WLC - AP Groups - Multicast - Bonjour - Apple TVv3
Good Morning
first off - Should start off by saying I have followed the Apple Bonjour deployment guide [except for interface group] portion
I have searched high and low, here and there to no avail.
http://www.cisco.com/en/US/products/hw/wireless/ps4570/products_tech_note09186a0080bb1d7c.shtml
I am aware that the bonjour gateway IOS may or may not come out in Oct/Nov 2012, which maybe my only option at this point.
Is this not working because of my AP groups setup or have I misssed something
I can only get bonjour to work if multicast - unicast mode is selected, but our network slowly grinds to a halt, so it is not an option
when I first connect to the wireless I see 1 bonjour device for about 3 minutes and then disappears.
I can not see the appletv at all with an ipad, airplay does not appear at all.
We have the following setup.
2 campuses - Campus 2 is simular setup, but WLCs higher model and ios 7.2 and clients and subnets are double
Campus 1
2 WLC 4404 ios 7.0.230.0
30 AP groups mapped to 30 Interfaces using subnets with /23 bit subnetmasks
multicast - multicast is set with multicast addresses of
controller 1 239.239.5.1 and
controller 2 239.239.5.2
multicast is enabled
IGMPsnooping as well
On Switch multicast routing is enabled
all AP group subnets and Mgmt vlans are PIM enabled dense mode
set up a trunk to ubuntu server to act as a bonjour gateway, installed avahi and vlan
mapped all AP and mgmt vlans to Ubuntu server.
avahi see the following + more
+ eth0.136 IPv6 Apple TV _airplay._tcp local
+ eth0.136 IPv4 Apple TV _airplay._tcp local
+ eth0.134 IPv6 Apple TV _airplay._tcp local
+ eth0.134 IPv4 Apple TV _airplay._tcp local
+ eth0.132 IPv6 Apple TV _airplay._tcp local
+ eth0.132 IPv4 Apple TV _airplay._tcp local
+ eth0.130 IPv6 Apple TV _airplay._tcp local
more goes on forever
+ eth0.136 IPv4 xyz Library Apple Home Sharing local
show ip multicast
Multicast Routing: enabled
Multicast Multipath: disabled
Multicast Route limit: No limit
Multicast Triggered RPF check: enabled
Multicast Fallback group mode: Dense
show ip multicast interface vlan 128
Vlan128 is up, line protocol is up
Internet address is x.x.128.1/23
Multicast routing: enabled
Multicast switching: fast
Multicast packets in/out: 14671352/276693
Multicast boundary: not set
Multicast TTL threshold: 0
Multicast Tagswitching: disabled
Where do I go from here?
Thanks Yahya and Stephen
I have tried to simplify my config as much as possible.
wlc 4404
Ethernet Multicast Forwarding............... Enable
Ethernet Broadcast Forwarding............... Enable
AP Multicast/Broadcast Mode................. Multicast Address : 239.239.5.1
IGMP snooping............................... Enabled
IGMP timeout................................ 60 seconds
IGMP Query Interval......................... 20 seconds
I have an interface created 10.x.x.x/23
I have created a new SSID APPLETV - assigned Interface
I have added the SSID to just 1 AP Group
show network multicast mgid summary
Layer2 MGID Mapping:
InterfaceName vlanId MGID
2upadhoc 136 27
Layer3 MGID Mapping:
Number of Layer3 MGIDs........................... 11
My vlan does not show up here.
I only have 2 devices in this vlan the AppleTV and IPAD
checking the switch for all required vlans
show ip multicast
Multicast Routing: enabled
Multicast Multipath: disabled
Multicast Route limit: No limit
Multicast Triggered RPF check: enabled
Multicast Fallback group mode: Dense
admin interface
Management, AP-Manger
Vlan12 is up, line protocol is up
Internet address is x.x.x.1/24
Multicast routing: enabled
Multicast switching: fast
Multicast packets in/out: 238489978/724352
Multicast boundary: not set
Multicast TTL threshold: 0
Multicast Tagswitching: disabled
AP vlan
Vlan222 is up, line protocol is up
Internet address is x.y.z.1/24
Multicast routing: enabled
Multicast switching: fast
Multicast packets in/out: 11423/238338583
Multicast boundary: not set
Multicast TTL threshold: 0
Multicast Tagswitching: disabled
The test Apple TV Vlan
Vlan136 is up, line protocol is up
Internet address is x.xx.1/23
Multicast routing: enabled
Multicast switching: fast
Multicast packets in/out: 156740/0
Multicast boundary: not set
Multicast TTL threshold: 0
Multicast Tagswitching: disabled
interface Vlan12
ip pim dense-mode
interface Vlan222
ip pim dense-mode
interface Vlan136
ip pim dense-mode
Show ip igmp groups
Group Address Interface Uptime Expires Last Reporter
224.0.1.39 Vlan136 2d00h 00:02:35 x.x.x.1
So just to recap
Same subnet in a AP Group
New SSID
multicast enabled on WLC - using multicast multicast mode
Broadcast forward enable
Switch -Multicast routing enabled
all vlans enabled for PIM
2 devices - added Imac to see if I could home share through Itunes.
