WLC 2006 & LAP1231 communication

HI,
I Have problems with AP authentication on the WLC. AP gets the IP from the DHCP but fails to load the image.
On the WLC log I get:
Sun Sep 3 21:49:51 2006 [ERROR] spam_lrad.c 2544: Security processing of Image Data failed from AP 00:17:59:67:76:80
Sun Sep 3 21:49:51 2006 [ERROR] spam_crypto.c 653: Failed decryption of message from AP 00:17:59:67:76:80
On the AP I get:
*Sep 3 21:54:27.750: %SYS-5-RELOAD: Reload requested by LWAPP CLIENT. Reload Reason: COULD NOT DOWNLOAD NEW IMAGE SUCCESSFULLY.
*Sep 3 21:54:29.750: LWAPP_CLIENT_ERROR: not receive read response(0)
Any ideas ?
Thanks,
Vasil

Thanks,
I thought of that. I just purchased all the equipment without the service plan, big mistake !
I don't have CCO (yet) so I can not access the new image files for the WLC2006. I am running 3.2.7.8.0 and the latest one is 4.0.179.8
Any alternative sources for the image files or I would have to wait for my order to be processed? I have a deadline of 12 hours to fix this.
Thanks,
Vasil

Similar Messages

  • Issues upgrading WLC-2006

    I cannot seem to get past the "transfer download start" (CLI) or "download" (GUI) phase of the upgrade on a WLC-2006 -- from 3.2.171.5 to 4.2.209.0. The transfer consistently times out at about 76% complete and I receive an error message, either "error writing to flash" or "error writing output file" (or something similar). Any suggestions/recommendations would be greatly appreciated.

    You can't upgrade from 3.X to 4.2.209 direct.  You need to upgrade to 4.0.206.0 first before going anyware.  It's specified in the Release Notes.
    http://www.cisco.com/en/US/docs/wireless/controller/release/notes/crn422090.html#wp233853

  • WLC 2006 DHCP locking up

    We have a WLC 2006 that is setup to distribute IPs to wireless clients using the internal DHCP server. Occasionally, wireless clients can connect to the APs (four 1131AGs) but do not get IP addresses assigned.
    Rebooting the WLC temporarily fixes the problem.
    software version is 4.0.155.0
    anyone experiencing this or know of a solution?
    thanks!

    Apparently, others have observed similar DHCP behavior.
    You may want to read a related thread ("Wireless Clients eventually not issued DHCP through WLC4404") in the "General" conversation section.
    LINK:
    http://forums.cisco.com/eforum/servlet/NetProf?page=netprof&forum=Wireless%20-%20Mobility&topic=General&CommCmd=MB%3Fcmd%3Ddisplay_location%26location%3D.1ddc63fc

  • Wlc 2006 mac filtering

    I would like to allow client to access wireless lan based on the client mac-address.
    How I config it on WLC 2006 locally (not using radius server)? If yes, How mnay mac-address can be configured on the wlc2006?
    Thanks.
    Douglas

    Hi Douglas,
    Just wanted to add a note to Ankurs good info;
    Maximum MAC Filter Entries
    The controller database can contain up to 2048 MAC filter entries for local netusers. The default value is 512. To support up to 2048 entries, you must enter this command in the controller CLI:
    config database size MAC_filter_entry
    where MAC_filter_entry is a value from 512 to 2048.
    From this good doc;
    http://www.cisco.com/en/US/products/ps6366/prod_release_note09186a0080813b1c.html#wp42756
    MAC Filtering
    http://www.cisco.com/en/US/products/ps6366/products_user_guide_chapter09186a00805a6ad0.html#wp1040588
    Hope this helps!
    Rob

  • WLC 2006 LWAPP issue?

    Hi, I am setting up a WLC2006 with 2 AP1010's. I cannot get the controller to see either AP. When I place the AP's on a network with a WLC 4400, they are recogized immediately by the 4400 at Layer-2 LWAPP.
    Since the WLC2006 only works at Layer-3 LWAPP, do I have an AP icompatibility issue with the AP1010's(since I can only get them to work at Layer-2 LWAPP)?
    Any advice is greatly appreciated.
    Chris

    According to Cisco doc., L2 mode is supported by WLC 44xx & 41xx and not supported by WLC 2006. And the 1010 supports L2 mode only, so the 1010 cannot works w/ 2006. You have to upgrade the AP to 1200, 1130 or 1240 or the WLC to 4xxx. And, don't know is there any future IOS / firmware can support it. Hopes this help.

