Master Secondary Cisco WLC environment

I've inherited 2 Cisco wireless WLC's recently.. we have what we consider our Master Cisco WLC 5508 controller, and a 2504 WLC at our HQ.   Bottom line, these WLC's are set as individual master controllers and their respective AP's connect to each of their respective controllers.  The difference we have is the APs and locations which connect to our master wlc at our data center, guest access works fine.  The AP's that connect to our WLC 2504, do not have an Internet POP so today, employee wireless access is working, but I cannot get them guest access as it is not connected in any way to the master in our data center.   I've come over from a Aruba environment where we have a master/local environment and it worked perfectly.   Is this design in a Cisco WLC environment possible ?  Thanks, Dan

You have two different model controllers and there is no master local. In the Cisco side you set the primary, secondary and or tertiary controller. What you need to do is to make sure that the VIP is the same and that each controller is configured in the others mobility group. 
http://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/107188-mobility-groups-faq.html
Then you can anchor the SSID to the WLC in the data center. That's how you can get this to work. 
http://www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Mobility/emob41dg/emob41dg-wrapper/ch10GuAc.html
Please rate helpful post and Cisco Support Community will donate to Kiva
Scotty

Similar Messages

  • Cisco WLC 5500 ver.8 running config

    Does anybody have a complete "show-run" running config from a 5500 series controller, "sanitized" of course, they would care to post to share?
    I need to create some config examples and do not have a piece of hardware to work with.
    Thanks

