LWAPP Discovery, Microsoft DHCP and failure!

Fellow Netpro's,
Interesting case here maybe, which is buggering me since a couple of days.
We have an environment with hundreds of LAPs over multiple sites throughout the globe. We have main controllers in datacenter for remote LAP (H-REAP mode) and to terminate the WLAN for guests (using the mobility anchors). Larger sites with multiple LAPs have local controllers.
With this setup we figured the best practice is to use DHCP to assign controller addresses in the L3 LWAPP Discovery process.
Recently I found that our DHCP administrators are setting up hardcoded DHCP option 43 in order to get it to work. All good, it works. However, I would prefer to use Option 60 with VCI to assign Option 43 values (as I can seein the forseeable future there will be need for smartphones, prnters or other devices requiring other Option 43 values. So, in my minset VCI mapping is the way to go.
Now, I have been working with one of my system admins to set this up correctly, and followed Cisco's document to the T. Checked, double checked, triple checked it. Restarted the DHCP service, restarted the DHCP server, just to rule out any possible issues.
But, packet tracing the DHCP upon LAP boot I do see the server is absolutely not sending any Vendor specific info, not even Option 43. Only when I hardcode Option 43 (so not the sub-coded 241) with the local controller IP address the LAP receives the right info and registers to that controller.
I even have a TAC case opened to request confirmation if the document I have from Cisco is not containing any errors, and TAC confirms this is the correct document.
Anyone ever run into such issue. I'm convinced it must be something wrong on the DHCP servers (Freaky Mickeysoft), but I'm a noob at server management.
Any one any clues what to check?
Thanks in advance,
Leo

Cisco APs do use the Option 60 VCI when sending a DHCP Discover message. We use it all the time to configure Option 43 with suboption 241. What is the TAC case number you have open for this?
Pushkar

Similar Messages

  • Microsoft DNS and 3rd Party DHCP (Infoblox)

    We are running Microsoft DNS with Infoblox as our DHCP and IPAM system. We realized that DHCP is not removing PTR and A records when an IP is released. We want to make sure that DHCP does do this but there is no information on how. We believe we need to
    implement Dynamic Updates on Infoblox but we are unsure on how to give it permission to manage the records. Infoblox said there is no place to put domain credentials.  I did find an article where we can use ktpass.exe but didn't give any further information. 
    Any help would be greatly appreciated.

    Hi,
    According to your description, my understanding is that Microsoft DNS server works with Infoblox as DHCP and IPAM. DHCP does not remove PTR and A records when an IP is released.
    Is that an AD-Integrated zone on your DNS server?  And if it is configured with a Secure Dynamic Update, only the “owner” is allowed to update resource records in such zones. Detailed information about
    Secure Dynamic Update you may reference:
    https://technet.microsoft.com/en-us/library/cc961412.aspx
    You may try to configure the zone with non-security update(DNS
    console – right click zone and select Properties – General
    – Dynamic Update, configured as None or Nunsecurity and security).
    Besides, as Microsoft DHCP server, we have related settings to specific the DHCP server to remove DNS RRs on behavior of clients at expiration of the IP address lease. it is better to contact the Infoblox Supporter about this function.
    A work around way to clean these stale RRs – DNS Aging and Scavenging:
    http://social.technet.microsoft.com/wiki/contents/articles/21724.how-dns-aging-and-scavenging-works.aspx
    Best Regards,
    Eve Wang
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • LWAPP Discovery request - discarded ?

    Greetings all,
    I'm starting to grow a huge headache over a WLC-implementation (4402-12). From my point of view, the controller seems to be configured correctly and the DHCP-scope has been set up with the correct pointers as well as as the DNS-record, all pointing towards the AP-Manager i/f (tagged vlan20 on port 1, mgmt untagged) - still, no access-points will associate. The AP is pingable from the controller. A debug of lwapp events and details shows the following;
    Sat Jan 7 19:36:17 2006: Received a message from AP of length 97 on inteface = 1
    Sat Jan 7 19:36:17 2006: Entered spamGetLCBFromMac file spam_lrad.c line 433**
    Sat Jan 7 19:36:17 2006: Received LWAPP DISCOVERY REQUEST from AP 00:0b:85:5a:bd:50 to ff:ff:ff:ff:ff:ff on port '1'
    Sat Jan 7 19:36:17 2006: Discarding L3 Mode LWAPP DISCOVERY REQUEST on intf '1', vlan = '20', Management vlan = '0'.
    Anyone with a clue regarding what might be causing this? I'm also a little confused regarding the destaddr (bcast) since the AP should've received the ucast address of the controller. We have to handover this system to the cust. fairly soon .. :-)
    WLC Version: 3.2.78.0
    TIA & Best regards,
    /M