  • Querry on Cisco WLC 2006

    Hi ,
    Need one help from you.Please let me know Cisco WLC 2006 ( Running version 4.2.207) will support Access Point 1242AG ?
    Thanks in advance.
    Thanks & Regds,
    Lalit

    Hi Sabastian,
    Thanks for your reply.My question was I have a Wireless Lan Controller 2006 with 1030 Access Points registered to that and i wants to add AP1242AG.The Current version running on WLC 2006 is 4.2.207.I wants to add 1242AG Access Point to the 2006 WLC.Will my current WLC with current running version of image will support AP1242AG ?
    Please reply.
    Thanks & Regds,
    Lalit

  • WLC 2006 EEPROM

    I'm a teatcher in the Technical High-School of Geneva.
    We have a project in the laboratory with a CISCO AIR-WLC2006-K9 V1. Due a bug (CISCO Field Notice: FN-62555; http://www.cisco.com/en/US/ts/fn/620/fn62555.html) Bug in CISCO IOS, the EEPROM (contain MAC address, serial Number, …) was erased and now the device can't boot.
    It's a never used equipment and CISCO won't repair this (don't support this, End of Live ?)
    Does someone could copy the EEPROM of its controller and send me the file ?
    Many thanks in advance !

    It's true, I must find an EEPROM but on the side of the Cisco product is no longer supported ! But we do not have money to buy a new WLC for Student's laboratory
    Do you still have a wlc 2006 ?
    if yes, would it be possible to have a copy of the contents of the EEPROM ?

  • WLC 2006 Support LAG?

    Does the 2006 WLC support LAG (i.e., logically connecting its 4 100 Mb/s ethernet ports together like EtherChannel)?
    Thanks

    Hi Friend,
    Unfortunately this feature is not available on 2006 controller.
    Only 4404, 4402 supports lag.
    HTH
    Ankur
    *Pls rate all helpfull post

  • Trashed Firmware on WLC 2006

    I was doing an update on a 2006 WLC and after i uploaded the firmware and everything finished fine i saved the config and rebooted. Now i will not boot up and I cannot get into the Console port.
    Does anyone know the type of cable needed and the serial port settings to get into the CLI via the serial port?
    Additionally is there any way to fix this without RMAing the device?

    The following document will clearly explain you how to connect the WLC through console port.
    http://www.cisco.com/en/US/products/ps6366/products_configuration_example09186a0080665cdf.shtml#basic
    Aso, this document explains the software upgrade procedure
    http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a00805f381f.shtml

  • High CPU on WLC 2006

    I'm wondering if there are any options I can try for the following situation:
    Professional sports arena has a small wireless deployment intended for use by media during games for research and submitting updates.  Currently four APs on a WLC2006 (4.2.61) with a dedicated DSL connection for internet access.   Only about 20-30 users typically and other than game time very stable.  WLAN setup with an open SSID using web-auth to keep from needing to deal with support for encryption for visiting people.  But during games with all the spectators the associations go way up due to iphones, driods, etc..  Eventually the performance starts dropping to the point where web-auth stops working.  On the console (web unresponsive) I got CPU utilization staying at 80-98% and client counts of up to 180..  Too much for a 2006  I'm going to assume?
    A couple options off the top of my head:
    Turn on some form of encyption to reduce the number of associations, but this possibly opens up a requirement for additional support that may be needed to get non-technical users connected that need to.
    More powerful controller?   I haven't really been able to find anything yet on scalability expectations for the WLCs for this situation.  Also don't believe there is a budget for any serious upgrade right now.
    Any other thoughts or ideas anyone has that might help?

