02020101 300D0609 2A864886 F70D0101 04050030
       31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
       69666963 6174652D 31323138 37363831 3839301E 170D3032 30333031 30313339
       34345A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
       4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D31 32313837
       36383138 3930819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
       8100C851 20F52411 0EB54BDE 2A94E59E A8519700 78365D20 8A601CA9 4F39FE76
       32D6132E 4818EDDD CEF23693 54DB319D E044B994 FCEE3E88 567D5F44 39973E1B
       6A7CFFC9 352A199D 5BB97CE6 B8515877 02A3AD40 B585B7A7 AE459BB4 F628BAA1
       E25BA349 26E529F6 20906E4C 42DE148B 334A440B ED8E18EB 10F87715 FD562047
       45670203 010001A3 7B307930 0F060355 1D130101 FF040530 030101FF 30260603
       551D1104 1F301D82 1B736161 30312E70 616E6A64 652E6E6A 2E636F6D 63617374
       2E6E6574 301F0603 551D2304 18301680 14AF142A 26B99015 4E52B7CB CEDA485E
       7800D40C 9B301D06 03551D0E 04160414 AF142A26 B990154E 52B7CBCE DA485E78
       00D40C9B 300D0609 2A864886 F70D0101 04050003 818100C5 2DDDB22D 5D98BC9D
       73426486 C9DF6AEA 463D31D9 7656D7EA E8213739 B3EC68B0 0E308062 91D379BC
       5A2CEB4E 439B3678 EBC23F0E 570C0989 5904EF65 72A2A4D6 B1D8AE25 D9E38AEB
       C15A3BAB 39BE35CB DE2D9524 16B74998 C67F3943 0DDEBF51 1A476AF0 8896B10E
       15DE45B1 194B2B6F E736FADA 6550B219 451F63BF F3CAAE
       quit
    bridge irb
    interface  Loopback0
    ip address 10.0.0.1 255.255.255.252
    interface  FastEthernet0
    interface FastEthernet1
    interface  FastEthernet2
    interface FastEthernet3
    interface  FastEthernet4
    description $FW_OUTSIDE$$ES_WAN$
    ip address dhcp client-id  FastEthernet4
    no ip redirects
    no ip unreachables
    no ip  proxy-arp
    ip inspect DEFAULT100 out
    ip nat outside
    ip  virtual-reassembly
    ip route-cache flow
    duplex auto
    speed  auto
    interface Dot11Radio0
    no ip address
    encryption mode  ciphers tkip
    ssid <omitted>
        authentication open
         authentication key-management wpa
        wpa-psk ascii 7  <omitted>
    speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0  12.0 18.0 24.0 36.0 48.0 54.0
    station-role root
    no cdp  enable
    bridge-group 1
    bridge-group 1  subscriber-loop-control
    bridge-group 1 spanning-disabled
    bridge-group 1  block-unknown-source
    no bridge-group 1 source-learning
    no bridge-group 1  unicast-flooding
    interface Vlan1
    description  $ETH-SW-LAUNCH$$INTF-INFO-HWIC 4ESW$$FW_INSIDE$
    no ip address
    ip tcp  adjust-mss 1452
    bridge-group 1
    interface BVI1
    description  $ES_LAN$$FW_INSIDE$
    ip address 10.10.10.1 255.255.255.224
    no ip  redirects
    no ip unreachables
    no ip proxy-arp
    ip nat inside
    ip  virtual-reassembly
    ip route-cache flow
    ip tcp adjust-mss  1412
    ip http server
    ip http authentication local
    ip http  secure-server
    ip http timeout-policy idle 60 life 86400 requests 10000
    ip  nat inside source list 1 interface FastEthernet4 overload
    logging trap  debugging
    access-list 1 remark INSIDE_IF=BVI1
    access-list 1 remark SDM_ACL  Category=2
    access-list 1 permit 10.10.10.0 0.0.0.31
    access-list 2 permit  68.86.0.0 0.1.255.255
    access-list 2 permit 10.10.10.0 0.0.0.31
    access-list  2 deny   any
    access-list 2 remark for VTY access
    access-list 20 permit  63.241.192.58
    access-list 100 permit ip 10.10.10.0 0.0.0.31  any
    access-list 100 deny   ip any any
    access-list 101 remark input ACL for  Outside - CM facing - Interface
    access-list 101 permit udp any eq bootps any  eq bootpc
    access-list 101 permit udp any any eq ntp
    access-list 101 permit  ip 68.86.0.0 0.1.255.255 any
    access-list 101 permit icmp any any  echo-reply
    access-list 101 permit icmp any any time-exceeded
    access-list  101 permit icmp any any unreachable
    access-list 101 deny   ip 10.0.0.0  0.255.255.255 any
    access-list 101 deny   ip 172.16.0.0 0.15.255.255  any
    access-list 101 deny   ip 192.168.0.0 0.0.255.255 any
    access-list 101  deny   ip 127.0.0.0 0.255.255.255 any
    access-list 101 deny   ip host  255.255.255.255 any
    access-list 101 deny   ip any  any
    control-plane
    bridge 1 protocol ieee
    bridge 1 route  ip
    banner login  ^C********************************************************************************
                                     WARNING
            This system is solely for the use of authorized   and
    contractors.   reserves the right at any time to monitor usage of  this
    system to ensure compliance with this policy, all applicable   policies
    that apply to electronic communications, and all applicable laws.  Your use of
    this system constitutes your acceptance of and agreement to all  applicable
      electronic communications policies, your consent to monitoring  by
    ,and your express agreement to use this system in compliance with  all
    applicable laws. Any unauthorized use of or access to this system may  result
    in a revocation of your user privileges, other disciplinary action up  to and
    including termination of employment or contract, or referrals to  law
    enforcement officials including the provision evidence of any  unauthorized use
    or access to law  enforcement.
    ********************************************************************************^C
    line  con 0
    login local
    no modem enable
    transport output telnet
    line  aux 0
    login local
    transport output telnet
    line vty 0  4
    access-class 2 in
    login local
    transport input telnet  ssh
    scheduler max-task-time 5000
    scheduler allocate 4000  1000
    scheduler interval 500
    sntp server 68.87.96.5
    sntp server  152.10.1.186
    end

