HA SKU, HA controller ports down.

Hi Friends,
Hope you all are doing good.
I have a situation. 
I am deploying an HA controller for an already existing 5508 controller. I finished the configuration. tried enabling the AP SSO. 
Some how it din't work well. HA went to maintenance mode.
So I disabled the AP SSO on the HA. now the redundancy status is ACTIVE.
But, my management port is down. I can't ping the gateway. 
I am trying to use the GUI, no use.
Please share your thoughts.
I have attached the  "run-config" of the HA controller.
Thank you.

Hi,
Sorry for the delay.  I was in to other project.
Regarding the software code, both the controllers are same. 7.4.121.0.
I did follow the AP SSO guide.
Can someone just cross check the log file to see the configuration is correct. I know, its too much to ask.
I am planning of resetting the HA and configuring it again.

Similar Messages

  • Ask for help :( "%ILPOWER-3-CONTROLLER_PORT_ERR: Controller port error, Interface Gi1/0/17: Power given, but Power Controller does not report Power Good"

    This question is used a translator.... 
    Current conditions 
     - SW1 ----- Power injector ------ AP(cisco is not another model)
     - Port, AP, Power injector, Switch <-> Injector UTP cable  Problems occur even after replacement
     - Power injector <->AP UTP canle No exchange
     - Poe was OFF the function. This is because it is being used for Power Injector. -> Do not generate failure logs
     - But even if another AP is turned ON POE function, no error messages.
    SW1#show logging (5 mins cycle persists)
    May  4 10:37:32.527: %ILPOWER-3-CONTROLLER_PORT_ERR: Controller port error, Interface Gi1/0/17: Power given, but Power Controller does not report Power Good
    May  4 10:37:42.556: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet1/0/17, changed state to down
    May  4 10:37:43.562: %LINK-3-UPDOWN: Interface GigabitEthernet1/0/17, changed state to down
    May  4 10:37:50.032: %LINK-3-UPDOWN: Interface GigabitEthernet1/0/17, changed state to up
    May  4 10:37:52.046: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet1/0/17, changed state to up
    May  4 10:38:03.238: %ILPOWER-7-DETECT: Interface Gi1/0/17: Power Device detected: IEEE PD
    SW1#show cable-diagnostics tdr interface gi 1/0/17    <----- Issues AP         
    TDR test last run on: May 04 10:49:14
    Interface Speed Local pair Pair length        Remote pair Pair status
    Gi1/0/17  1000M Pair A     84   +/- 10 meters Pair B      Normal              
                                Pair B     84   +/- 10 meters Pair A      Normal              
                                Pair C     84   +/- 10 meters Pair D      Normal              
                                Pair D     84   +/- 10 meters Pair C      Normal              
    SW1#show cable-diagnostics tdr interface gigabitEthernet 1/0/18    <--------- Normal AP
    TDR test last run on: May 04 11:01:04
    Interface Speed Local pair Pair length        Remote pair Pair status
    Gi1/0/18  1000M Pair A     92   +/- 10 meters Pair B      Normal              
                               Pair B     92   +/- 10 meters Pair A      Normal              
                               Pair C     92   +/- 10 meters Pair D      Normal              
                               Pair D     92   +/- 10 meters Pair C      Normal  
    SW1#show cable-diagnostics tdr interface gigabitEthernet 1/0/1   <--------- Normal AP
    TDR test last run on: May 04 11:01:56
    Interface Speed Local pair Pair length        Remote pair Pair status
    Gi1/0/1   1000M Pair A     79   +/- 10 meters Pair B      Normal              
                               Pair B     79   +/- 10 meters Pair A      Normal              
                               Pair C     79   +/- 10 meters Pair D      Normal              
                               Pair D     79   +/- 10 meters Pair C      Normal              
    SW1#show power inline    <-------- (Check every 5 seconds)
    Module   Available     Used     Remaining
                   (Watts)     (Watts)    (Watts) 
    1              370.0      200.2       169.8
    Interface Admin  Oper       Power     Device                           Class   Max
                                                (Watts)                            
    SW1#show power inline | in 17
    Gi1/0/17  auto     off        0.0                 n/a                               n/a   30.0 
    SW1#show power inline | in 17
    Gi1/0/17  auto     on         15.4             Ieee PD                         0     30.0 
    SW1#show power inline | in 17
    Gi1/0/17  auto     on         15.4             Xirrus XR2426, 1.0G     0     30.0 
    SW1#show power inline | in 17
    Gi1/0/17  auto     faulty     0.0              n/a                                 n/a   30.0 
    SW1#show power inline | in 17
    Gi1/0/17  auto     off        0.0                n/a                                  n/a   30.0