    Hi David, 4.2.61 is one of the worst release to chose. In general the first release of a branch is not the best one.
    4.2.209 is still the same code branch and is the most stable software out there. There has been a couple of bugs with web authentication not working under load.
    Now you have another good point, that many clients on only 6 APs and a 2006 is a undersized network. 30 clients per AP is over recommendations. And the fact that some might stay in "web auth required" state means they have a special ACL applied and consume a lot of CPU on the WLC ...
    The encryption is done by the AP, so WLAN encryption will not change anything to WLC CPU usage.
    Regards,
    Nicolas

  • WLC 2006 INTERNAL DHCP FOR GUESTS CLIENTS

    I would like to use the internal DHCP to issue ipaddress to the guest wireless clients.
    However; when i setup the wlc internal DCHP scope and try to connect to the wireless guest vlan the WLC debug DHCP reads ...forwarding to 192.168.255.2 which i have listed as the gateway to the pix
    any examples on how to do this would be great.
    here is what i have for the dhcp scope:
    Dhcp Scope Info
    Scope: Guest.Data.DHCP
    Enabled.......................................... Yes
    Lease Time....................................... 86400 (1 day )
    Pool Start....................................... 192.168.255.17
    Pool End......................................... 192.168.255.30
    Network.......................................... 192.168.255.0
    Netmask.......................................... 255.255.255.0
    Default Routers.................................. 192.168.255.2 0.0.0.0 0.0.0.0
    DNS Domain.......................................
    DNS.............................................. 0.0.0.0 0.0.0.0 0.0.0.0
    Netbios Name Servers............................. 0.0.0.0 0.0.0.0 0.0.0.0
    Here is what i have for the wlan
    WLAN Identifier.................................. 2
    Network Name (SSID).............................. Guest.Data
    Status........................................... Disabled
    MAC Filtering.................................... Disabled
    Broadcast SSID................................... Enabled
    AAA Policy Override.............................. Disabled
    Number of Active Clients......................... 0
    Exclusionlist Timeout............................ 60 seconds
    Session Timeout.................................. Infinity
    Interface........................................ guest.data
    WLAN ACL......................................... unconfigured
    DHCP Server...................................... Default
    DHCP Address Assignment Required................. Enabled
    Quality of Service............................... Silver (best effort)
    WMM.............................................. Disabled
    CCX - AironetIe Support.......................... Enabled
    CCX - Gratuitous ProbeResponse (GPR)............. Disabled
    Dot11-Phone Mode (7920).......................... Disabled
    Wired Protocol................................... None
    IPv6 Support..................................... Disabled
    --More-- or (q)uit
    Radio Policy..................................... All
    Security
    802.11 Authentication:........................ Open System
    Static WEP Keys............................... Disabled
    802.1X........................................ Disabled
    Wi-Fi Protected Access (WPA/WPA2)............. Disabled
    CKIP ......................................... Disabled
    IP Security Passthru.......................... Disabled
    Web Based Authentication...................... Disabled
    Web-Passthrough............................... Disabled
    Auto Anchor................................... Disabled
    H-REAP Local Switching........................ Disabled
    Management Frame Protection................... E

    when i try to assocate the dhcp scope to wireless.guest.data interface using 192.168.255.1 which is the ip of the that interface it will not let me. I would have thought since i was using the interal dhcp that the .1 address would be the dhcp scope address also. i can assign 192.168.255.0 or 192.168.255.2(gateway)if i use .0 or .2 the dhcp request (discovery) process starts and then will forward to .2 (gateway) and never assign an address. the only thing that happens is that the client wireless interface will get 255.255.255.255 for a few seconds then go away.
    what i am trying to accomplish is to connect the wlc port 2 directly to a pix 506 which goes to the internet so the guest traffice is not on our vlan.
    any other suggestions on guest vlans would be appricated....
    Tom
    Interface Name................................... wireless.guest.data
    IP Address....................................... 192.168.255.1
    IP Netmask....................................... 255.255.255.0
    IP Gateway....................................... 192.168.255.2
    VLAN............................................. 150
    Quarantine-vlan.................................. no
    Physical Port.................................... 2
    Primary DHCP Server.............................. Unconfigured
    Secondary DHCP Server............................ Unconfigured
    DHCP Option 82................................... Disabled
    ACL.............................................. Unconfigured
    AP Manager....................................... No
    Scope: wireless.guest.data.dhcp.server
    Enabled.......................................... Yes
    Lease Time....................................... 86400 (1 day )
    Pool Start....................................... 192.168.255.17
    Pool End......................................... 192.168.255.30
    Network.......................................... 192.168.255.0
    Netmask.......................................... 255.255.255.0
    Default Routers.................................. 192.168.255.2 0.0.0.0 0.0.0.0
    DNS Domain.......................................
    DNS.............................................. 0.0.0.0 0.0.0.0 0.0.0.0
    Netbios Name Servers............................. 0.0.0.0 0.0.0.0 0.0.0.0