    The router connects directly to a cable modem.
    The issue is not DHCP, it is that the clients cannot associate with the router AP.  Until is associates it will of course not sent a DHCP discover. Only a single laptop can associate at a time.  As soon as the 1st laptop is powered down, the 2nd laptop can associate.  Turn the 1st laptop back on and it cannot associate until the 2nd is powered down.  There is not even a log message that the 2nd laptop is trying to associate
    1st laptop associates and then is powered off:
    000220: Oct 19 20:26:40.912 EDT: %DOT11-6-ASSOC: Interface Dot11Radio0, Station   0026.b6ea.3a3e Associated SSID[c0mcastNET0] AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]
    000225: Oct 19 20:33:29.491 EDT: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0026.b6ea.3a3e Reason: Disassociated because sending station is leaving (or has left) BSS SSID[c0mcastNET0]
    Almost Immediately 2nd laptop associates
    000226: Oct 19 20:33:31.912 EDT: %DOT11-6-ASSOC: Interface  Dot11Radio0, Station   0026.b6ea.3bee Associated SSID[c0mcastNET0]  AUTH_TYPE[OPEN] KEY_MGMT[WPA PSK]

  • Client unable to connect AP with MAC filtering

    I need some help from you, I found problem that some clients cannot connect to AP( but some client can connect as normal). As I checked from logs, I see a lot of messages as below:
    Nov 18 01:13:55.760: %DOT11-4-MAXRETRIES: Packet to client 0023.68be.1c88 reached max retries, removing the client
    Nov 18 01:13:55.760: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0023.68be.1c88 Reason: Previous authentication no longer valid
    Nov 18 01:13:55.763: %DOT11-4-MAXRETRIES: Packet to client 0023.68be.1c88 reached max retries, removing the client
    After that I tried to reload AP and then it can connect as normal but I found the log that it roaming to another AP in the same SSID as log below:
    Nov 21 08:52:12.147: %DOT11-6-ROAMED: Station 0023.68be.1c88 Roamed to 003a.99e6.6860
    Nov 21 08:54:33.855: %DOT11-6-ROAMED: Station 0023.68be.1c88 Roamed to 003a.99e6.6860
    Nov 21 09:04:34.495: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  0023.68be.1c88 Reassociated KEY_MGMT[NONE]
    Nov 21 09:04:39.097: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0023.68be.1c88 Reason: Sending station has left the BSS
    Nov 21 09:04:39.103: %DOT11-6-ASSOC: Interface Dot11Radio0, Station  0023.68be.1c88 Reassociated KEY_MGMT[NONE]
    Nov 21 09:04:42.309: %DOT11-4-MAXRETRIES: Packet to client 0023.68be.1c88 reached max retries, removing the client
    Nov 21 09:04:42.309: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating Station 0023.68be.1c88 Reason: Previous authentication no longer valid
    Nov 21 09:04:42.315: %DOT11-4-MAXRETRIES: Packet to client 0023.68be.1c88 reached max retries, removing the client
    I've check from CISCO document, this problem may be from Radio Interference, so please help to investigate and find out the root cause that why some clients cannot connect to AP at that time and how to prevent this problem occurred again.
    Thank you in advance.

    Hi @Krish1840 , and thanks for the reply!
    Do the pages come out blank when making a copy as well?
    I would suggest deleting the printer from your print system, using this document: Uninstalling the Printer Software.
    Once you have deleted it, I would suggest verifying and repairing the disk permissions: About Disk Utility's Repair Disk Permissions feature.
    I would also suggest running your Apple updates:  OS X: Updating OS X and Mac App Store apps
    After the updates, I would recommend readding the printer via OS X v10.9 Mavericks: Installing and Using the Printer on a Mac
    Good luck and please let me know how it goes!