    =~=~=~=~=~=~=~=~=~=~=~= PuTTY log 2015.01.13 14:15:58 =~=~=~=~=~=~=~=~=~=~=~=
    config paging disable
    Press Enter to continue...
    System Information
    Manufacturer's Name.............................. Cisco Systems Inc.
    Product Name..................................... Cisco Controller
    Product Version.................................. 7.4.130.2
    Bootloader Version............................... 1.0.20
    Field Recovery Image Version..................... 7.6.101.1
    Firmware Version................................. PIC 16.0
    Build Type....................................... DATA + WPS
    System Name...................................... Viten_2504
    System Location..................................
    System Contact...................................
    System ObjectID.................................. 1.3.6.1.4.1.9.1.1279
    IP Address....................................... 192.168.162.20
    Last Reset....................................... Software reset
    System Up Time................................... 1 days 2 hrs 23 mins 10 secs
    System Timezone Location.........................
    System Stats Realtime Interval................... 5
    System Stats Normal Interval..................... 180
    Configured Country............................... US  - United States
    Operating Environment............................ Commercial (0 to 40 C)
    Internal Temp Alarm Limits....................... 0 to 65 C
    Internal Temperature............................. +27 C
    External Temperature............................. +30 C
    Fan Status....................................... 4100 rpm
    State of 802.11b Network......................... Enabled
    State of 802.11a Network......................... Enabled
    Number of WLANs.................................. 2
    Number of Active Clients......................... 0
    Memory Current Usage............................. Unknown
    Memory Average Usage............................. Unknown
    CPU Current Usage................................ Unknown
    CPU Average Usage................................ Unknown
    Burned-in MAC Address............................ 50:06:04:CB:76:C0
    Maximum number of APs supported.................. 25
    AP Bundle Information
    Primary AP Image    Size
    ap1g2            9588
    ap3g1            11308
    ap3g2            11216
    ap801            7172
    ap802            8588
    c1130            5072
    c1140            9428
    c1250            6964
    c1520            8072
    c602i            3744
    Secondary AP Image    Size
    ap1g2            9576
    ap3g1            11296
    ap3g2            11208
    ap801            7164
    ap802            8576
    c1130            5072
    c1140            9428
    c1250            6964
    c1520            8064
    c602i            3736
    Switch Configuration
    802.3x Flow Control Mode......................... Disable
    FIPS prerequisite features....................... Disabled
    secret obfuscation............................... Enabled
    Strong Password Check Features:
         case-check ...........Enabled
         consecutive-check ....Enabled
         default-check .......Enabled
         username-check ......Enabled
    Network Information
    RF-Network Name............................. wnbu
    Web Mode.................................... Disable
    Secure Web Mode............................. Enable
    Secure Web Mode Cipher-Option High.......... Disable
    Secure Web Mode Cipher-Option SSLv2......... Disable
    Secure Web Mode RC4 Cipher Preference....... Disable
    Secure Web Mode SSL Protocol................ Disable
    OCSP........................................ Disabled
    OCSP responder URL..........................
    Secure Shell (ssh).......................... Enable
    Telnet...................................... Disable
    Ethernet Multicast Forwarding............... Disable
    Ethernet Broadcast Forwarding............... Disable
    AP Multicast/Broadcast Mode................. Multicast   Address : 0.0.0.0
    IGMP snooping............................... Enabled
    IGMP timeout................................ 60 seconds
    IGMP Query Interval......................... 20 seconds
    MLD snooping................................ Disabled
    MLD timeout................................. 60 seconds
    MLD query interval.......................... 20 seconds
    User Idle Timeout........................... 300 seconds
    ARP Idle Timeout............................ 300 seconds
    Cisco AP Default Master..................... Disable
    AP Join Priority............................ Disable
    Mgmt Via Wireless Interface................. Disable
    Mgmt Via Dynamic Interface.................. Disable
    Bridge MAC filter Config.................... Enable
    Bridge Security Mode........................ EAP
    Mesh Full Sector DFS........................ Enable
    AP Fallback ................................ Enable
    Web Auth CMCC Support ...................... Disabled
    Web Auth Redirect Ports .................... 80
    Web Auth Proxy Redirect  ................... Disable
    Web Auth Captive-Bypass   .................. Disable
    Web Auth Secure Web  ....................... Enable
    Fast SSID Change ........................... Enabled
    AP Discovery - NAT IP Only ................. Enabled
    IP/MAC Addr Binding Check .................. Enabled
    CCX-lite status ............................ Disable
    oeap-600 dual-rlan-ports ................... Disable
    oeap-600 local-network ..................... Enable
    mDNS snooping............................... Disabled
    mDNS Query Interval......................... 15 minutes
    Port Summary
               STP   Admin   Physical   Physical   Link   Link
    Pr  Type   Stat   Mode     Mode      Status   Status  Trap     POE  
    1  Normal  Forw Enable  Auto       1000 Full  Up     Enable  N/A     
    2  Normal  Disa Enable  Auto       Auto       Down   Enable  N/A     
    3  Normal  Disa Enable  Auto       Auto       Down   Enable  N/A     
    4  Normal  Disa Enable  Auto       Auto       Down   Enable  N/A     
    AP Summary
    Number of APs.................................... 3
    Global AP User Name.............................. admin
    Global AP Dot1x User Name........................ Not Configured
    AP Name             Slots  AP Model              Ethernet MAC       Location          Port  Country  Priority
    Viten_1142_2         2     AIR-LAP1142N-A-K9     00:22:bd:19:d5:80  default location  LAG      US       1
    Viten_1142_1         2     AIR-LAP1142N-A-K9     00:22:90:90:df:6c  default location  LAG      US       1
    Viten_2602_2         2     AIR-CAP2602I-A-K9     c0:67:af:58:e0:db  default location  LAG      US       1
    AP Tcp-Mss-Adjust Info
    AP Name              TCP State  MSS Size
    Viten_1142_2         disabled   -
    Viten_1142_1         disabled   -
    Viten_2602_2         disabled   -
    AP Location
    Total Number of AP Groups........................ 0    
    Site Name........................................ default-group
    Site Description................................. <none>
    NAS-identifier................................... Viten_2504
    AP Operating Class............................... Not-configured
    RF Profile
    2.4 GHz band..................................... <none>
    5 GHz band....................................... <none>
    WLAN ID          Interface          Network Admission Control          Radio Policy
     1               management           Disabled                          None
     4               management           Disabled                          None
    AP Name             Slots  AP Model             Ethernet MAC       Location          Port  Country  Priority
    Viten_1142_2         2     AIR-LAP1142N-A-K9    00:22:bd:19:d5:80  default location  LAG   US       1
    Viten_1142_1         2     AIR-LAP1142N-A-K9    00:22:90:90:df:6c  default location  LAG   US       1
    Viten_2602_2         2     AIR-CAP2602I-A-K9    c0:67:af:58:e0:db  default location  LAG   US       1
    RF Profile
    Number of RF Profiles............................ 7
    Out Of Box State................................. Disabled
    RF Profile Name                    Band     Description                         11n-client-only
    High-Client-Density-(802.11a)  5 GHz    <none>                      disable No     
    High-Client-Density-(802.11bg)  2.4 GHz  <none>                      disable No     
    Low-Client-Density-(802.11a)  5 GHz    <none>                      disable No     
    Low-Client-Density-(802.11bg)  2.4 GHz  <none>                      disable No     
    Typical-Client-Density(802.11bg)  2.4 GHz  <none>                      disable No     
    Typical-Client-Density-(802.11a)  5 GHz    <none>                      disable No     
    test                       5 GHz    <none>                      disable No     
    RF Profile name................................ High-Client-Density-(802.11a)
    Description...................................... <none>
    11n-client-only.................................. disabled
    Radio policy..................................... 5 GHz
    Transmit Power Threshold v1...................... -65 dBm
    Transmit Power Threshold v2...................... -67 dBm
    Min Transmit Power............................... 7 dBm
    Max Transmit Power............................... 30 dBm
    802.11a Operational Rates
        802.11a 6M Rate.............................. Mandatory
        802.11a 9M Rate.............................. Supported
        802.11a 12M Rate............................. Mandatory
        802.11a 18M Rate............................. Supported
        802.11a 24M Rate............................. Mandatory
        802.11a 36M Rate............................. Supported
        802.11a 48M Rate............................. Supported
        802.11a 54M Rate............................. Supported
    Max Clients...................................... 200
    WLAN ID      maxClients
    Client Trap Threshold............................ 50
    Multicast Data Rate.............................. 0
    Rx Sop Threshold................................. -78 dBm
    Cca Threshold.................................... 0 dBm
    Slot Admin State:................................ Enabled
    Band Select Probe Response....................... Disabled
    Band Select Cycle Count.......................... 2 cycles
    Band Select Cycle Threshold...................... 200 milliseconds
    Band Select Expire Suppression................... 20 seconds
    Band Select Expire Dual Band..................... 60 seconds
    Band Select Client Rssi.......................... -80 dBm
    Load Balancing Denial............................ 3 count
    Load Balancing Window............................ 5 clients
    Coverage Data.................................... -80 dBm
    Coverage Voice................................... -80 dBm
    Coverage Exception............................... 3 clients
    Coverage Level................................... 25 %
    802.11n MCS Rates
        MCS-00 Rate.................................. enabled
        MCS-01 Rate.................................. enabled
        MCS-02 Rate.................................. enabled
        MCS-03 Rate.................................. enabled
        MCS-04 Rate.................................. enabled
        MCS-05 Rate.................................. enabled
        MCS-06 Rate.................................. enabled
        MCS-07 Rate.................................. enabled
        MCS-08 Rate.................................. enabled
        MCS-09 Rate.................................. enabled
        MCS-10 Rate.................................. enabled
        MCS-11 Rate.................................. enabled
        MCS-12 Rate.................................. enabled
        MCS-13 Rate.................................. enabled
        MCS-14 Rate.................................. enabled
        MCS-15 Rate.................................. enabled
        MCS-16 Rate.................................. enabled
        MCS-17 Rate.................................. enabled
        MCS-18 Rate.................................. enabled
        MCS-19 Rate.................................. enabled
        MCS-20 Rate.................................. enabled
        MCS-21 Rate.................................. enabled
        MCS-22 Rate.................................. enabled
        MCS-23 Rate.................................. enabled
    RF Profile name................................ High-Client-Density-(802.11bg)
    Description...................................... <none>
    11n-client-only.................................. disabled
    Radio policy..................................... 2.4 GHz
    Transmit Power Threshold v1...................... -70 dBm
    Transmit Power Threshold v2...................... -67 dBm
    Min Transmit Power............................... 7 dBm
    Max Transmit Power............................... 30 dBm
    802.11b/g Operational Rates
        802.11b/g 1M Rate............................ Disabled
        802.11b/g 2M Rate............................ Disabled
        802.11b/g 5.5M Rate.......................... Disabled
        802.11b/g 11M Rate........................... Disabled
        802.11g 6M Rate.............................. Disabled
        802.11g 9M Rate.............................. Supported
        802.11g 12M Rate............................. Mandatory
        802.11g 18M Rate............................. Supported
        802.11g 24M Rate............................. Supported
        802.11g 36M Rate............................. Supported
        802.11g 48M Rate............................. Supported
        802.11g 54M Rate............................. Supported
    Max Clients...................................... 200
    WLAN ID      maxClients
    Client Trap Threshold............................ 50
    Multicast Data Rate.............................. 0
    Rx Sop Threshold................................. -82 dBm
    Cca Threshold.................................... 0 dBm
    Slot Admin State:................................ Enabled
    Band Select Probe Response....................... Disabled
    Band Select Cycle Count.......................... 2 cycles
    Band Select Cycle Threshold...................... 200 milliseconds
    Band Select Expire Suppression................... 20 seconds
    Band Select Expire Dual Band..................... 60 seconds
    Band Select Client Rssi.......................... -80 dBm
    Load Balancing Denial............................ 3 count
    Load Balancing Window............................ 5 clients
    Coverage Data.................................... -80 dBm
    Coverage Voice................................... -80 dBm
    Coverage Exception............................... 3 clients
    Coverage Level................................... 25 %
    802.11n MCS Rates
        MCS-00 Rate.................................. enabled
        MCS-01 Rate.................................. enabled
        MCS-02 Rate.................................. enabled
        MCS-03 Rate.................................. enabled
        MCS-04 Rate.................................. enabled
        MCS-05 Rate.................................. enabled
        MCS-06 Rate.................................. enabled
        MCS-07 Rate.................................. enabled
        MCS-08 Rate.................................. enabled
        MCS-09 Rate.................................. enabled
        MCS-10 Rate.................................. enabled
        MCS-11 Rate.................................. enabled
        MCS-12 Rate.................................. enabled
        MCS-13 Rate.................................. enabled
        MCS-14 Rate.................................. enabled
        MCS-15 Rate.................................. enabled
        MCS-16 Rate.................................. enabled
        MCS-17 Rate.................................. enabled
        MCS-18 Rate.................................. enabled
        MCS-19 Rate.................................. enabled
        MCS-20 Rate.................................. enabled
        MCS-21 Rate.................................. enabled
        MCS-22 Rate.................................. enabled
        MCS-23 Rate.................................. enabled
    RF Profile name................................ Low-Client-Density-(802.11a)
    Description...................................... <none>
    11n-client-only.................................. disabled
    Radio policy..................................... 5 GHz
    Transmit Power Threshold v1...................... -60 dBm
    Transmit Power Threshold v2...................... -67 dBm
    Min Transmit Power............................... -10 dBm
    Max Transmit Power............................... 30 dBm
    802.11a Operational Rates
        802.11a 6M Rate.............................. Mandatory
        802.11a 9M Rate.............................. Supported
        802.11a 12M Rate............................. Mandatory
        802.11a 18M Rate............................. Supported
        802.11a 24M Rate............................. Mandatory
        802.11a 36M Rate............................. Supported
        802.11a 48M Rate............................. Supported
        802.11a 54M Rate............................. Supported
    Max Clients...................................... 200
    WLAN ID      maxClients
    Client Trap Threshold............................ 50
    Multicast Data Rate.............................. 0
    Rx Sop Threshold................................. -80 dBm
    Cca Threshold.................................... 0 dBm
    Slot Admin State:................................ Enabled
    Band Select Probe Response....................... Disabled
    Band Select Cycle Count.......................... 2 cycles
    Band Select Cycle Threshold...................... 200 milliseconds
    Band Select Expire Suppression................... 20 seconds
    Band Select Expire Dual Band..................... 60 seconds
    Band Select Client Rssi.......................... -80 dBm
    Load Balancing Denial............................ 3 count
    Load Balancing Window............................ 5 clients
    Coverage Data.................................... -90 dBm
    Coverage Voice................................... -90 dBm
    Coverage Exception............................... 3 clients
    Coverage Level................................... 25 %
    802.11n MCS Rates
        MCS-00 Rate.................................. enabled
        MCS-01 Rate.................................. enabled
        MCS-02 Rate.................................. enabled
        MCS-03 Rate.................................. enabled
        MCS-04 Rate.................................. enabled
        MCS-05 Rate.................................. enabled
        MCS-06 Rate.................................. enabled
        MCS-07 Rate.................................. enabled
        MCS-08 Rate.................................. enabled
        MCS-09 Rate.................................. enabled
        MCS-10 Rate.................................. enabled
        MCS-11 Rate.................................. enabled
        MCS-12 Rate.................................. enabled
        MCS-13 Rate.................................. enabled
        MCS-14 Rate.................................. enabled
        MCS-15 Rate.................................. enabled
        MCS-16 Rate.................................. enabled
        MCS-17 Rate.................................. enabled
        MCS-18 Rate.................................. enabled
        MCS-19 Rate.................................. enabled
        MCS-20 Rate.................................. enabled
        MCS-21 Rate.................................. enabled
        MCS-22 Rate.................................. enabled
        MCS-23 Rate.................................. enabled