    You need to use the Management Interface for LWAPP controller discovery. That's what the WLC expects. So when it sees an LWAPP Discovery Request coming in on another interface, it discards its.
    In L3 LWAPP mode, the AP tries to find a WLC using IP subnet broadcast, over the air provisioning (OTAP), DHCP Option 43, DNS, and WLC IP addresses stored in memory. It will always use ALL of these techniques. That's why you're seeing the broadcast. From the LWAPP Discovery Responses it selects a controller to join.
    Now, you would've seen it join in L2 mode because the AP does an Ethernet "broadcast" to find the WLC. Hence, the mgmt interface sees the LWAPP Discovery, and responds with an Ethernet frame. At L2 mode, all LWAPP is Ethernet encapsulated as opposed to IP encapsulated. When you switched back to L3 mode, the AP remembers the management IP address of the WLC from the L2 join and uses that. That's why it worked after switching L3-->L2-->L3.
    Hope this helps.

  • LWAPP 1130AG constantly associating and disassociating

    Hi,
    I have inherited a LWAPP system with around 40 1130AGs and a single 4400 WLC which all work fine.
    I attempted to upgrade a 1130 Autonomous to LWAPP and it said it worked using the upgrade tool and c1130-rcvk9w8-tar.123-11JX1 image.
    I checked the WLC and initially could see that the WAP was downloading the image from the WLC, but since then it constantly says this on the WLC:
    AP Disassociated. Base Radio MAC:*************
    AP Associated. Base Radio MAC: *****************
    I have done debug lwapp events enable on the WLC and all it says regarding the WAP is:
    Tue Jul 14 13:22:20 2009: ************* Received LWAPP DISCOVERY REQUEST from AP ************** to ff:ff:ff:ff:ff:ff on port '2'
    And that's it. Nothing else.
    I've added the Mac address into the WLC AP Authorization list as a MIC.
    I'm trying to get the public key hash using debug pm pki enable using Putty, but when I put in this command, it logs a huge amount of stuff and then Putty simply closes, without logging the needed info. Is there any other way to get this, or stop the session from closing?
    Any ideas on getting the 1130AG working?

    Sounds like you have a duplicate IP address issue. If the AP is associating to the WLC and then a duplicate address is dicovered the AP will temporarily lose IP connectivity, pick up the same IP address again and keep going round in circles.
    How is the AP obtaining its IP address? If you are using a server check the leases and exclude any static addresses issued. If you are using the WLC DHCP server be careful as they aren't intelligent enough to discover conflicts.
    If all else fails do a port span of the WLC uplink and post the trace. If you see the AP transmitting LWAPP traffic to the AP manager, then after a minute it is doing a DHCP Discover then it is defintely IP conflicts.
    You can also configure the AP with a known unused static IP address with the command 'lwapp ap ip address x.x.x.x x.x.x.x'