    Please click “Accept as Solution " if you feel my post solved your issue, it will help others find the solution.
    Click the “Kudos, Thumbs Up" on the right to say “Thanks" for helping!
    Jamieson
    I work on behalf of HP
    "Remember, I'm pulling for you, we're all in this together!" - Red Green.

  • Can't get secure wlan to work with new guest wlan

    Dear Support,
    I'm having a nightmare! where I can seem to get either one wlan to work or the other but not both together.
    I posted previously and reconfigured as per the suggestion, however the problem I get is that the secure wlan client associates, then de-associates after roughly 30 seconds with both a guest (no security) and secure (eap using ms ias as radius server)
    my previous post is;
    http://forum.cisco.com/eforum/servlet/NetProf?page=netprof&forum=Wireless%20-%20Mobility&topic=Security%20and%20Network%20Management&CommCmd=MB%3Fcmd%3Ddisplay_location%26location%3D.1ddcfe12
    and the log shows the following, obviously the client is set to connect automatically.
    *Mar 1 00:04:35.105: %DOT11-6-ASSOC: Interface Dot11Radio0, Station AP-CDC#2 00
    13.cefd.48ca Associated KEY_MGMT[NONE]
    *Mar 1 00:04:51.391: %DOT11-6-ASSOC: Interface Dot11Radio0, Station 000e.35f8
    .5d13 Associated KEY_MGMT[NONE]
    *Mar 1 00:04:51.506: %DOT11-4-MAXRETRIES: Packet to client 000e.35f8.5d13 reach
    ed max retries, removing the client
    *Mar 1 00:04:51.506: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating
    Station 000e.35f8.5d13 Reason: Previous authentication no longer valid
    *Mar 1 00:05:15.176: %DOT11-6-ASSOC: Interface Dot11Radio0, Station AP-CDC#2 00
    13.cefd.48ca Associated KEY_MGMT[NONE]
    *Mar 1 00:05:32.703: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating
    Station 0013.cefd.48ca Reason: Sending station has left the BSS
    *Mar 1 00:05:58.780: %DOT11-6-ASSOC: Interface Dot11Radio0, Station AP-CDC#2 00
    13.cefd.48ca Associated KEY_MGMT[NONE]
    *Mar 1 00:06:16.141: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating
    Station 0013.cefd.48ca Reason: Sending station has left the BSS
    *Mar 1 00:06:40.759: %DOT11-6-ASSOC: Interface Dot11Radio0, Station AP-CDC#2 00
    13.cefd.48ca Associated KEY_MGMT[NONE]
    *Mar 1 00:06:58.145: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating
    Station 0013.cefd.48ca Reason: Sending station has left the BSS
    *Mar 1 00:07:00.560: %DOT11-6-ASSOC: Interface Dot11Radio0, Station AP-CDC#2 00
    13.cefd.48ca Associated KEY_MGMT[NONE]
    *Mar 1 00:07:18.020: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating
    Station 0013.cefd.48ca Reason: Sending station has left the BSS
    *Mar 1 00:07:43.902: %DOT11-6-ASSOC: Interface Dot11Radio0, Station AP-CDC#2 00
    13.cefd.48ca Associated KEY_MGMT[NONE]
    *Mar 1 00:08:01.254: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating
    Station 0013.cefd.48ca Reason: Sending station has left the BSS
    *Mar 1 00:08:16.172: %DOT11-6-ASSOC: Interface Dot11Radio0, Station AP-CDC#2 00
    13.cefd.48ca Associated KEY_MGMT[NONE]
    *Mar 1 00:08:16.737: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating
    Station 0013.cefd.48ca Reason: Sending station has left the BSS
    *Mar 1 00:08:37.397: %DOT11-6-ASSOC: Interface Dot11Radio0, Station AP-CDC#2 00
    13.cefd.48ca Associated KEY_MGMT[NONE]
    *Mar 1 00:08:54.732: %DOT11-6-DISASSOC: Interface Dot11Radio0, Deauthenticating
    Station 0013.cefd.48ca Reason: Sending station has left the BSS
    *Mar 1 00:08:57.193: %DOT11-4-MAXRETRIES: Packet to client 0013.cefd.48ca reach
    ed max retries, removing the client
    Thanks in advance for your assistance.
    Any prompt reply will be greatfully received. I also rate responses.
    Thanks again, regards, Adrian