    Plug the Xirrus AP directly to the switch port and see if the logs go away or not.

  • WISM Service Ports Down

    I am walking into a site that already has the WISMs setup. There are 2 switches setup with VSS and there are a total of 4 WISMs. When I do a show wism status there are 3 of the service ports that show down. One port down on one of the WISMs and both ports down on another. The managment addresses are setup and I can mange the WISMs and when I do a show int on any of the interfaces they show as 'notconnect'.
    I don't think you can go in and do a "no shut" on the ports so not sure what to do in order to get the service ports up.

    I guess when in doubt reboot....I booted the controllers in question and the ports came up.

  • Auto run script to bring port down at certain time/

    trying to find a way to automatically bring a port down at certain time of the day and then bring it back up at a different time.
    basically we want to disconnect a phone (cisco 7940) at end of business day and reconnect in the am. 
    any ways to do this thru script or a functionality built into cisco os?
    edit: switch 2960x

    Disclaimer
    The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.
    Liability Disclaimer
    In no event shall Author be liable for any damages whatsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.
    Posting
    This might be doable with EEM scripting.  Note - there's an EEM scripting forum, where you might find help.
    Does the port really need to be taken down, or would blocking its operation at night suffice?  If the latter, a timed based ACL might be used.

  • Random swich port down and up

    Core:4506 x 4
    Access Switch: 2950 x 50
    i met a problem that almostly all of swich ports down and up randomly. connect with ports are lots kind of laptop and desktop. In one week it appears one or two times.
    spanningtree mode PVST. convergence is ok.
    VTP mode Transparent.
    all vlans Spanningtree root is one of 4506.
    network cable is passed testing.

    Hello,
    do you see any errors on the ports that show those symptoms ? Can you post the output of ´show interfaces FastEthernet´ of one of those ports ?
    Also, I understand that all your switches are running their own VTP database, since you have configured them as VTP transparent ? What exactly does your VTP domain look like ?
    Regards,
    GP

  • Wireless Controller locking down User per SSID

    I am using Wireless Controller 4112. We use WPA enterprise mode for authentication and encryption via Microsoft IAS server and MS AD domain.
    My question is how to lock down a user to a specific SSID? I would guess that this is via some vendor specific radius attributes, am I right? And if so, what would be the name (and ID) for the attributes?
    Thanks in advance.

    Making progress in setting up the wireless controller with multiple VLAN and WLAN/SSID. I create a virtaul interface at the controller and assign a VLAN number to it. The controller mgmt port is also set to a trunk port. Create a new SSID WLAN and have it mapped to the new virtual interface. Things work good.
    The new problem I am trying to solve is how to prevent wired users to access the controller admin web interface via the virtual interface IP. I try create ACL and map it to the virtual interface. It doesn't seem working.

  • 5500 Controller link down

    I have a new 5500 controller and the fiber link shows down and I cannot get it to come up. Does anyone have any advice? I changed GBIC's fiber patch, ports etc and cannot get the link to come up. I did walk through the inital config as well.
    Thanks.

    Are you getting error messages saying that the SFP modules you are using are fakes or non-Cisco supported?

  • I have a belkin 7 adapter for additional USB slots for my Mac Pro. It was working well till just recently I am getting a message that says the usb port on the Mac Pro is shutting down due to a very high power drain. Then it shuts the usb port down.

    I have a belkin 7 adapter for additional usb ports for my mac pro. It worked fine without problems till recently when the message regarding usb port drawing too much power and the computer shuts the port on the mac pro down. The strip comes with its own power supply adapter. The attachments are additional hard drives used as backups and independent data. Other than disconnecting it are there any fixes?