    RF Profile name................................ Low-Client-Density-(802.11bg)
    Description...................................... <none>
    11n-client-only.................................. disabled
    Radio policy..................................... 2.4 GHz
    Transmit Power Threshold v1...................... -65 dBm
    Transmit Power Threshold v2...................... -67 dBm
    Min Transmit Power............................... -10 dBm
    Max Transmit Power............................... 30 dBm
    802.11b/g Operational Rates
        802.11b/g 1M Rate............................ Mandatory
        802.11b/g 2M Rate............................ Mandatory
        802.11b/g 5.5M Rate.......................... Mandatory
        802.11b/g 11M Rate........................... Mandatory
        802.11g 6M Rate.............................. Supported
        802.11g 9M Rate.............................. Supported
        802.11g 12M Rate............................. Supported
        802.11g 18M Rate............................. Supported
        802.11g 24M Rate............................. Supported
        802.11g 36M Rate............................. Supported
        802.11g 48M Rate............................. Supported
        802.11g 54M Rate............................. Supported
    Max Clients...................................... 200
    WLAN ID      maxClients
    Client Trap Threshold............................ 50
    Multicast Data Rate.............................. 0
    Rx Sop Threshold................................. -85 dBm
    Cca Threshold.................................... 0 dBm
    Slot Admin State:................................ Enabled
    Band Select Probe Response....................... Disabled
    Band Select Cycle Count.......................... 2 cycles
    Band Select Cycle Threshold...................... 200 milliseconds
    Band Select Expire Suppression................... 20 seconds
    Band Select Expire Dual Band..................... 60 seconds
    Band Select Client Rssi.......................... -80 dBm
    Load Balancing Denial............................ 3 count
    Load Balancing Window............................ 5 clients
    Coverage Data.................................... -90 dBm
    Coverage Voice................................... -90 dBm
    Coverage Exception............................... 3 clients
    Coverage Level................................... 25 %
    802.11n MCS Rates
        MCS-00 Rate.................................. enabled
        MCS-01 Rate.................................. enabled
        MCS-02 Rate.................................. enabled
        MCS-03 Rate.................................. enabled
        MCS-04 Rate.................................. enabled
        MCS-05 Rate.................................. enabled
        MCS-06 Rate.................................. enabled
        MCS-07 Rate.................................. enabled
        MCS-08 Rate.................................. enabled
        MCS-09 Rate.................................. enabled
        MCS-10 Rate.................................. enabled
        MCS-11 Rate.................................. enabled
        MCS-12 Rate.................................. enabled
        MCS-13 Rate.................................. enabled
        MCS-14 Rate.................................. enabled
        MCS-15 Rate.................................. enabled
        MCS-16 Rate.................................. enabled
        MCS-17 Rate.................................. enabled
        MCS-18 Rate.................................. enabled
        MCS-19 Rate.................................. enabled
        MCS-20 Rate.................................. enabled
        MCS-21 Rate.................................. enabled
        MCS-22 Rate.................................. enabled
        MCS-23 Rate.................................. enabled
    RF Profile name................................ Typical-Client-Density(802.11bg)
    Description...................................... <none>
    11n-client-only.................................. disabled
    Radio policy..................................... 2.4 GHz
    Transmit Power Threshold v1...................... -70 dBm
    Transmit Power Threshold v2...................... -67 dBm
    Min Transmit Power............................... -10 dBm
    Max Transmit Power............................... 30 dBm
    802.11b/g Operational Rates
        802.11b/g 1M Rate............................ Disabled
        802.11b/g 2M Rate............................ Disabled
        802.11b/g 5.5M Rate.......................... Disabled
        802.11b/g 11M Rate........................... Disabled
        802.11g 6M Rate.............................. Disabled
        802.11g 9M Rate.............................. Supported
        802.11g 12M Rate............................. Mandatory
        802.11g 18M Rate............................. Supported
        802.11g 24M Rate............................. Supported
        802.11g 36M Rate............................. Supported
        802.11g 48M Rate............................. Supported
        802.11g 54M Rate............................. Supported
    Max Clients...................................... 200
    WLAN ID      maxClients
    Client Trap Threshold............................ 50
    Multicast Data Rate.............................. 0
    Rx Sop Threshold................................. 0 dBm
    Cca Threshold.................................... 0 dBm
    Slot Admin State:................................ Enabled
    Band Select Probe Response....................... Disabled
    Band Select Cycle Count.......................... 2 cycles
    Band Select Cycle Threshold...................... 200 milliseconds
    Band Select Expire Suppression................... 20 seconds
    Band Select Expire Dual Band..................... 60 seconds
    Band Select Client Rssi.......................... -80 dBm
    Load Balancing Denial............................ 3 count
    Load Balancing Window............................ 5 clients
    Coverage Data.................................... -80 dBm
    Coverage Voice................................... -80 dBm
    Coverage Exception............................... 3 clients
    Coverage Level................................... 25 %
    802.11n MCS Rates
        MCS-00 Rate.................................. enabled
        MCS-01 Rate.................................. enabled
        MCS-02 Rate.................................. enabled
        MCS-03 Rate.................................. enabled
        MCS-04 Rate.................................. enabled
        MCS-05 Rate.................................. enabled
        MCS-06 Rate.................................. enabled
        MCS-07 Rate.................................. enabled
        MCS-08 Rate.................................. enabled
        MCS-09 Rate.................................. enabled
        MCS-10 Rate.................................. enabled
        MCS-11 Rate.................................. enabled
        MCS-12 Rate.................................. enabled
        MCS-13 Rate.................................. enabled
        MCS-14 Rate.................................. enabled
        MCS-15 Rate.................................. enabled
        MCS-16 Rate.................................. enabled
        MCS-17 Rate.................................. enabled
        MCS-18 Rate.................................. enabled
        MCS-19 Rate.................................. enabled
        MCS-20 Rate.................................. enabled
        MCS-21 Rate.................................. enabled
        MCS-22 Rate.................................. enabled
        MCS-23 Rate.................................. enabled
    RF Profile name................................ Typical-Client-Density-(802.11a)
    Description...................................... <none>
    11n-client-only.................................. disabled
    Radio policy..................................... 5 GHz
    Transmit Power Threshold v1...................... -70 dBm
    Transmit Power Threshold v2...................... -67 dBm
    Min Transmit Power............................... -10 dBm
    Max Transmit Power............................... 30 dBm
    802.11a Operational Rates
        802.11a 6M Rate.............................. Mandatory
        802.11a 9M Rate.............................. Supported
        802.11a 12M Rate............................. Mandatory
        802.11a 18M Rate............................. Supported
        802.11a 24M Rate............................. Mandatory
        802.11a 36M Rate............................. Supported
        802.11a 48M Rate............................. Supported
        802.11a 54M Rate............................. Supported
    Max Clients...................................... 200
    WLAN ID      maxClients
    Client Trap Threshold............................ 50
    Multicast Data Rate.............................. 0
    Rx Sop Threshold................................. 0 dBm
    Cca Threshold.................................... 0 dBm
    Slot Admin State:................................ Enabled
    Band Select Probe Response....................... Disabled
    Band Select Cycle Count.......................... 2 cycles
    Band Select Cycle Threshold...................... 200 milliseconds
    Band Select Expire Suppression................... 20 seconds
    Band Select Expire Dual Band..................... 60 seconds
    Band Select Client Rssi.......................... -80 dBm
    Load Balancing Denial............................ 3 count
    Load Balancing Window............................ 5 clients
    Coverage Data.................................... -80 dBm
    Coverage Voice................................... -80 dBm
    Coverage Exception............................... 3 clients
    Coverage Level................................... 25 %
    802.11n MCS Rates
        MCS-00 Rate.................................. enabled
        MCS-01 Rate.................................. enabled
        MCS-02 Rate.................................. enabled
        MCS-03 Rate.................................. enabled
        MCS-04 Rate.................................. enabled
        MCS-05 Rate.................................. enabled
        MCS-06 Rate.................................. enabled
        MCS-07 Rate.................................. enabled
        MCS-08 Rate.................................. enabled
        MCS-09 Rate.................................. enabled
        MCS-10 Rate.................................. enabled
        MCS-11 Rate.................................. enabled
        MCS-12 Rate.................................. enabled
        MCS-13 Rate.................................. enabled
        MCS-14 Rate.................................. enabled
        MCS-15 Rate.................................. enabled
        MCS-16 Rate.................................. enabled
        MCS-17 Rate.................................. enabled
        MCS-18 Rate.................................. enabled
        MCS-19 Rate.................................. enabled
        MCS-20 Rate.................................. enabled
        MCS-21 Rate.................................. enabled
        MCS-22 Rate.................................. enabled
        MCS-23 Rate.................................. enabled
    RF Profile name................................ test
    Description...................................... <none>
    11n-client-only.................................. disabled
    Radio policy..................................... 5 GHz
    Transmit Power Threshold v1...................... -70 dBm
    Transmit Power Threshold v2...................... -67 dBm
    Min Transmit Power............................... -10 dBm
    Max Transmit Power............................... 30 dBm
    802.11a Operational Rates
        802.11a 6M Rate.............................. Mandatory
        802.11a 9M Rate.............................. Supported
        802.11a 12M Rate............................. Mandatory
        802.11a 18M Rate............................. Supported
        802.11a 24M Rate............................. Mandatory
        802.11a 36M Rate............................. Supported
        802.11a 48M Rate............................. Supported
        802.11a 54M Rate............................. Supported
    Max Clients...................................... 200
    WLAN ID      maxClients
    Client Trap Threshold............................ 50
    Multicast Data Rate.............................. 0
    Rx Sop Threshold................................. 0 dBm
    Cca Threshold.................................... 0 dBm
    Slot Admin State:................................ Enabled
    Band Select Probe Response....................... Disabled
    Band Select Cycle Count.......................... 2 cycles
    Band Select Cycle Threshold...................... 200 milliseconds
    Band Select Expire Suppression................... 20 seconds
    Band Select Expire Dual Band..................... 60 seconds
    Band Select Client Rssi.......................... -80 dBm
    Load Balancing Denial............................ 3 count
    Load Balancing Window............................ 5 clients
    Coverage Data.................................... -80 dBm
    Coverage Voice................................... -80 dBm
    Coverage Exception............................... 3 clients
    Coverage Level................................... 25 %
    802.11n MCS Rates
        MCS-00 Rate.................................. enabled
        MCS-01 Rate.................................. enabled
        MCS-02 Rate.................................. enabled
        MCS-03 Rate.................................. enabled
        MCS-04 Rate.................................. enabled
        MCS-05 Rate.................................. enabled
        MCS-06 Rate.................................. enabled
        MCS-07 Rate.................................. enabled
        MCS-08 Rate.................................. enabled
        MCS-09 Rate.................................. enabled
        MCS-10 Rate.................................. enabled
        MCS-11 Rate.................................. enabled
        MCS-12 Rate.................................. enabled
        MCS-13 Rate.................................. enabled
        MCS-14 Rate.................................. enabled
        MCS-15 Rate.................................. enabled
        MCS-16 Rate.................................. enabled
        MCS-17 Rate.................................. enabled
        MCS-18 Rate.................................. enabled
        MCS-19 Rate.................................. enabled
        MCS-20 Rate.................................. enabled
        MCS-21 Rate.................................. enabled
        MCS-22 Rate.................................. enabled
        MCS-23 Rate.................................. enabled
    AP Config
    Cisco AP Identifier.............................. 3
    Cisco AP Name.................................... Viten_1142_2
    Country code..................................... US  - United States
    Regulatory Domain allowed by Country............. 802.11bg:-A     802.11a:-A
    AP Country code.................................. US  - United States
    AP Regulatory Domain............................. -A
    Switch Port Number .............................. 13
    MAC Address...................................... 00:22:bd:19:d5:80
    IP Address Configuration......................... DHCP
    IP Address....................................... 192.168.162.110
    IP NetMask....................................... 255.255.255.0
    Gateway IP Addr.................................. 192.168.162.1
    NAT External IP Address.......................... None
    CAPWAP Path MTU.................................. 1485
    Telnet State..................................... Enabled
    Ssh State........................................ Disabled
    Cisco AP Location................................ default location
    Cisco AP Floor Label............................. 0
    Cisco AP Group Name.............................. default-group
    Primary Cisco Switch Name........................ Viten_2504
    Primary Cisco Switch IP Address.................. 192.168.162.20
    Secondary Cisco Switch Name......................
    Secondary Cisco Switch IP Address................ Not Configured
    Tertiary Cisco Switch Name.......................
    Tertiary Cisco Switch IP Address................. Not Configured
    Administrative State ............................ ADMIN_ENABLED
    Operation State ................................. REGISTERED
    Mirroring Mode .................................. Disabled
    AP Mode ......................................... FlexConnect
    Public Safety ................................... Disabled
    AP SubMode ...................................... Not Configured
    Remote AP Debug ................................. Disabled
    Logging trap severity level ..................... informational
    Logging syslog facility ......................... system
    S/W  Version .................................... 7.4.130.2
    Boot  Version ................................... 12.4.18.0
    Mini IOS Version ................................ 3.0.51.0
    Stats Reporting Period .......................... 180
    Stats Collection Mode ........................... normal
    LED State........................................ Enabled
    PoE Pre-Standard Switch.......................... Disabled
    PoE Power Injector MAC Addr...................... Disabled
    Power Type/Mode.................................. Power injector / Normal mode
    Number Of Slots.................................. 2
    AP Model......................................... AIR-LAP1142N-A-K9   
    AP Image......................................... C1140-K9W8-M
    IOS Version...................................... 15.2(20150109:075323)$
    Reset Button..................................... Enabled
    AP Serial Number................................. FTX1332SBYY
    AP Certificate Type.............................. Manufacture Installed
    FlexConnect Vlan mode :.......................... Disabled
    FlexConnect Group................................ Not a member of any group
    Group VLAN ACL Mappings
    FlexConnect Local-Split ACLs :
    WLAN ID   PROFILE NAME                       ACL                                 TYPE
     Flexconnect Central-Dhcp Values :
    WLAN ID   PROFILE NAME                         Central-Dhcp      DNS Override      Nat-Pat     Type
      4       test123                                  False             False          False      Wlan
    FlexConnect Backup Auth Radius Servers :
     Primary Radius Server........................... Disabled
     Secondary Radius Server......................... Disabled
    AP User Mode..................................... CUSTOMIZED
    AP User Name..................................... admin
    AP Dot1x User Mode............................... Not Configured
    AP Dot1x User Name............................... Not Configured
    Cisco AP system logging host..................... 10.6.0.25
    AP Up Time....................................... 1 days, 02 h 13 m 41 s
    AP LWAPP Up Time................................. 1 days, 02 h 12 m 25 s
    Join Date and Time............................... Mon Jan 12 12:55:07 2015
    Join Taken Time.................................. 0 days, 00 h 01 m 15 s
    Attributes for Slot  0
        Radio Type................................... RADIO_TYPE_80211n-2.4
        Administrative State ........................ ADMIN_DISABLED
        Operation State ............................. DOWN
        Operation State Down Cause................... Radio is exiting inline CDP low power mode holddown.
        Operation State Down Code.................... RADIO_RC_EXIT_LOW_PWR
        Radio Role .................................. ACCESS