    Hi Ben,
    Please find attached AP config, I can access the switch at the moment, but the config is fairly basic, trunk port with two vlans and vlan 1 as the native.
    here's the ap config.
    AP-CDC#2#sh startup-config
    Using 2989 out of 32768 bytes
    version 12.3
    no service pad
    service timestamps debug datetime msec
    service timestamps log datetime msec
    service password-encryption
    hostname AP-CDC#2
    enable secret 5 $1$LQ1O$NKYZoYAeiahKw0805kLHg0
    clock timezone GMT 0
    clock summer-time BST recurring last Sun Mar 1:00 last Sun Oct 1:00
    ip subnet-zero
    ip domain name wlan.internal
    aaa new-model
    aaa group server radius rad_eap
    server 10.10.10.2 auth-port 1645 acct-port 1646
    aaa group server radius rad_mac
    aaa group server radius rad_acct
    aaa group server radius rad_admin
    aaa group server tacacs+ tac_admin
    aaa group server radius rad_pmip
    aaa group server radius dummy
    aaa authentication login eap_methods group rad_eap
    aaa authentication login mac_methods local
    aaa authorization exec default local
    aaa accounting network acct_methods start-stop group rad_acct
    aaa session-id common
    dot11 vlan-name dmz vlan 2
    dot11 ssid Secure
    vlan 1
    authentication open eap eap_methods
    authentication network-eap eap_methods
    dot11 ssid Guest
    vlan 2
    authentication open
    guest-mode
    username Cisco password 7 062506324F41
    bridge irb
    interface Dot11Radio0
    no ip address
    no ip route-cache
    encryption vlan 1 mode wep mandatory
    ssid Secure
    ssid Guest
    speed basic-1.0 basic-2.0 basic-5.5 6.0 9.0 basic-11.0 12.0 18.0 24.0 36.0 48.0
    54.0
    no preamble-short
    channel 2412
    station-role root
    interface Dot11Radio0.1
    encapsulation dot1Q 1 native
    no ip route-cache
    bridge-group 1
    bridge-group 1 subscriber-loop-control
    bridge-group 1 block-unknown-source
    no bridge-group 1 source-learning
    no bridge-group 1 unicast-flooding
    bridge-group 1 spanning-disabled
    interface Dot11Radio0.2
    encapsulation dot1Q 2
    no ip route-cache
    bridge-group 2
    bridge-group 2 subscriber-loop-control
    bridge-group 2 block-unknown-source
    no bridge-group 2 source-learning
    no bridge-group 2 unicast-flooding
    bridge-group 2 spanning-disabled
    interface FastEthernet0
    no ip address
    no ip route-cache
    duplex auto
    speed auto
    hold-queue 160 in
    interface FastEthernet0.1
    encapsulation dot1Q 1 native
    no ip route-cache
    bridge-group 1
    no bridge-group 1 source-learning
    bridge-group 1 spanning-disabled
    interface FastEthernet0.2
    encapsulation dot1Q 2
    no ip route-cache
    bridge-group 2
    no bridge-group 2 source-learning
    bridge-group 2 spanning-disabled
    interface BVI1
    ip address 10.10.10.49 255.255.255.0
    no ip route-cache
    ip default-gateway 10.10.10.253
    ip http server
    no ip http secure-server
    ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
    ip radius source-interface BVI1
    radius-server attribute 32 include-in-access-req format %h
    radius-server host 10.10.10.2 auth-port 1645 acct-port 1646 key 7 xyz
    radius-server vsa send accounting
    control-plane
    bridge 1 route ip
    line con 0
    line vty 0 4
    end
    AP-CDC#2#
    Thanks again, regards, Adrian