    You're getting the message because you're exceeding the available current, probably as a result of bus-powered drives. The power sources for hubs are rather small. Try using drives with their own power supplies.

  • Domain Controller going down after IDM implemented

    Hi,
    We have implemented IDM 7.1 and are using the PSS (Password Self Service), Password Syncronization functionality for 2 AD and 6 ABAP systems. This PSS is implemented to support our company ESS which is on the internet so that users can reset their own password. Hence to support it we have a architecture having one AD on the DMZ and another internal.
    Both the AD repositories have been configured pointing to a perticular DC (Domain Contorller) . All the DC's have Phook installed on them.
    Since Go-live we have not had any issue with the DC on the DMZ but the internal DC keeps going down once in a while and it doesnt have a pattern. We tried switching to different DC's also which didnt work. Right now we are keeping a close watch on the DC and we carryout a restart whenever it happens.
    Did anyone come across such kind of a issue, if so then please let me know.
    Thanks.

    Hi Ahmed,
    Thank you for your quick response!  Our secondary domain controller IP settings were set properly according to the recommendation, but the primary (the one having the issues) was not. I went ahead and changed the settings and did an ipconfig /registerdns
    and restarted the netlogon service. Nothing changed after that. I ran a dcdiag and the only one that failed was this:
          Starting test: NCSecDesc
             Error NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS doesn't have
                Replicating Directory Changes In Filtered Set
             access rights for the naming context:
             DC=ForestDnsZones,DC=*hidden*,DC=*hidden*
             Error NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERS doesn't have
                Replicating Directory Changes In Filtered Set
             access rights for the naming context:
             DC=DomainDnsZones,DC=*hidden*,DC=*hidden*
             ......................... *hidden PDC Name* failed test NCSecDesc
    I'm going to restart the server tonight after those IP changes and let you know my outcome.
    Thanks again!

  • ALL FIRE WIRE ports down on tower!

    All of the FW ports on my Mac have suddenly gone belly up, front and back. All the drives that will not mount on my tower will mount fine on my laptop.
    What is broken?

    OK. So the exact same thing happened to a friend of mine (I just found out) and she called Mac Support and got the following fix.
    1. Shut down the Mac and unplug everything except the keyboard and mouse and one monitor.
    2. Hold the Mac power button in for 7 seconds with the rig unplugged.
    3. Plug the machine back in and zap the P-RAM.
    4. Reboot.
    5. Problem solved.
    So other than the bit about holding the power button down all the steps were here. Just add them together. It supposedly resets the internal power distribution levels or something. No mention of what causes it.
    But for now my drives are mounting again. We'll see for how long.

  • Cisco Prime Infrastructure 2.0 Alarms (switch port down)

    We have a cisco Prime Infrastructure 2.0 managing switches, routers and AP.
    By default, when a port of a switch goes down, the cisco Prime Infrastructre generates a Critical Alarm for that. (this is a problem, because every phone of laptop disconnection will generate a critical alarm for me)
    I found out that if we go to Administration --> Alarm Severity --> Link down, I can change the Alarm from Critical to another type of alarm.(ex: warning)
    The problem is that I want to keep the Critical Alarm for my Uplinks ports and for some important switch ports, and I would like to make the alarm as warning for the normal user ports.
    I know that I can create Port Groupping and add ports to each group and apply monitoring templates on those groups. But This couldn't Help me solving my alarm problem.
    So I just need to know how to manage the alarms severity for each group of ports.
    Thank you

    Hi,
    Same problem here.
    I am using Cisco Prime Infrastructure 2.0 (evaluation version for 60 days). I want to deploy port monitoring for my trunk ports between switches and some other important ports e.g. servers. Basically I want to get alarms when these ports are down, there are errors on ports and etc.
    So in Design>Port Grouping I created User Defined group with important ports. In Deploy>Monitoring Deployment I selected Interface Health (default)>Deploy selected Port Groups and when selected port group I created.
    Now the rule shows Deployed: Yes and Status: Active. After that I just pulled out one port which was in monitored group, waited 5min as it is set in Interface Health (default) template, and nothing happened, and worse, alarms started to show up of other ports where regular users are connected (computers was turned off), which I do not want to see at all. I tried redeploy template, I even created my own template but still no desired result.
    Any suggestions how to make port monitoring work?