  • Non-ISP DDNS with Apple DHCP and DNS Services

    I have two questions about Dynamic DNS (DDNS) as it applies to Apple's DNS and DHCP services within my home network. I am not talking about DDNS in the context of making my external-facing router available by a domain name on the Internet using the dynamically-assigned IP from my ISP.
    Starting with Snow Leopard Server, I attempted to use Apple's DNS and DHCP services (I have the firmware-based DHCP service in my router turned off.) The difficulty I immediately faced was that Apple's DHCP implementation didn't update the DNS service as IPs were handed out to DHCP clients. Because of this, it wasn't possible to access hosts by their hostname, since getting a DHCP-assigned dynamic IP at boot-up didn't do anything to automagically register the hostname-to-IP mapping in DNS. Manually registering the hostname in DNS was pointless, becuase over time the client IP address can and did change. I could create static IP assignments based on the MAC address, but doing that for all of the devices on my home network sort of defeated the purpose of using dynamic IPs.
    The only solution I eventually found was to go out and get an open source DHCP server, compile it for my Mac, install it, and configure it. After doing this, everything worked great; every time a new host or other device was booted it got a dynamic IP through DHCP, and then the DHCP server automatically updated Apple's DNS serive with the hostname and assigned IP. I could immediately access every device on my network by hostname. As IP addresses changed over time, the hostname-to-IP mapping in DNS was automatically updated.
    Except, Apple's point upgrades kept breaking my non-Apple DHCP install. Every time I applied software updates to my server I had to go back and re-finagle DHCP to get it to automatically start and run. By the time Lion Server came out, I drank the Kool-Aid and went back to Apple's DHCP implementation. I was disappointed that it still didn't seem able to update DNS with hostnames as it assigned IPs, but I was so tired of mucking about at the command prompt to fix DHCP every time Software Updates broke it, I just lived with the inconvenience of not being able to access devices on my network by hostname.
    I'm sorry to say this, but Windows Server has had this capability since at least server 2003. In fact, until I dumped my Windows Server and switched to Snow Leopard Server, I was running Microsoft's DNS and DHCP services on Server 2003 and they did exactly what I'm describing brilliantly.
    Can anyone offer any advice here? Does Mountain Lion's implementation of DHCP allow for DDNS updates to the DNS service? If not, how are other people handling this? Should I go back to running Windows Server for my DNS and DHCP services? My Netgear WNDR3700 router appears to have the standard, substandard DHCP server in firmware as most home routers, and no facility for DNS at all--much less the ability to update an on-site DNS sever with IP addresess it hands out. In fact, the only appliance I know of that does this is the InfoBlox my employer uses, but that's too expensive for a home solution.
    As a Post Script, I'll add that I've been VERY unhappy that I lost the ability to bind Windows clients to Open Directory under Lion Server. Since I'm starting to see articles that say this capability hasn't been added back to Mountain Lion Server, I'm seriously considering implementing a Windows Server AD master and establishing a "magic triangle" or "golden triangle". If I end up having to do that, I wonder if I might as well just go back to using Microsoft's DNS and DHCP services.

    Hi,
    Whether to move your DHCP to another server depends on the workload of your server. If there are too many clients on the network, you should move your DHCP to another server.
    Did the record which owned by the machine generate before you configure the DnsUpdateProxy group? You can try to regenerate the record and check the result.
    For more detailed information, you can view the link below.
    DNS best practices
    http://technet.microsoft.com/en-us/library/cc778439(v=ws.10).aspx
    Using DNS servers with DHCP
    http://technet.microsoft.com/en-us/library/cc787034(v=ws.10).aspx
    DNS registration changes for Windows Server 2003 based DHCP Servers
    http://technet.microsoft.com/en-us/library/ee441167(v=ws.10).aspx
    Hope this helps.
    Steven Lee
    TechNet Community Support

  • Solaris 10 x86 u5 dhcp and jumpstart install fail

    hello
    I have problem in solaris 10 u5 jumpstart install.
    I can use jumpstart install with dhcp and get a static ip address (assigned by dhcp server) before solaris 10 u3.
    But now I can't use jumpstart install in solaris 10 u5 without setting up a static ip address in sysidcfg.
    I have many x86 machines.
    If I have to set up every different sysidcfg for every machine when I install a new machine.
    I will get into big trouble.
    here is my sysidcfg
    ###### sysidcfg #######
    system_locale=en_US
    timeserver=localhost
    timezone=Asia/Taipei
    terminal=sun-color
    security_policy=NONE
    root_password=xxxxxxxx
    nfs4_domain=example.com
    network_interface=primary { hostname=solaris
    default_route=192.168.100.254
    netmask=255.255.255.0
    protocol_ipv6=no}
    name_service=DNS {domain_name=example.com
    name_server=192.168.100.1
    search=example.com}
    Edited by: cheung79 on 2008/4/19 ?? 5:29

    I think that you should modify the script discovery-install, so you'll be able to create the sysidcfg file dynamically. I had the same problem as you and there is a possibility to add some arguments to the boot command that you execute at the ok prompt. These arguments can be defined in the discovery-install script. It's quite easy.
    Regards,
    Przemek

  • L3 LWAPP Discovery reject wrong vlan...