        Radio Mode .................................. Remote
        CellId ...................................... 0
        Station Configuration
          Configuration ............................. AUTOMATIC
          Number Of WLANs ........................... 1
          Medium Occupancy Limit .................... 100
          CFP Period ................................ 4
          CFP MaxDuration ........................... 60
          BSSID ..................................... 00:23:eb:dc:c6:90
          Operation Rate Set
            1000 Kilo Bits........................... MANDATORY
            2000 Kilo Bits........................... MANDATORY
            5500 Kilo Bits........................... MANDATORY
            11000 Kilo Bits.......................... MANDATORY
            6000 Kilo Bits........................... SUPPORTED
            9000 Kilo Bits........................... SUPPORTED
            12000 Kilo Bits.......................... SUPPORTED
            18000 Kilo Bits.......................... SUPPORTED
            24000 Kilo Bits.......................... SUPPORTED
            36000 Kilo Bits.......................... SUPPORTED
            48000 Kilo Bits.......................... SUPPORTED
            54000 Kilo Bits.......................... SUPPORTED
          MCS Set
            MCS 0.................................... SUPPORTED
            MCS 1.................................... SUPPORTED
            MCS 2.................................... SUPPORTED
            MCS 3.................................... SUPPORTED
            MCS 4.................................... SUPPORTED
            MCS 5.................................... SUPPORTED
            MCS 6.................................... SUPPORTED
            MCS 7.................................... SUPPORTED
            MCS 8.................................... SUPPORTED
            MCS 9.................................... SUPPORTED
            MCS 10................................... SUPPORTED
            MCS 11................................... SUPPORTED
            MCS 12................................... SUPPORTED
            MCS 13................................... SUPPORTED
            MCS 14................................... SUPPORTED
            MCS 15................................... SUPPORTED
            MCS 16................................... DISABLED
            MCS 17................................... DISABLED
            MCS 18................................... DISABLED
            MCS 19................................... DISABLED
            MCS 20................................... DISABLED
            MCS 21................................... DISABLED
            MCS 22................................... DISABLED
            MCS 23................................... DISABLED
          Beacon Period ............................. 100
          Fragmentation Threshold ................... 2346
          Multi Domain Capability Implemented ....... TRUE
          Multi Domain Capability Enabled ........... TRUE
          Country String ............................ US
        Multi Domain Capability
          Configuration ............................. AUTOMATIC
          First Chan Num ............................ 1
          Number Of Channels ........................ 11
        MAC Operation Parameters
          Configuration ............................. AUTOMATIC
          Fragmentation Threshold ................... 2346
          Packet Retry Limit ........................ 64
        Tx Power
          Num Of Supported Power Levels ............. 8
          Tx Power Level 1 .......................... 20 dBm
          Tx Power Level 2 .......................... 17 dBm
          Tx Power Level 3 .......................... 14 dBm
          Tx Power Level 4 .......................... 11 dBm
          Tx Power Level 5 .......................... 8 dBm
          Tx Power Level 6 .......................... 5 dBm
          Tx Power Level 7 .......................... 2 dBm
          Tx Power Level 8 .......................... -1 dBm
          Tx Power Configuration .................... AUTOMATIC
          Current Tx Power Level .................... 6
          Tx Power Assigned By ...................... DTPC
        Phy OFDM parameters
          Configuration ............................. AUTOMATIC
          Current Channel ........................... 11
          Channel Assigned By ....................... DCA
          Extension Channel ......................... NONE
          Channel Width.............................. 20 Mhz
          Allowed Channel List....................... 1,2,3,4,5,6,7,8,9,10,11
          TI Threshold .............................. -50
          Legacy Tx Beamforming Configuration ....... AUTOMATIC
          Legacy Tx Beamforming ..................... DISABLED
          Antenna Type............................... INTERNAL_ANTENNA
          Internal Antenna Gain (in .5 dBi units).... 8
          Diversity.................................. DIVERSITY_ENABLED
          802.11n Antennas
             A....................................... ENABLED
             B....................................... ENABLED
             C....................................... ENABLED
        Performance Profile Parameters
          Configuration ............................. AUTOMATIC
          Interference threshold..................... 10 %
          Noise threshold............................  -70 dBm
          RF utilization threshold................... 80 %
          Data-rate threshold........................ 1000000 bps
          Client threshold........................... 12 clients
          Coverage SNR threshold..................... 12 dB
          Coverage exception level................... 25 %
          Client minimum exception level............. 3 clients
        Rogue Containment Information
        Containment Count............................ 0
        CleanAir Management Information
            CleanAir Capable......................... No
    Cisco AP Identifier.............................. 3
    Cisco AP Name.................................... Viten_1142_2
    Country code..................................... US  - United States
    Regulatory Domain allowed by Country............. 802.11bg:-A     802.11a:-A
    AP Country code.................................. US  - United States
    AP Regulatory Domain............................. -A
    Switch Port Number .............................. 13
    MAC Address...................................... 00:22:bd:19:d5:80
    IP Address Configuration......................... DHCP
    IP Address....................................... 192.168.162.110
    IP NetMask....................................... 255.255.255.0
    Gateway IP Addr.................................. 192.168.162.1
    NAT External IP Address.......................... None
    CAPWAP Path MTU.................................. 1485
    Telnet State..................................... Enabled
    Ssh State........................................ Disabled
    Cisco AP Location................................ default location
    Cisco AP Floor Label............................. 0
    Cisco AP Group Name.............................. default-group
    Primary Cisco Switch Name........................ Viten_2504
    Primary Cisco Switch IP Address.................. 192.168.162.20
    Secondary Cisco Switch Name......................
    Secondary Cisco Switch IP Address................ Not Configured
    Tertiary Cisco Switch Name.......................
    Tertiary Cisco Switch IP Address................. Not Configured
    Administrative State ............................ ADMIN_ENABLED
    Operation State ................................. REGISTERED
    Mirroring Mode .................................. Disabled
    AP Mode ......................................... FlexConnect
    Public Safety ................................... Disabled
    AP SubMode ...................................... Not Configured
    Remote AP Debug ................................. Disabled
    Logging trap severity level ..................... informational
    Logging syslog facility ......................... system
    S/W  Version .................................... 7.4.130.2
    Boot  Version ................................... 12.4.18.0
    Mini IOS Version ................................ 3.0.51.0
    Stats Reporting Period .......................... 180
    Stats Collection Mode ........................... normal
    LED State........................................ Enabled
    PoE Pre-Standard Switch.......................... Disabled
    PoE Power Injector MAC Addr...................... Disabled
    Power Type/Mode.................................. Power injector / Normal mode
    Number Of Slots.................................. 2
    AP Model......................................... AIR-LAP1142N-A-K9   
    AP Image......................................... C1140-K9W8-M
    IOS Version...................................... 15.2(20150109:075323)$
    Reset Button..................................... Enabled
    AP Serial Number................................. FTX1332SBYY
    AP Certificate Type.............................. Manufacture Installed
    FlexConnect Vlan mode :.......................... Disabled
    FlexConnect Group................................ Not a member of any group
    Group VLAN ACL Mappings
    FlexConnect Local-Split ACLs :
    WLAN ID   PROFILE NAME                       ACL                                 TYPE
     Flexconnect Central-Dhcp Values :
    WLAN ID   PROFILE NAME                         Central-Dhcp      DNS Override      Nat-Pat     Type
      4       test123                                  False             False          False      Wlan
    FlexConnect Backup Auth Radius Servers :
     Primary Radius Server........................... Disabled
     Secondary Radius Server......................... Disabled
    AP User Mode..................................... CUSTOMIZED
    AP User Name..................................... admin
    AP Dot1x User Mode............................... Not Configured
    AP Dot1x User Name............................... Not Configured
    Cisco AP system logging host..................... 10.6.0.25
    AP Up Time....................................... 1 days, 02 h 13 m 41 s
    AP LWAPP Up Time................................. 1 days, 02 h 12 m 25 s
    Join Date and Time............................... Mon Jan 12 12:55:07 2015
    Join Taken Time.................................. 0 days, 00 h 01 m 15 s
    Attributes for Slot  1
        Radio Type................................... RADIO_TYPE_80211n-5
        Radio Subband................................ RADIO_SUBBAND_ALL
        Administrative State ........................ ADMIN_ENABLED
        Operation State ............................. UP
        Radio Role .................................. ACCESS
        Radio Mode .................................. Remote
        CellId ...................................... 0
        Station Configuration
          Configuration ............................. AUTOMATIC
          Number Of WLANs ........................... 1
          Medium Occupancy Limit .................... 100
          CFP Period ................................ 4
          CFP MaxDuration ........................... 60
          BSSID ..................................... 00:23:eb:dc:c6:90
          Operation Rate Set
            6000 Kilo Bits........................... MANDATORY
            9000 Kilo Bits........................... SUPPORTED
            12000 Kilo Bits.......................... MANDATORY
            18000 Kilo Bits.......................... SUPPORTED
            24000 Kilo Bits.......................... MANDATORY
            36000 Kilo Bits.......................... SUPPORTED
            48000 Kilo Bits.......................... SUPPORTED
            54000 Kilo Bits.......................... SUPPORTED
          MCS Set
            MCS 0.................................... SUPPORTED
            MCS 1.................................... SUPPORTED
            MCS 2.................................... SUPPORTED
            MCS 3.................................... SUPPORTED
            MCS 4.................................... SUPPORTED
            MCS 5.................................... SUPPORTED
            MCS 6.................................... SUPPORTED
            MCS 7.................................... SUPPORTED
            MCS 8.................................... SUPPORTED
            MCS 9.................................... SUPPORTED
            MCS 10................................... SUPPORTED
            MCS 11................................... SUPPORTED
            MCS 12................................... SUPPORTED
            MCS 13................................... SUPPORTED
            MCS 14................................... SUPPORTED
            MCS 15................................... SUPPORTED
            MCS 16................................... DISABLED
            MCS 17................................... DISABLED
            MCS 18................................... DISABLED
            MCS 19................................... DISABLED
            MCS 20................................... DISABLED
            MCS 21................................... DISABLED
            MCS 22................................... DISABLED
            MCS 23................................... DISABLED
          Beacon Period ............................. 100
          Fragmentation Threshold ................... 2346
          Multi Domain Capability Implemented ....... TRUE
          Multi Domain Capability Enabled ........... TRUE
          Country String ............................ US
        Multi Domain Capability
          Configuration ............................. AUTOMATIC
          First Chan Num ............................ 36
          Number Of Channels ........................ 21
        MAC Operation Parameters
          Configuration ............................. AUTOMATIC
          Fragmentation Threshold ................... 2346
          Packet Retry Limit ........................ 64
        Tx Power
          Num Of Supported Power Levels ............. 6
          Tx Power Level 1 .......................... 14 dBm
          Tx Power Level 2 .......................... 11 dBm
          Tx Power Level 3 .......................... 8 dBm
          Tx Power Level 4 .......................... 5 dBm
          Tx Power Level 5 .......................... 2 dBm
          Tx Power Level 6 .......................... -1 dBm
          Tx Power Configuration .................... AUTOMATIC
          Current Tx Power Level .................... 1
          Tx Power Assigned By ...................... DTPC
        Phy OFDM parameters
          Configuration ............................. AUTOMATIC
          Current Channel ........................... 48
          Channel Assigned By ....................... DCA
          Extension Channel ......................... NONE
          Channel Width.............................. 20 Mhz
          Allowed Channel List....................... 36,40,44,48,52,56,60,64,100,
            ......................................... 104,108,112,116,132,136,140,
            ......................................... 149,153,157,161,165
          TI Threshold .............................. -50
          Legacy Tx Beamforming Configuration ....... AUTOMATIC
          Legacy Tx Beamforming ..................... DISABLED
          Antenna Type............................... INTERNAL_ANTENNA
          Internal Antenna Gain (in .5 dBi units).... 8
          Diversity.................................. DIVERSITY_ENABLED
          802.11n Antennas
             A....................................... ENABLED
             B....................................... ENABLED
             C....................................... ENABLED
        Performance Profile Parameters
          Configuration ............................. AUTOMATIC
          Interference threshold..................... 10 %
          Noise threshold............................  -70 dBm
          RF utilization threshold................... 80 %
          Data-rate threshold........................ 1000000 bps
          Client threshold........................... 12 clients
          Coverage SNR threshold..................... 16 dB
          Coverage exception level................... 25 %
          Client minimum exception level............. 3 clients
        Rogue Containment Information
        Containment Count............................ 0
        CleanAir Management Information
            CleanAir Capable......................... No
    Cisco AP Identifier.............................. 4
    Cisco AP Name.................................... Viten_1142_1
    Country code..................................... US  - United States
    Regulatory Domain allowed by Country............. 802.11bg:-A     802.11a:-A
    AP Country code.................................. US  - United States
    AP Regulatory Domain............................. -A
    Switch Port Number .............................. 13
    MAC Address...................................... 00:22:90:90:df:6c
    IP Address Configuration......................... DHCP
    IP Address....................................... 192.168.162.117
    IP NetMask....................................... 255.255.255.0
    Gateway IP Addr.................................. 192.168.162.1
    NAT External IP Address.......................... None
    CAPWAP Path MTU.................................. 1485
    Telnet State..................................... Enabled
    Ssh State........................................ Disabled
    Cisco AP Location................................ default location
    Cisco AP Floor Label............................. 0
    Cisco AP Group Name.............................. default-group
    Primary Cisco Switch Name........................ Viten_2504
    Primary Cisco Switch IP Address.................. 192.168.162.20
    Secondary Cisco Switch Name...................... Viten_5508_1
    Secondary Cisco Switch IP Address................ 192.168.162.22
    Tertiary Cisco Switch Name.......................
    Tertiary Cisco Switch IP Address................. Not Configured
    Administrative State ............................ ADMIN_DISABLED
    Operation State ................................. REGISTERED
    Mirroring Mode .................................. Disabled
    AP Mode ......................................... FlexConnect
    Public Safety ................................... Disabled
    AP SubMode ...................................... Not Configured
    Remote AP Debug ................................. Disabled
    Logging trap severity level ..................... informational
    Logging syslog facility ......................... system
    S/W  Version .................................... 7.4.130.2
    Boot  Version ................................... 12.4.18.0
    Mini IOS Version ................................ 3.0.51.0
    Stats Reporting Period .......................... 180
    Stats Collection Mode ........................... normal
    LED State........................................ Enabled
    PoE Pre-Standard Switch.......................... Disabled
    PoE Power Injector MAC Addr...................... Disabled
    Power Type/Mode.................................. Power injector / Normal mode
    Number Of Slots.................................. 2
    AP Model......................................... AIR-LAP1142N-A-K9   
    AP Image......................................... C1140-K9W8-M
    IOS Version...................................... 15.2(20150109:075323)$
    Reset Button..................................... Enabled
    AP Serial Number................................. FTX1308S2H3
    AP Certificate Type.............................. Manufacture Installed
    FlexConnect Vlan mode :.......................... Disabled
    FlexConnect Group................................ Not a member of any group
    Group VLAN ACL Mappings
    FlexConnect Loc