  • WLC-2006 and 1242 APs

    Hello.
    I have a 2006 with 2 1242 APs connected to it. The problem I have is the 2 APs keep rebooting. they come up, get a DHCP address, stay up for a minute or so and restart. The log on the controller shows this each time it happens:
    Thu Apr 20 10:54:39 2006 [ERROR] spam_lrad.c 2544: Security processing of Image Data failed from AP 00:16:47:b2:0a:48
    Thu Apr 20 10:54:39 2006 [ERROR] spam_crypto.c 653: Failed decryption of message from AP 00:16:47:B2:0A:48
    Thu Apr 20 10:54:24 2006 [ERROR] spam_lrad.c 5973: Refusing image download to AP 00:16:47:b2:0a:48 - Unable to open file /bsn/ap//c1240
    Any ideas?
    Thanks

    I had the same problem with some 1231 APs with a 4402 controller. If you watch the APs console while it is rebooting, you'll notice that it can't get a certificate. I finally figured out that the time was different (wrong time zone) wrong on the controller compared to what I gave the APs when I upgraded them to LWAPP.
    FYI

  • Upgrading the WLC 2006 controller

    i need to upgrade my WLC from 3. to 4. version but this is the first time i've had to upgrade a controller. So I'm not sure what to expect.
    Any pointers I should know before going into that project?
    Thanks

    Should not be a big issue... check the upgrade path:
    http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a00805f381f.shtml
    You need a tftp server to download from, that accepts large files, I use tftpd without any problem...
    hth
    Jerome

  • WLC 2006 Management interface

    I have my WLC configured as follows:
    management intf - 10.10.254.42
    ap-manager intf - 10.10.254.41
    Both are untagged, and the switch port has the native vlan set to 1.
    However, I am unable to reach either address from any other subnet. What gives?

    Hi Friend,
    Can you ping your gateway from your controller? Can you ping this controller from anywhere in your network if you TAG the interfaces instead on untagg?
    Regards,
    Ankur

  • WLC 5508 not communicating with ACS 4.2

    Hi,
    Strange one here, I have setup a WLAN with PEAP user authentication through ACS to the Windows database. My clients cannot connect to the WLAN.
    From the logs, I can see no activity on the Radius server stats (as seen from the controller) and no failed login attempts on the ACS itself. The ACS/Radius is setup correctly on the controller and the controller can ping the ACS, but they just don't seem to be talking???
    I have used this setup before, but the only difference is that the controller is a 5508 (done this with 4400's in the past) and the ACS is running on VMWare (Never done this before).
    If I change the security to WPA2 PSK it works fine.
    I want to use PEAP for user authentication. NOT Machine auth. I have a certificate installed on the ACS and it is in the trust list of the client PC.
    Any help appreciated!
    Dan

    Noble,
    Here are a few links...
    http://www.cisco.com/en/US/docs/wireless/controller/6.0/configuration/guide/c60sol.html
    http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a00807f42e9.shtml
    If you find this helpful, please rate the post!
    Thanks

Maybe you are looking for

  • Iphone 5s does not transmit voice during phone calls

    iphone 5s does not transmit my voice during a phone call.  Just started happening.  The microphone works with Siri and the speaker works fine as I can hear the person I called.

  • Advice on software for creating pdf's

    What is the best option for software to create pdf's?I downloaded Primo PDF and the quality was lousy.  Suggestions greatly appreciated!

  • Run a report with a different login

    We have an application that must run reports against different databases. Is there a way to change the connect string when running reports with the run_report_object built-in, or do I have to use web.show_document for that purpose? Cheers Christian

  • How to ge rid of 'Enhanced menu (web context menu) entry?

    Hi all, Though showing ALL needed web context menu items (main properties of web template) the 'Enhanced menu' entry is still showing. Did someone ever try to take it off? Rgrds, Mark

  • How to desactivate PSE without the 2 old computers?

    Hi, I want to install PSE 9 on my new computer but the licence has been used twice on the olds ones. How to desactivate PSE on the old computers as I can not access to them? Thank you Dominique