  • Unstable Wireless Bridge Connection via 802.11a(Radio 1) of Aironet 1242

    Hi,
    I'm going to setup up an AP 1242 in a remote area to support b/g client via a 802.11a bridge link (all using AP 1242).
    Before the deployment, I tested the configuration in a lab environment. However, I found the bridge link will come up a while and suddenly gone. Resetting the root AP or the non-root AP cannot bring the connection up again. Sometimes, when I shutdown the b/g radio (radio 0) of the remote AP, the bridge link will be established again. Following is the log from the root AP.
    Thanks!
    *Apr  4 12:24:05.013: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to r
    eset
    *Apr  4 12:24:05.054: %LINK-3-UPDOWN: Interface Dot11Radio1, changed state to up
    *Apr  4 12:24:05.665: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern
    et0, changed state to down
    *Apr  4 12:24:06.009: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio
    1, changed state to up
    *Apr  4 12:24:06.013: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio
    0, changed state to down
    *Apr  4 12:24:07.054: %LINK-3-UPDOWN: Interface BVI1, changed state to down
    *Apr  4 12:24:16.091: %DOT11-4-CANT_ASSOC: Interface Dot11Radio0, cannot associa
    te: No Response
    *Apr  4 12:24:16.811: %LINK-3-UPDOWN: Interface BVI1, changed state to up
    *Apr  4 12:24:17.811: %LINEPROTO-5-UPDOWN: Line protocol on Interface BVI1, chan
    ged state to upInternal error:  command failed                                                             <<<< Internal error:  command failed ??????
                                                                                                                                   <<<<don't know the meaning of this message
    *Apr  4 12:27:22.206: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to r
    eset
    *Apr  4 12:27:22.233: %LINK-3-UPDOWN: Interface Dot11Radio1, changed state to up
    *Apr  4 12:27:22.233: dot11_mgmt: bad cookie returned from driver for mac 003a.9         <<<<<003a.928.dad0 is radio 1 / non root bridge of remote AP
    928.dad0(expected 0x00000000, got 0x010ADAB0) - force driver to delete client             <<<<<don't know the meaning of this message
    *Apr  4 12:27:22.235: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to r
    eset
    *Apr  4 12:27:22.262: %LINK-3-UPDOWN: Interface Dot11Radio1, changed state to up
    *Apr  4 12:27:23.513: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern
    et0, changed state to up
    *Apr  4 12:27:26.993: %DOT11-6-ASSOC: Interface Dot11Radio1, Station T9_QC168_Ca
    ntil 003a.9928.dad0 Reassociated KEY_MGMT[NONE]
    *Apr  4 12:27:28.465: %DOT11-4-MAXRETRIES: Packet to client 003a.9928.dad0 reach
    ed max retries, removing the client
    *Apr  4 12:27:28.465: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating
    Station 003a.9928.dad0 Reason: Previous authentication no longer valid
    *Apr  4 12:27:28.467: %DOT11-4-MAXRETRIES: Packet to client 003a.9928.dad0 reach
    ed max retries, removing the client
    *Apr  4 12:27:31.673: %DOT11-6-ASSOC: Interface Dot11Radio1, Station T9_QC168_Ca
    ntil 003a.9928.dad0 Reassociated KEY_MGMT[NONE]
    *Apr  4 12:27:32.687: %DOT11-6-ADD: Interface Dot11Radio1, Station 003a.9926.e76
    0 Associated to Parent 003a.9928.dad0
    *Apr  4 12:28:46.178: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating
    Station 003a.9928.dad0 Reason: Sending station has left the BSS
    *Apr  4 12:28:46.179: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating
    Station 003a.9926.e760
    *Apr  4 12:28:46.181: %DOT11-6-ASSOC: Interface Dot11Radio1, Station T9_QC168_Ca
    ntil 003a.9928.dad0 Reassociated KEY_MGMT[NONE]
    *Apr  4 12:28:47.196: %DOT11-6-ADD: Interface Dot11Radio1, Station 003a.9926.e76
    0 Associated to Parent 003a.9928.dad0
    *Apr  4 12:29:15.132: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern
    et0, changed state to down
    *Apr  4 12:29:32.442: %DOT11-4-MAXRETRIES: Packet to client 003a.9928.dad0 reach
    ed max retries, removing the client
    *Apr  4 12:29:32.442: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating
    Station 003a.9928.dad0 Reason: Previous authentication no longer valid
    *Apr  4 12:29:32.443: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating
    Station 003a.9926.e760
    *Apr  4 12:29:32.444: %DOT11-4-MAXRETRIES: Packet to client 003a.9928.dad0 reach
    ed max retries, removing the client
    *Apr  4 12:31:10.285: %DOT11-4-CANT_ASSOC: Interface Dot11Radio0, cannot associa
    te: Rcvd response from 003a.9928.2660 channel 6 2560
    *Apr  4 12:31:18.286: %DOT11-4-CANT_ASSOC: Interface Dot11Radio0, cannot associa
    te: AssociatingInternal error:  command failed
    *Apr  4 12:31:27.021: dot11_mgmt: bad cookie returned from driver for mac 003a.9
    928.2660(expected 0x00000000, got 0x010ADAB0) - force driver to delete client
    *Apr  4 12:31:29.107: %DOT11-4-UPLINK_ESTABLISHED: Interface Dot11Radio0, Associ
    ated To AP T9_SML_LT2_AP2 003a.9928.2660 [None]
    *Apr  4 12:31:29.108: %LINK-3-UPDOWN: Interface Dot11Radio0, changed state to up
    *Apr  4 12:31:30.108: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio
    0, changed state to up