  • Converged architecture : when the mob Controller goes down, all AP connected to Mob. Agent are disconnected

    Hello
    I configured two  SW 3650 in a converged architecture.
    SW3560-1 is Mob controller
    SW3560-2 is Mob agent.
    When I shut down the Mob controller, APs associated to the Mob. Agent reload, and could not join anymore to the Mob Agent.
    A debug "capawap ap error" on sw3560-2 give this error:
    "*Sep  5 07:51:52.144: *%LWAPP-3-AP_LICENSE_REQUEST_ERR: 1 wcm:  License request failed for AP 7c0e.ceb8.f5d0 - AP License Request timedout, ensure MC link is up, Resettting AP"
    Both SW3560 has a valid license for 6 AP
    So I guess that the Mob Ctrl in a converged architecture, is vital.There is no redundance.
    Could you please help.
    Michel Misonne

    Hi Michel,
    When I shut down the Mob controller, APs associated to the Mob. Agent reload, and could not join anymore to the Mob Agent.
    When MC is down, if MA connected AP rebooted that is strange. As Sultha mentioned, without MC, AP won't able to register as AP licence hold on MC.
    Where is the SVI defined for AP management vlan ? Is DHCP given for AP from 3650-1 ? We need to find out what triggers MA connected AP to reboot.
    Configuring both 3650 as MC is not an ideal solution (make it bit complex & roaming is not optimized if these two switches in same building)
    HTH
    Rasika
    **** Pls rate all useful responses ****

  • Vfc error disabled because of Ethernet port down?

    We are building a new datacenter and is starting to set up the SAN.
    This small DC consist of 2 Nexus 5596UP, a Compellent SAN and 2 Dell M1000e cassis with blade servers.
    naive FC part in Nexus has been easy to set up but we have problems with the FCOE setup.
    Since the blades are not installed yet none of the Ethernet ports are up. As soon as we bind an ethernet port to a vfc the vfc goes to error disable with this message:
    %PORT-2-IF_DOWN_ERROR_DISABLED: %$VSAN 1900%$ Interface vfc101 is down (Error disabled)
    Config snippets:
    vlan 1900
      fcoe vsan 1900
      name VSAN-A-FCOE
    vlan 1901
      name VSAN-B-FCOE
    vsan database
      vsan 1900 name "VSAN-A"
      vsan 1901 name "VSAN-B"
    interface vfc101
      bind interface Ethernet1/1
      no shutdown
    vsan database
      vsan 1900 interface vfc101
      vsan 1900 interface fc2/13
      vsan 1900 interface fc2/14
      vsan 1900 interface fc2/15
      vsan 1900 interface fc2/16
    interface Ethernet1/1
      switchport mode trunk
      spanning-tree port type edge trunk
    vlan 1900
      fcoe vsan 1900
      name VSAN-A-FCOE
    vlan 1901
      name VSAN-B-FCOE
    vsan database
      vsan 1900 name "VSAN-A"
      vsan 1901 name "VSAN-B"
    vsan database
      vsan 1900 interface vfc101
      vsan 1900 interface fc2/13
      vsan 1900 interface fc2/14
      vsan 1900 interface fc2/15
      vsan 1900 interface fc2/16
    interface vfc101
      bind interface Ethernet1/1
      no shutdown
    interface Ethernet1/1
      switchport mode trunk
      spanning-tree port type edge trunk
    Do the vfc go error disable because the ethernet interface being down? I was under the impression it should just go "down"