  • HA in Cisco WLC

    Hi friends,
    I am planning to have a wireless environment for a corporate company. I would like to have a Cisco wireless LAN controller 2100 series and 15 numbers of cisco aironet 1142 n access point. Since wireless is gonna be a very important medium for the premises, I am planning to have high availability for the 2100 series WLC.
    With this scenario I am having the following of queries?
    1. Does high availability is supported with WLC 2100 series or need to go for an hihger end WLC's? It would be great if I am guided with some documents on this?
    2. My wired switching infrastructure at the core is running with GLBP. Can I connect the both WLC in each switch in an dual home architecture?
    3. Is there any pre-requistes for doing the high availability for the WLc's?
    4. Yet another company that is close to me do have the same architecture for wireless infrastructure, except that they have cisco WLC as 5508 and Cisco aironet 1142n access point. All the end points NIC adapters that they have support a/b/g standard. But with an n series they continously report low signal strength, the reason for this still unknown?
         But the tech documents of 'n' series access point claims that they support, 300Mbps within 33 feet and 200 Mbps within 66 feet.
    They are having 2 nos of Cisco 1142n access point for every 30 feet but still they are facing low signal strength. Also there workspace are all cubicles and without any interference.
    It would be great if I am guided on this issue also?
    Regards,
    Karthik Anbumani