    Hi,
    I have 10 APs (Static IP) connected to my existing Wireless LAN controller in subnet of 192.168.1.x network in VLAN 127.
    The WLC (ver 4.1.171) is connected to a switch in trunk mode carrying VLANs 127-128. The managemet interface is configured as 10.1.1.1 part of VLAN 128 subnet. AP Manager interface is configured under VLAN 127 and having IP address 192.168.1.2.
    Now, I am getting L3 LWAPP Discovery reject messages on WLC giving the Wrong VLAN error.
    Is there any solution for this?
    And also, I am able to create WLAN interfaces (like WIFI for VLAN 128) but not able to assign the same interface in SSID config page. It's getting defaulted to Management interface and NOT giving option to choose any other interface. What's the use of creation of dynamic interfaces in this case?
    Regards...
    -Ashok.

    It is totally OK to have different subnets for management an AP manager. The message you are seeing is because the APs send a broadcast discovery and since they are on AP manager subnet, they reach the WLC on that vlan with discoveries (and discovery requests are expected on the management interface).
    The message is not a problem by itself if you configured DNS resolution or any other mechanism for the AP to learn the management ip of the WLC. You also need a gateway to route between those 2 subnets.
    To create dynamic interfaces you need to assign them extra vlans on top of your 127,128.

  • Connecting DHCP and AD

    Hi!
    I have a question about bounding DHCP and AD. I´m trying to find out is there a solution for that kind of idea. 
    First of all today we have Linux DHCP server and Microsoft AD. What we do today is configuring MAC and IP in Lunux DHCP so that computer can get to network. It´s a pain in the ass cause it´s even hard to find out what IP is free and what´s not. What we want
    to manage is to get that DHCP configuration automated. Our one question was that is there a solution to add a MAC address or IP or both to every AD Computer object so that if a machine gets to the network then DHCP is asking AD what IP should be given out
    to that object and then AD is the central configuration point. If there is no object then no IP. 
    It´s a very weird idea but maybe there are some solutions for that? In our environment every computer MAC and IP must be linked so there is no option for dynamic IP´s. We can change our DHCP server aswell if it makes anythng easier or possible. We just want
    to automate and link computer objects and IP´s.
    Bye

    Hi!
    I have a question about bounding DHCP and AD. I´m trying to find out is there a solution for that kind of idea. 
    First of all today we have Linux DHCP server and Microsoft AD. What we do today is configuring MAC and IP in Lunux DHCP so that computer can get to network. It´s a pain in the ass cause it´s even hard to find out what IP is free and what´s not. What we want
    to manage is to get that DHCP configuration automated. Our one question was that is there a solution to add a MAC address or IP or both to every AD Computer object so that if a machine gets to the network then DHCP is asking AD what IP should be given out
    to that object and then AD is the central configuration point. If there is no object then no IP. 
    It´s a very weird idea but maybe there are some solutions for that? In our environment every computer MAC and IP must be linked so there is no option for dynamic IP´s. We can change our DHCP server aswell if it makes anythng easier or possible. We just want
    to automate and link computer objects and IP´s.
    Bye

  • SCCM 2012 R2, DHCP and WDS and PXE same server

    hi
    I am using DHCP and PXE on same server and getting error PXE-E55: proxyDHCP did not reply to request on port 4011