    Thanks dmantill for reminding me to revisit the antenna and related stuff.
    As the setup is in a lab environment, the APs are put on a work bench next to each other, therefore, the radio output power was lowered.
    After adjusting the output powers, it works as expected.
    Thanks Surendra and dmantill.

Maybe you are looking for

  • How can I switch out graphics in different areas of a movie?

    I have a project that I'm working on for a flooring company. They want a Flash movie that allows the user to change the look (product and color) of different areas of the floor. I have a menu on the left side that designates the three different areas

  • What are the best UK sites for buying more memory for iMac?

    Here is the info on my current imac: Mac OS X version 10.5.8 Processor: 2.4 GHz Intel Core 2 Duo Memory: 1 GB 667 MHz DDR2 SDRAM Model Identifier: iMac7,1 I want to get myself more memory for my type of imac, like 6GB worth. I want to buy from a UK w

  • Does any one have same problem that can't text on iPhone 4 but can ring ?

    Hi there does any one have same problem just brought iPhone 4 And I put SIM card in and finally get service but I can ring people But can't text as well been told to reboot phone through iTunes To make it back to a new iPhone settings been told by Vo

  • Lightroom help files

    When I click help in Lightroom 4.3, a box opens and I can choose help for elements, but not Lightroom. Hlw dod I get help fo LR to appear so I can use it offline?

  • If lenovo wants to make a new version of s10-3t , they have to read this

    1- lenovo s10-3t need to be more solid 2- it needs at least 8cell battery which is small in size and light in weight 3- they need a better processor (core 2 duo - or higher) 4- they need windows 8 5- they need a display with perfect angle of view (ta