    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Table Normal";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-priority:99;
    mso-style-qformat:yes;
    mso-style-parent:"";
    mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
    mso-para-margin-top:0cm;
    mso-para-margin-right:0cm;
    mso-para-margin-bottom:10.0pt;
    mso-para-margin-left:0cm;
    line-height:115%;
    mso-pagination:widow-orphan;
    font-size:11.0pt;
    font-family:"Calibri","sans-serif";
    mso-ascii-font-family:Calibri;
    mso-ascii-theme-font:minor-latin;
    mso-hansi-font-family:Calibri;
    mso-hansi-theme-font:minor-latin;
    mso-bidi-font-family:"Times New Roman";
    mso-bidi-theme-font:minor-bidi;}
    Hi Karthik,
    You can build this HA solution based on the 2100 controllers. And if you want HA for 15 access points you need two 2125 controllers. But I will suggest that you consider the 5508 controller since that is a more future proof hardware and will give you more features that you might want to use such as Office Extend.
    Right now there is a bundle available for one 5508 with 10 x AIR-LAP1142 and the GPL price for that bundle is USD 31,424. And you should consider if you need the HA solution or if you are covered by the onsite support. In the product list below I have used the regulatory domain E and power cable for Europe. Make sure that you get this correct for your country. This is a limited offer ending August 1st 2010. You also need the additional 5 access points or more if you want Office Extend.
    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Table Normal";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-priority:99;
    mso-style-qformat:yes;
    mso-style-parent:"";
    mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
    mso-para-margin-top:0cm;
    mso-para-margin-right:0cm;
    mso-para-margin-bottom:10.0pt;
    mso-para-margin-left:0cm;
    line-height:115%;
    mso-pagination:widow-orphan;
    font-size:11.0pt;
    font-family:"Calibri","sans-serif";
    mso-ascii-font-family:Calibri;
    mso-ascii-theme-font:minor-latin;
    mso-hansi-font-family:Calibri;
    mso-hansi-theme-font:minor-latin;
    mso-bidi-font-family:"Times New Roman";
    mso-bidi-theme-font:minor-bidi;}
    Also consider that the 2100 series only have FastEthernet interfaces so you will not be able to utilize the full 11n throughput.
    1 x 5508 with 10 x 1142:
    Product
    Description
    Quantity
    Price
    Lead Time
    AIR-CT25-1140E10
    802.11a/g/n ESTI Cfg5508-25 10AP WCS Demo Promo ends 8/1/10
    1
    24,595.00
    14 Days
    AIR-CT5508-25-K9Z
    5508 Series Controller for up to 25 APs
    1
    0.00
    14 Days
    AIR-PWR-5500-AC
    Cisco 5500 Series Wireless Controller Redundant Power Supply
    1
    1,495.00
    14 Days
    SWC5500K9-70
    Cisco Unified Wireless Controller SW Release 7.0
    1
    0.00
    14 Days
    AIR-PWR-CORD-CE
    AIR Line Cord Central Europe
    1
    0.00
    14 Days
    AIR-LAP1142N-E-K9Z
    Manufacturing Level PID - AIR-LAP1142N-E-K9
    10
    0.00
    14 Days
    S114RK9W-12421JA
    Cisco 1140 Series IOS WIRELESS LAN LWAPP RECOVERY
    10
    0.00
    LIC-CT5508-25
    25 AP Base license
    1
    0.00
    14 Days
    LIC-CT5508-BASE
    Base Software License
    1
    0.00
    14 Days
    WCS-CD-K9Z
    CD With Windows And Linux. No License.
    1
    0.00
    14 Days
    CON-OSP-CT25E10
    ONSITE 24X7X4 802.11a/g/n ESTI Cfg: 5508-25; 10APs;
    1
    0.00
    CON-OSP-CT0825
    ONSITE 24X7X4 Cisco 5508 Series
    1
    2,944.00
    CON-OSP-1142EK9Z
    ONSITE 24X7X4 802.11a/g/n Fixed AP
    10
    2,390.00
    Total   LeadTime: 14 Days  Total Price: USD   31,424.00
    Total LeadTime: 14 Days  Total Price: USD 31,424.00
    2 x 2125 with 10 x 1142:
    Product
    Description
    Quantity
    Price
    Lead Time
    AIR-WLC2125-K9
    2100 Series WLAN Controller for up to 25 Lightweight APs
    1
    8,995.00
    21-35 Days
    CAB-AC-C5-EUR
    AC Power Cord, Type C5, Europe
    1
    0.00
    14 Days
    SWLC2100K9-70
    Cisco Unified Wireless Controller SW Release 7.0
    1
    0.00
    14 Days
    ASA5505-PWR-AC
    ASA 5505 AC Power Supply Adapter
    1
    0.00
    14 Days
    SSC-BLANK
    ASA 5505 SSC Blank Slot Cover
    1
    0.00
    14 Days
    CON-OSP-AC2125K9
    ONSITE 24X7X4 WLAN Controller for for Retail
    1
    1,656.00
    Total   LeadTime: 21 - 35 Days   Total Price:   USD 10,651.00
    Product
    Description
    Quantity
    Price
    Lead Time
    AIR-WLC2125-K9
    2100 Series WLAN Controller for up to 25 Lightweight APs
    1
    8,995.00
    21-35 Days
    CAB-AC-C5-EUR
    AC Power Cord, Type C5, Europe
    1
    0.00
    14 Days
    SWLC2100K9-70
    Cisco Unified Wireless Controller SW Release 7.0
    1
    0.00
    14 Days
    ASA5505-PWR-AC
    ASA 5505 AC Power Supply Adapter
    1
    0.00
    14 Days
    SSC-BLANK
    ASA 5505 SSC Blank Slot Cover
    1
    0.00
    14 Days
    CON-OSP-AC2125K9
    ONSITE 24X7X4 WLAN Controller for for Retail
    1
    1,656.00
    Total   LeadTime: 21 - 35 Days   Total Price:   USD 10,651.00
    Product
    Description
    Quantity
    Price
    Lead Time
    AIR-LAP1142-EK9-PR
    LAP1142 Controller Based E Reg Domain
    1
    9,950.00
    14 Days
    S114RK9W-12421JA
    Cisco 1140 Series IOS WIRELESS LAN LWAPP RECOVERY
    1
    0.00
    AIR-LAP1142-EBULK
    BOM LEVEL PID FOR BULK PACK
    10
    0.00
    14 Days
    CON-OSP-LAP1142E
    ONSITE 24X7X4 802.11a/g/n Fixed Unified AP; ETSI
    10
    2,390.00
    CON-OSP-L1142E0P
    ONSITE 24X7X4 802.11a/g/n LWAPP AP EU Cnfg-Promo Pk
    1
    0.00
    Total   LeadTime: 14 Days  Total Price: USD   12,340.00
    Total LeadTime: 21 - 35 Days   Total Price: USD 33,542.00
    Regards,
    André

  • Cisco WLC 5508 not sending SNMP Traps

    Hello Everyone.
    I'm having a weird error on our WLC environment. We have an HA with two cisco WLC 5508 and i cannot get SNMP Traps working on a Windows PC running Kiwi Syslog server (free ed.).
    I can receive correctly Syslog messages, but not traps.
    I Tried also to send SNMP Traps from WLC to a different PC using Linux with snmptrapd and it works fine.
    I tried then to send from my Linux box a snmp trap to my Windows PC, and it works fine, but i still cannot receive anything from WLC.
    Using Wireshark to detect traffic, i cannot see any packet on udp port 162.
    I cannot figure out any problem with my scenario, but i can see the following errors on syslog:
    *rmgrTrasport: Mar 30 16:08:22.602: #RMGR-3-INVALID_PING_RESPONSE: rmgr_utils.c:270 Ping response from <my_windows_PC> is invalid. Ip address do not match.
    My WLC Version is 7.6.130.0
    Thank you for your support.

    I have gone through your query and found the following fruitful links ,please let me know if it helps and mark it correct answer if it is.
    https://www.manageengine.com/network-monitoring/help/userguide/processing_traps.html
    https://rscciew.wordpress.com/2014/10/12/snmp-configuration-on-wlc/
    Thanks :)

  • Hellp on Nokia E61i associating with Cisco WLC 4402

    I met some problem with associate Nokia's dual mode mobile phone E61i with Cisco WLC 4402, hope someone can help me on it:
    I setup a VOICE WLAN in 4402(v5.0.148), Layer2 security is WPA1+WPA2, Key management using 802.1x, WPA1 policy enable both TKIP and AES, Radius server using ACS engine(v4.1.1.23)(enable PEAP-MSCHAPv2);
    I can use my laptop to join this WLAN(my laptop configure with PEAP/MSCHAPv2, WPA-TKIP, not validate server certificate), but can't let E61i join it, each time it will remind me “unable to connect, WPA authenticate failed).
    In E61i, I select WPA/WPA2 as WLAN security mode, enable EAP-PEAP, under EAP-PEAP, I enable EAP-MSCHAPv2; however under Cipher, there's a lot of options such as “RSA,3EDS,SHA”, “RSA,AES,SHA”, but there's no TKIP, I have tried to enable all of them and tried only enable those items which include AES, but I failed each time with the same reminder “unable to connect, WPA authenticate failed”. I checked ACS's failed log, there's no record; In 4402, there also have no record.
    If I change the security to open or static WEP for VOICE WLAN, then the E61i can connect to the WLAN.
    I think the problem maybe relate to encryption or certificate, right now I just do the test in lab, not in customer's real environment, so I use ACS to generate a self signed certificate and installed it in ACS.
    Pls. help to point me what I need to adjust to make it work. Thanks!