    HI,
    To get WDS and DHCP to work on the same machine, you need to configure WDS to share the same server as DHCP, here is how it is done.
    You must have a functioning DHCP server with an active scope. WDS will utilize PXE which requires a DHCP server.
    Whether you plan to co-host WDS and DHCP on the same server or use two different servers you must configure WDS to listen on a specific port. DHCP and WDS both require port number 67. If you have co-hosted WDS and DHCP you can move DHCP or the PXE site role
    to a separate server or use the procedure below to configure the WDS server to listen on a different port.
    Modify the following registry key:
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WDSServer\Providers\WDSPXE              
    Set the registry value to:
    UseDHCPPorts = 0              
    For the new configuration to take effect run the following command on the co-located DHCP and WDS server:
    WDSUTIL /Set-Server /UseDHCPPorts:No /DHCPOption60:Yes
    https://technet.microsoft.com/en-us/library/bb680753.aspx
    -- My System Center blog ccmexec.com -- Twitter
    @ccmexec

  • Error. your computer must be running a supported version of Microsoft Visio and a browser that supports opening files directly from Visio Web Access.

    I have the following inside my SharePoint server 2013 :-
    EnterPrise Wiki site collection.
    i have both "Excel services Application "& "Visio Graphics Service" running correctly.
    The problem i am facing is as follow:-
    when a user click on an Excel sheet or Visio document , it will be shown inside the browser without any problem.
    but if the user click on "Open in Visio" OR "Open in Excel" links inside the browser, they will get the following errors:-
    Sorry, but to open this workbook, your computer must be running a supported version of Microsoft Excel and a browser that supports opening files directly from Office Web Apps.
    To open this document, your computer must be running a supported version of Microsoft Visio and a browser that supports opening files directly from Visio Web Access.
    I have the following settings inside my PC:-
    Office 2010 for Excel, word, power point,etc.
    Visio 2013.
    i have disabled SharePoint foundation support for office 2013
    Can anyone advice on this please?

    Hi,
    Please try to reset the Internet Explorer settings or open Internet Explorer in In-Private browsing and then check if this issue occurs.
    If the issue persists, please try to access SharePoint in another computer with Office 2013 and then check if this issue occurs. Or repair Office and restart your server.
    Here is a blog about the same issue for you to take a look at:
    http://sharepointexit.blogspot.com/2013/12/sorry-but-to-open-this-workbook.html
    Best Regards
    Dennis Guo
    TechNet Community Support

  • I have signed up for adobe conversion to microsoft word and i can't get it to work - can you help me

    I have signed up for adobe conversion to microsoft word and I can not get it to work -  can you help me?

    Hi Mike,
    I've checked your account. I see that you just purchased the subscription this morning. The order is still pending processing, which is why you haven't yet been able to log in an use your subscription. It can take 24-48 hours for a subscription to process fully. Once it does, you'll be able to log in and convert files.
    I apologize for the inconvenience.
    Best,
    Sara

  • I am trying to install an update of Microsoft office and I get a message that says.  This application must be closed ETC.....   I am running Parralell and I think it is there.  The two programs are "Microsoft Database Daemon" "SyncServicesAgent"....

    I am trying to install an update of Microsoft office and I get a message that says.  This application must be closed ETC.....   I am running Parralell and I think it is there.  The two programs are "Microsoft Database Daemon" "SyncServicesAgent".  How do I close these programs?

    If the Office updates have to be run through Win in Parallels, there's not really a section here that covers that , because Neither Office or Parallels are Apple products. There is only a small chance that you'll find someone with BOTH your conditions who just happend to look into a forum on older iMacs.
    Parallels has a forum here:
    http://forum.parallels.com/forum.php
    I think you'll get a faster response there.

  • Problems setting up Verizon DSL (DHCP) and AirPort Extreme

    I have Verizon DSL with DHCP and old router (Linksys WRT54G). I've bought iMac and new router (AirPort Extreme) to connect to iMac wirelessly. I have a Windows computer connected to the Linksys WRT54G. Now here is the story. I can connect verizon DSL modem (it's in bridge mode) to PC directly and connect to the Internet. When I plug AirPort between the DSL modem and PC, auto-configuration doesn't work, AirPort utility says there is problem with internet connection. Router simply can't obtain IP address from verizon's DHCP server. I've tried to copy DNS server addressed from the IP configuration in Windows, the AirPort light went green and Windows indicated connection as successful, however I still cound't browse the Internet because gateway is not set. Any ideas how to make AirPort connect to the internet using DHCP instead of manual settings? I can try to do it from the mac if needed, I don't think it would make any difference though.