    What you are seeing is normal.. Here are outputs from my lab switch where I shut Eth1/20 which is tied to vFC 20
    24.10.5020A.1(config)# int ethernet 1/20
    24.10.5020A.1(config-if)# shut
    2011 Oct 21 10:16:01 24 %ETHPORT-5-IF_DOWN_CFG_CHANGE: Interface Ethernet1/20 is down(Config change)
    2011 Oct 21 10:16:01 24 %FLOGI-5-MSG_PORT_LOGGED_OUT: %$VSAN 100%$ [VSAN 100, Interface vfc20: mode[TF]] Nx Port 21:00:00:c0:dd:12:0e:35 logged OUT.
    2011 Oct 21 10:16:01 24 %PORT-5-IF_PORT_QUIESCE_FAILED: Interface vfc20 port quiesce failed due to failure reason: Epp Not Supported by Peer (0x19d)
    2011 Oct 21 10:16:01 24 %PORT-5-IF_DOWN_NONE: %$VSAN 100%$ Interface vfc20 is down (None)  
    2011 Oct 21 10:16:01 24 %PORT-2-IF_DOWN_ERROR_DISABLED: %$VSAN 100%$ Interface vfc20 is down (Error disabled)  
    2011 Oct 21 10:16:02 24 %ETHPORT-5-IF_DOWN_ADMIN_DOWN: Interface Ethernet1/20 is down (Administratively down)
    24.10.5020A.1(config-if)#

  • 4507R+E suddently could not connect any PCs, all ports down-down

    Hello
    Can some ones please help me?
    I have a 4507R+E ver 15.0. two 48-port line cards two super-engine cards, and we had some 10 like PCs connected over two cards, all worked fine before. But no one really used those PCs after setup, so don't know when, but today we found all those PC conneccted ports are down-down. We tried connecting a laptop(it worked fine with other switches) on the 4507, tried different ports and cables, tried auto-negotiation and forced speed and duplex, tried shut and none-shut ports, but just cannot get any switch ports up.  switch ports stayed down-down.  The config on ports just one line 'switchport access vlan 1'.
    Well there is only one exception, during all the time, port1/1 which is connecting to a Cisco ASA is always up.  Seems the 4507 just cannot connect to any computers.  Even tried soft reload the switch, didn't fix the problem.
    what can I do now?  open a case with TAC?  anything eles I can do?
    Thanks a lot.

    one more information, at that time, all ports on the 4507 had same counts (I believe it's 6) of interface resets.

  • Stop ethernet uplink port will cause appliance port down

    Dear All,
    I would like to make sure what kind of network traffic will communicate internal in FI.
    I disabled the uplink port, and found appliance port was also down.
    Does appliance port need to route to uplink port and then back to UCS server ?
    Thank you for clarification.
    Best Regards,
    Dennis Dai

    Expected behavior.  By default, if there are no uplinks online & fwd, then all southbound links (server links and appliance ports) will also go down.
    See Abi's explanation here for details how to modify this behavior.
    https://supportforums.cisco.com/thread/2187144?tstart=0
    In short you have to change the Network Control policy of the Appliance port from the Equipment Tab.
    Regards,
    Robert

Maybe you are looking for

  • How do I name a specific cell in Numbers 3.2.2?

    I am working with a multi-table spreadsheet and I want to create a table of variables that are used in a specific formula throughout the spreadsheet. For example, here is the formula I'm working on: =IF(C32≥321,"23",IF(C32≥281,"19",IF(C32≥241,"17",IF

  • Error while creating measurment documents for a counter (counter based strategy Plan)

    Dear Experts Pl suggest the possible solution for below case I have a counter based preventive maintenance Plan of 100km, 200km,.....  with op1,op2,..... respectively. Now I have done maintenance for 600 km and going to enter another reading in IK11.

  • How can i work on a sheet A3

    My brother says to me that he have got a friend who can work on a sheet A3 instead of a A4. How can i modify it ? thanks

  • Output for TV Monitor Viewing

    We're putting together an animated slideshow presentation for a sales office, which will be viewed on a large TV. I have experience with Photoshop, Illustrator, InDesign, Dreamweaver, Flash, and Edge Animate....and wonder which of the ACCloud apps sh

  • 713x BDA Analog Capture defaults to SVideo?

    I am having trouble using the MSI TV@nywhere Plus to stream live video from the composite input to a provider like ustream.tv. Using a free version of webcamxp/webcam7, I am able to view/stream video ONLY when I select '713x BDA Analog Capture', then