    Hello,
    CCKM Key Management mode on Nokia E61i phone can be used
    against Cisco LWAPP AP's with TKIP encryption
    Nokia E61i (and other E-series WLAN enabled phones) are supporting CCKM key management method with both dynamic WEP and TKIP ciphers.
    On the phone configuration, 802.1X security mode needs to be in use in order to enable CCKM support. WPA/WPA2 security mode on the phone is dedicated to standards based WPA and WPA2 methods and it does not allow usage of proprietary CCKM key management method.
    Phone's 802.1X security mode does not mean that phone would only support dynamic WEP encryption method in this mode although in contexts term "802.1X" may be attached to pure dynamic WEP (legacy / pre WPA era)security methods.
     802.1X security mode can be seen on Nokia Eseries phones as sort of an "everything with EAP based authentication is allowed" mode, meaning that following key management and cipher configurations are supported:
    - WPA-Enterprise  = WPA Key Management (EAP based authentication) with TKIP encryption
    - WPA2-Enterprise = WPA2 Key Management (EAP based authentication) with AES encryption
    - Mixed WPA/WPA2-Enterprise = I.e. WPA/WPA2 Mode Migration WPA2 Key Management (EAP based authentication) with AES (for unicast data) and TKIP (for multicast data) ciphers
    - 802.1X dynamic WEP = legacy (pre-WPA era) 802.1X based dynamic WEP (EAP based authentication with dynamic WEP encryption)
    Supported:
    - CCKM with WEP = CCKM Key Management (EAP based authentication) with dynamic WEP encryption
    - CCKM with TKIP = CCKM Key Management (EAP based authentication) with TKIP encryption
    Not supported:
    - CCKM with AES = CCKM Key Management (EAP based authentication) with AES encryption
    Please note that CCKM-AES mode (CCKM Key Management with AES cipher) is not working properly due to some incompatibilities between Cisco and Nokia implementations thus it must not be listed as a supported combination on the current Nokia E-series devices. We are also seeing CCKM-Fast
    Re-authentication failures with Cisco autonomous AP's when AES encryption is used although initial authentication to autonomous AP's is successful. Nokia is currently working with Cisco to get CCKM-AES based authentications and roaming working properly with both LWAPP and autonomous Cisco AP's.
     Also note that Nokia E-Series does not support Cisco proprietary CKIP/CMIC encryption/data integrity methods. CKIP/CMIC is supported at least by Cisco autonomous AP's and it seems to be available also
    at least on LWAPP AP version 4.1.171.0.
     CCKM on E-Series devices has been tested against Cisco LWAPP (ver. 4.1.171.0) and it works when TKIP encryption is in use (WPA Policy + TKIP encryption in Cisco LWAPP configuration terms).
    In practice this means Cisco LWAPP is configured in a following manner: WLAN -> Edit -> Security-> 
    Layer 2 Security = WPA+WPA2
    WPA+WPA2 Parameters:
    -WPA Policy = enabled
    -WPA Encryption = TKIP enabled, AES disabled
    -WPA2 policy = disabled
    -Auth.Key Mgmt = CCKM
    Br,
    -Pasi-

  • CISCO WLC How to Block a Client

    Hi,
    We are using CISCO WLC and broadcasting a number of SSIDs.
    What we want to do is to block some spesific users to a spesific SSIDs while letting to connct to another SSID.
    Dows anyone have any idea?

    You can use radius 802.1x authentication or you can setup Mac filtering on the WLC and specify what WLAN's they can connect to. They will only be able to connect to one SSID though.
    This setup you have is not normal as you want to have a device only connect to one ssid for simplicity and for user experience. Having the be able to connect to multiple
    SSID's can lead to connectivity issues on the client side, since the device might switch back and fourth to the different SSID's. Also the more SSID's you have the more noise in the environment. Typically 3-4 max SSID's is suggested.
    Sent from Cisco Technical Support iPhone App

  • Cisco wlc ios 7.2 with clients windows 8 can not authenticate with 802.1x

    Hello my name is Ivan:
    I have a solution a unified solution wireless with a cisco wlc 7.2 and ap cisco. My issue is the follow:
    My users are using laptops with OS windows 8, and they can not access to the network wireless because they authenticate in to the network using 802.1x wpa/wpa2 with tkip or aes.
    I find a bug in the ios of the wlc. The number is CSCua29504. I would not to change the drivers in the laptop to join the users in to the solution.
    Please is possible to find any software to do the upgrade in the wlc? Or perhaps we need to do an upgrade in to cisco lightweight access point?
    Please help me in this issue.
    Regards
    Ivan

    Bug ID CSCua29504 has been fixed in WLC firmware 7.0.235.3, 7.3.101.X or 7.4.100.X.
    So if you are NOT running any one of these codes, then yes.  Upgrade your firmware is your solution.
    Fixed in:  (12)
    7.4(100.0),7.4(1.20),7.3(112.0),7.3(101.0),7.3(1.67)
    7.2(111.3),7.2(111.1),7.2(110.4),7.0(236.0),7.0(235.3)

  • Cisco WLC 2504 webportal for Server 2008 R2 DC LDAP or RADIUS

    HI,Friends.
    I want to get my mobile or Notebook clients connecting to wireless and use my Domain users ,Cisco WLC 2504 to authenticate via LDAP or  RADIUS to our Windows Server 2008 Domain Controllers
    question:
    one,i can use my domain one Organizational Unit ,such as cn=use01,ou=test,dc=lzh,dc=com. now, noly user01 can logon on web, But how I make all my domain users can use web log it ? 
    I was using radius authentication or ldap certification to do web authentication ?which is good. ???
    I specified child ou, ou its users superiors can not be landed on

    hi ,Scott Fella
    Thank you,I am very happy to receive your reply,  I finally binding domain user authentication LDAP authentication done successfully. but You say the combination of nps I did not do the radius authentication is successful, I do not know where the problems.
    the err:
    <Event><Timestamp data_type="4">07/27/2014 18:33:36.845</Timestamp><Computer-Name data_type="1">PDC-CQ</Computer-Name><Event-Source data_type="1">IAS</Event-Source><User-Name data_type="1">11</User-Name><Service-Type data_type="0">1</Service-Type><NAS-IP-Address data_type="3">10.10.10.253</NAS-IP-Address><NAS-Port data_type="0">1</NAS-Port><NAS-Identifier data_type="1">WLC-CNNEWCITY</NAS-Identifier><NAS-Port-Type data_type="0">19</NAS-Port-Type><Vendor-Specific data_type="2">00003763010600000001</Vendor-Specific><Calling-Station-Id data_type="1">10.12.0.11</Calling-Station-Id><Called-Station-Id data_type="1">10.10.10.253</Called-Station-Id><Client-IP-Address data_type="3">10.10.10.253</Client-IP-Address><Client-Vendor data_type="0">0</Client-Vendor><Client-Friendly-Name data_type="1">WLC</Client-Friendly-Name><Proxy-Policy-Name data_type="1">Use Windows authentication for all users</Proxy-Policy-Name><Provider-Type data_type="0">1</Provider-Type><SAM-Account-Name data_type="1">CNNEWCITY\11</SAM-Account-Name><Class data_type="1">311 1 10.10.10.1 07/27/2014 09:41:28 5</Class><Authentication-Type data_type="0">1</Authentication-Type><NP-Policy-Name data_type="1">Connections to other access servers</NP-Policy-Name><Quarantine-Update-Non-Compliant data_type="0">1</Quarantine-Update-Non-Compliant><Fully-Qualifed-User-Name data_type="1">cnnewcity.com/user/test/11</Fully-Qualifed-User-Name><Packet-Type data_type="0">1</Packet-Type><Reason-Code data_type="0">0</Reason-Code></Event>
    <Event><Timestamp data_type="4">07/27/2014 18:33:36.845</Timestamp><Computer-Name data_type="1">PDC-CQ</Computer-Name><Event-Source data_type="1">IAS</Event-Source><Class data_type="1">311 1 10.10.10.1 07/27/2014 09:41:28 5</Class><Fully-Qualifed-User-Name data_type="1">cnnewcity.com/user/test/11</Fully-Qualifed-User-Name><Quarantine-Update-Non-Compliant data_type="0">1</Quarantine-Update-Non-Compliant><Client-IP-Address data_type="3">10.10.10.253</Client-IP-Address><Client-Vendor data_type="0">0</Client-Vendor><Client-Friendly-Name data_type="1">WLC</Client-Friendly-Name><Proxy-Policy-Name data_type="1">Use Windows authentication for all users</Proxy-Policy-Name><Provider-Type data_type="0">1</Provider-Type><SAM-Account-Name data_type="1">CNNEWCITY\11</SAM-Account-Name><NP-Policy-Name data_type="1">Connections to other access servers</NP-Policy-Name><Authentication-Type data_type="0">1</Authentication-Type><Packet-Type data_type="0">3</Packet-Type><Reason-Code data_type="0">66</Reason-Code></Event>
    then,You gave two figures is that what you mean? what's the meaning it that services-type =login ?

  • Certificate based authentication with Cisco WLC and Juniper IC

    Hi
    I have a cisco WLC 4400 and Juniper IC which works as the external Radius server.
    I want the wireless clients to be authenticated using certificates. I know the Juniper IC can understand certificates.
    My question is can cisco WLC understand that the information being presented to it by the client is not username/pwd but a user certificate.
    i have also looked at this article :
    http://www.cisco.com/c/en/us/support/docs/wireless/4400-series-wireless-lan-controllers/100590-ldap-eapfast-config.html
    What i don't understand here is the need of WLC authenticating the user with his credentials by LDAP when it has authenticated the user cert.
    All your help is appreciated.