    Welcome to the discussions!
    Sorry, I can't quite track exactly what you are trying to do.
    What would the network that you are trying to set up look like?
    Modem>AirPort Extreme>Computers? Are you saying that you won't be using the Linksys in the new setup?
    Sounds like you need to set the Airport Extreme up to supply PPPoE service (which the Linksys is doing now-if the modem is in bridge mode), but I will wait for your response before offering specific info.
    If you've been fiddling with settings, we may need to do a hard-reset on the AX to start over. You should not be fiddling with DNS, etc. Almost always, these settings are done automatically when you have the device set up correctly.

  • My microsoft word and excel programs won't work and files won't open.

    After an automatic HP update, my Microsoft Word and Excel programs won't work and my files won't open.  What caused this and what can I do to fix the problem without losing my files?  I have files that are part of my work and I HAVE to have them ASAP.  Please help.
    Thanks in advance.

    Hi
    Please find the steps to resolve your issue.
    Open Installed Updates by clicking the Start button , clicking Control Panel, clicking Programs, and then, under Programs and Features, clicking View installed updates.
    Click the update that you want to remove, and then click Uninstall.  If you are prompted for an administrator password or confirmation, type the password or provide confirmation.
    Or Try this step
    If this does not resolve your issue then you can try a System restore to the date where unit was working fine steps provided below for you.
    Start in search box type System Restore then click on it then select the Date where unit was working fine.
    Let us know how it goes!
    "I work for HP."
    ****Click the (purple thumbs up icon in the lower right corner of a post) to say thanks****
    ****Please mark Accept As Solution if it solves your problem****
    Regards
    Manjunath

  • Microsoft home and business 2013 64-bit Product Key not working to activate.

    Hi,
    I just bought on ebay india.  ( MS office home and business 2013  64-bit)  During activation the screen says that there was problem.
    Your computer has already installed 64-bit files and 32-bit cannot install. To install 32-bit please delete the files and reinstall.
    I went to chat with Microsoft website and they advised to post the issue here. Is there someone who can help me activate the product. I contact the seller, he says I have sent you 64-bit installation cd.
    Thank you,

    Hi,
    Have you installed any 64-bit Office products before? If yes, please uninstall them using Fix it from Microsoft:
    http://support.microsoft.com/kb/2739501/en-us
    http://support.microsoft.com/kb/971179
    Try installing again, check the result.
    If you are not sure whether you are running 32-bit or 64-bit Office, please refer to this article below:
    http://office.microsoft.com/en-001/support/am-i-running-32-bit-or-64-bit-office-HA010361023.aspx
    Regards,
    Melon Chen
    TechNet Community Support

Maybe you are looking for

  • Reg Sync key and selected measurement poit

    Hi all From the measure_point_list page when we click a particular measurement point it navigates to detail page. Actually the measure point is set in the MeasureCustomController.java with the help of "key". To my knowledge the key is the sync key. I

  • Startup Error in 10.3.9 - Apple appears then goies to Terminal

    Hi Folks Yesterday my hard drive was getting quite full, so I copied a load of work over to an External drive. Upon restart, the Apple Logo appears, then the screen goes black (looks similar to Terminal) and the message: -sh: /etc/profile: is a direc

  • Central web authentication

    I have downloaded the new Cisco ISE, I've managed to configure 802.1x and MAB succesfully but I want to configure wired centralized web authentication, but I cannot find any documentation how to configure ISE and Cisco Catalyst (IOS) switches to use

  • JTextArea Drag and Drop

    Hello everyone, I am attempting to write a simple application that does drag and drop with JTextAreas. Currently, I am using the default handlers, and have discovered it will only transfer the text displayed. I would like to also transfer the ToolTip

  • Photos and Avatars

    I'm not interested in having an Avatar where my picture is supposed to go. I would however like to put a photo in the picture frame which is currently a greyed out generic silhouette. I know that you go into your stuff profile change photos and avata