    Hi,
    Since you use an external radius server you don't have to worry for this.
    The only config that you need to do on WLC is to define the radius server under Security-AAA-Radius-Authentication and on your WLAN-Security-AAA.
    The doc you refer is only for Local Radius on WLC.
    Hope this helps
    Regards,
    Christos

  • Generate one time authentication for Guest on Cisco WLC

    Hi All
    Sorry for my question, because I just started to work with Cisco WLC.
    I have created some WLAN for local users with authentication by 802.1x + Radius by certificate.
    For Guest I used PSK with MAC-filtering.
    But I see that is not comfortable for Guests, each time they come and want to access our wireless, we have to come and get their MAC.
    I checked on Internet and find that the wireless solution for Hotel, Resorts are very easy.
    I also googled and see that Cisco WLC support Lobby Ambassador to generate Guest username/password. But as I checked, this username/password might only use with Web-Auth, this method is not comfortable for Guest who don't know they have to go to Web-Auth to do authentication (e.g: when they only get pop3 email, or vpn, ... not use browsers)
    Could I use this method (or another method) for creating one time Guest wireless username/password or Guest PSK that can be used for authentication when Guests click to Wireless-SSID name only (no need to open web browser to do Web-Auth).
    Regards
    Hai

    Hi Choudhary
    Thank you much for your information
    Could I reconfirm about my concern.
    With Cisco WLC, I can use WebAuth with Guest user only
    If I want to use Guest user for authentication when guests connect to SSID (not by WebAuth, I means use Layer 2 security only, not Layer 3), I will have to use additional Radius Server.
    And if I understand right, could you please recommend me software based Radius Server with support generate one time username/password for Guest, because I checked IAS/NPS on windows server may not have this function (ISE is not appropriate for us at this time, due to high expense)
    Regards
    Hai

  • Cisco WLC 2500 - 802.1x with Vasco Radius SMS OTP

    Hello folks,
    I have what seems to be a complex implementation with many things that need to be done on a customers network and I wanted to be pointed in the right direction.
    The current scenario is such, the customer has a Cisco WLC 2500 device that has 3 access points(these are in the same AP group) connected to it. There is one SSID that I will call PRODUCTION here that some domain users use to connect to the local network. The customer has requested to have a GUEST SSID added to the WLC where guest users will connect to and recieve a SMS OTP for authentication.
    Correct me if I am wrong, but I will obviously need to segment the SSIDs to have them running on different subnets to ensure that guest users do not have access to the production network once they authenticate. In order to do this I will need to configure Dynamic VLAN assignment for the Cisco WLC and connect it to a 802.1x port on the switch.
    Now what is not clear is I am not interested in authenticating the users that connect via "Production SSID" and want to bypass authentication for those users and have them assigned to the default vlan (or maybe perhaps have them authenticate via LDAP on the AD), however I want to force the "GUEST" SSID users to authenticate so that they may recieve an SMS OTP (reason for this is to force guests to register their phone numbers to use the internet so that Illegal activity may be tracked).
    1)So would it be possible to bypass authentication(or authenticate them via LDAP) for the PRODUCTION SSID as only domain users would know the SSID password to log on and have them by default assigned to the production subnet (default vlan) but force the GUEST SSID users to another VLAN via 802.1x sms otp?
    2)*Important* Another issue that is not clear is will I be able to directly configure AAA Radius settings on the Cisco WLC to directly authenticate with the VASCO Radius OTP and recieve a challenge-response(required for OTP) during authentication? As I have seen from Ciscos Dynamic VLAN assignment docuementation (http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a008076317c.shtml) additional IETF Radius Perimeters are used such as Tunnel-Private-Group-ID etc are used which I can't seem to configure on the Vasco.
    I do beileve this is a great project in helping me understand the INs and OUTs of CISCO WLC as well as Wireless NAC, If anyone could enlighten me and point me in the right direction I would be forever in debt. Much appreciated.
    Best Regards
    Sinan Barghouthi - JNCIA-FWV , JNCIA-IDP , CCA-NS , TCSM-8.0

    On your WLAN you can enable AES and TKIP. Just know that some clients mau have issue when they see both TKIP and AES. Ive had pretty good success with this in the past. Dont forget, you also need to enable WMM allowed to get N rates.
    But you will need to configure AES on the client as well to support N rates.
    "Satisfaction does not come from knowing the solution, it comes from knowing why." - Rosalind Franklin
    ‎"I'm in a serious relationship with my Wi-Fi. You could say we have a connection."

  • Cisco WLC 5508 - NPS Radius

    Cisco WLC 5508
    Software Version: 7.4.100.0
    Windows Server 2008R2
    I've got everything setup on the Windows Server 2008 side of things (certificates, radius clients, etc)
    I added the radius server on the WLC, and configured a new WLAN to use it.
    Both are on the same subnet.
    When trying to conect to the WLAN it kept failing.  I installed wireshark on the server to monitor the radius traffic, and to my surprise there was no radius traffic showing up on the server.  The radius statistics on the WLC are at 0 as well, so it's like the WLC isn't even attempting Radius.
    I reverified that the server was enabled on both the security tab and the WLAN itself on the WLC.  Rebooted the controller and the server, all to no avail.  I used a radius test client, and can successfully send radius commands to the server using that utility.
    Frustrated, I just kept trying to reconnect on my wireless device, and after about the 15th try, finally I saw radius activity on wireshark.  It rejected my access, but at least I saw activity.  It also registerd radius statistcs on the WLC as well.
    So now if I keep trying to connect repeatedly, about every dozen or so times the WLC actually will send a radius request to the server.
    What in the world is going on here?

    I do have local management users on the controller.
    Some hours later I added the option of authenticating management users, for the NPS server. Then logged inn to the management GUI using NPS radius, worked just fine.
    However, these commands have been useful to me several times, to make sure unsuccessful requests appear in the Windows Event log:
    auditpol /get /subcategory:"Network Policy Server"
    If it shows ‘No auditing’ or just "Success", you can run this command to enable it:
    auditpol /set /subcategory:"Network Policy Server" /success:enable /failure:enable
    So now I know that the NPS radius server works, for management access. I will go to the customer's site some other day to test it for 802.1x authentication. If not, I'll do some debugging to decide wihich to blame - the WLC or NPS.

  • Cisco WLC 5508 with 3702APs - mobile hotspot for 2000 Guest users

    Cisco WLC 5508 with 3702APs - mobile hotspot for 2000 Guest users
    I've been given a fantastic "opportunity" by my boss to use our existing wireless infrastructure to provide internet access to potentially upto 2000 VIP guests arriving with BYOD devices, in a very densely populated area for a 3 day event. We are talking an area of approx 200m x 15m. Think of it as an awards ceremony/concert. The solution will also be mobile so we will be using internet breakout from different telcos as it will move to approx 20 countries. The area is also incredibly densely populated with other wifi APs. I did a brief site survey and AirMagnet could detect over 2500 other 'rogue' APs from where I was stood! I hope CleanAir works!
    We need a simple authentication method for them to connect with zero admin from our side. We don't want to just offer up a rolling daily PSK as that's a bit amateur and we don't really want the VIP guests sharing the PSK with others during their stay. Ideally they could self-provision by providing an email address.
    I know the WLC can handle webauth for local users but I don't think it scales very well. ie I don't think I can offer the account to several hundred people.
    Cisco ISE looks a very expansive (and expensive) product but I don't think we need all it's capabilities (do I?). It would be nice to just ask a potential user for their email address and grant them access and email them next year. I've seen Cisco NAC but that looks over the top too for just guest users who will only be accessing a shared internet connection.
    I've seen 3rd party supposed software solutions from Kiosk Antamedia etc do they work with Cisco Enterprise WLC solutions?
    We'd like to limit users to a certain (low) bandwidth and block (say) torrent traffic to keep the general user experience worthwhile.
    Does anybody have any case study documents or experience of such a project? As well as the authentication it's how well the APs will handle the dense potential number of clients trying to connect in such a confined space. 
    Any suggestions would be gratefully appreciated from the knowledgeable community.
    Cheers,
    Mike

    Hi Rasika,
    We are having WLC 5508 model with software version running 7.4.121.0. AP Models are AIR-CAP2602I.
    Normally our WAN links are good even while the issue pertains. We are connected to remote offices over ipsec site to site vpn for WAN. The link latency in WLC between the AP and the controller shows  <1ms.
    currently the Guest network is using WPA2-PSK auth given in the controller. we are trying to find a option to make the Guest wireless auth local to the office, and see if this solves the problem. 
    any suggestions,
    Thank you,
    Arjun

  • Cisco WLC 5508 and LACP

    Hi Fellows,
    I wanna know if 5508 Cisco WLC support LACP or not. Actually i work in a project where i must
    connect WLC 5508 in Enterasys Switches with Link Aggregation.
    Enterasys Switches support LACP 802.3ad but when i learn Cisco Books i see that WLC 5508
    doesn't support LACP.
    Can you help please ?
    Sincerely
    Joseph

    Hi,
    Please take a look into the config guide:
    http://www.cisco.com/en/US/docs/wireless/controller/7.0/configuration/guide/c70mint.html#wp1277652.
    You can read there:
    Once the EtherChannel is configured as on at both  ends of the link, it does not matter if the Catalyst switch is  configured for either Link Aggregation Control Protocol (LACP) or Cisco  proprietary Port Aggregation Protocol (PAgP) because no channel  negotiation is done between the controller and the switch. Additionally,  LACP and PAgP are not supported on the controller.
    HTH,
    Tiago
    If  this helps you and/or answers your question please mark the question as  "answered" and/or rate it, so other users can easily find it.

  • Cisco WLC in High Availability over WAN

    Hi my name is Ivan i have a trouble perhaps could you help me...
    I have two cisco wlc 5508. I wan to install them in two differents site. One WLC in the site A and the another WLC in the site B.
    Site B is the WAN of the site A. The site A is the headquarter.
    But i need to configure them in High Availability. For example if the Cisco WLC in site A goes down, the ap's have to registered in the WLC of the site B.
    Then the traffic LWAPP have to pass over the WAN between site A to site B.
    I have to configure two cisco wlc in HA over a WAN . Please could help me to do this?. Is ok configure the roamming L3 intercontroller?
    Thanks for your answers
    Regards
    Ivan,
    AP'S - WLC - SITE A ----WAN-----WLC - SITE B - AP'S
    WLC SITE A   DOWN = AP'S SITE A REGISTERED IN WLC SITE B

    Hi Surendra thanks for yoru answer.
    Surendra, if the ap in the site B (in the WAN) goes down then the traffic lwapp have to pass over the wan,
    what will should i do to ensure access point can register on to the cisco wlc in the WAN, moreover to configure the mobility groups in both wireless lan controllers?
    or i only have to configure in the wlc the mobility groups? Could you explain me what things have i to do to ensure this
    SITE A - (ACCESS POINT M)  - LWAPP -----PASS OVER WAN---- SITE B - CISCO WLC - (ACCESS POINT M)
    STATUS: REGISTERED IN SITE B
    Thanks for your answer
    IVAN
    Regards

Maybe you are looking for