end result
no bonjour clients, no apple tv, no airplay
Bonjour Gateway device - although same subnet it shouldn't be needed
eth0.12 Link encap:Ethernet HWaddr bc:30:5b:x:x:x
inet addr:x.x.x.244 Bcast:x.x.x.255 Mask:255.255.255.0
inet6 addr: fe80::be30:5bff:fed6:a178/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:55005 errors:0 dropped:115 overruns:0 frame:0
TX packets:23003 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:2776156 (2.7 MB) TX bytes:11285256 (11.2 MB)
eth0.136 Link encap:Ethernet HWaddr bc:30:5b:x:x:x
inet addr:x.x.x.9 Bcast:x.x.x.255 Mask:255.255.254.0
inet6 addr: fe80::be30:5bff:fed6:a178/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:42167 errors:0 dropped:115 overruns:0 frame:0
TX packets:22340 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:3251242 (3.2 MB) TX bytes:10373581 (10.3 MB)
eth0.222 Link encap:Ethernet HWaddr bc:30:5b:xx:xx:xx
inet addr:x.x.x.9 Bcast:x.x.x.255 Mask:255.255.255.0
inet6 addr: fe80::be30:5bff:fed6:a178/64 Scope:Link
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:152397 errors:0 dropped:115 overruns:0 frame:0
TX packets:23768 errors:0 dropped:0 overruns:0 carrier:0
collisions:0 txqueuelen:0
RX bytes:12795709 (12.7 MB) TX bytes:11318103 (11.3 MB)
+ eth0.222 IPv6 67665ACD317A45B0 _appletv-v2._tcp local
+ eth0.222 IPv4 67665ACD317A45B0 _appletv-v2._tcp local
+ eth0.136 IPv6 67665ACD317A45B0 _appletv-v2._tcp local
+ eth0.136 IPv4 67665ACD317A45B0 _appletv-v2._tcp local
+ eth0.12 IPv6 67665ACD317A45B0 _appletv-v2._tcp local
+ eth0.12 IPv4 67665ACD317A45B0 _appletv-v2._tcp local
Should Bonjour work same subnet with these settings?
I am going to have read more about the Interface groups and the Multicast vlan.
Similar Messages
-
5580 & multicast (bonjour)
I have just completed an 18AP install at my place of employment and we have run into a slight problem.
The Apple clients on our wireless LAN cannot discover printers through the bonjour protocol.
Am I correct in saying this would be related to either a unicast or multicast issue?
Can someone point me in the correct direction on how to begin configuring either unicast or multicast between the 5508's and other switching devices.
Currently I have the 2 5508's patched into a 3750 (which provides routing) and from that switch on, the other AP's connect from the network.
ThanksEnable Multicast Globally on the WLC..
WLC GUI >> Controller >> Multicast >> Enable Global Multicast >> Enable Snooping >> Let the timeout be in defaults (60 seconds)..
and follow the below link..
http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a00807cc10d.shtml
lemme know if this helps and please dont forget to rate hte usefull posts!!
Regards
Surendra -
Itunes/Bonjour/Apple Mobile Device won't Install even though I'm the Administrator
Since late February I have been unable to reinstall ITunes. It all started when I tried to update it, and it wouldn't work. Ultimately I uninstalled ITunes and tried to reinstall it, but I kept getting this message that the Apple Mobile Device could not be installed(?), and that I have to verify that I have sufficient privileges to install.
Since then I have:
Ran as the administrator
Made sure that 'everybody', 'my user' and the 'administrator' (pretty much just me) have full access
Turned the User Account Control off
Cleaned up the registry using CCleaner
Used Command Prompt to check the C drive?
Used the SubInACL tool to repair any file and registry permissions (from here)
Nothing worked. I also went to the ITunes music folder, made myself the administrator, and it still wouldn't work. Recently I uninstalled Quicktime, Bonjour, and the Apple Mobile Device, Apple Software Update, Apple Application Support....everything Apple. Still couldn't install Itunes. In fact, now I can't install Bonjour or AMD.
When I tried to install Bonjour, I got the message:
"Service 'Bonjour Service' (Bonjour Service) could not be installed. Verify you have sufficient privileges to install system services.". If I hit 'ignore', then it'll just do the same thing except replace 'Bonjour' with 'Apple Mobile Device'.
I'm at a lost.
I have a Hewlett-Packard laptop
HP Pavilion g6 Notebook PC.
64-bit operating system.
Windows 7 Home Premium
Version 6.1.7601 Service Pack 1 Build 7601
Processor: AMD A4-3305M APU with Radeon(tm) HD Graphics, 1900 Mhz, 2 Core(s), 2 Locations
Installed physical memory (RAM) = 6 GB
Total physical memory = 5.48 GB
Available physical memory = 1.98 GB
Total virtual memory = 11 GB
Available virtual memory = 7.39 GB
BIOS Version/Date = Hewlett-Packard F.49, 12/25/2012
SMBIOS Version = 2.7
Hopefully, that's enough info. Any help will greatly be appreciated.Hey mrsslick,
This section contains information that might help your situation if you're using Windows XP:
Use the Control Panel to uninstall iTunes and related software components in the following order and then restart your computer:
iTunes
Apple Software Update
Apple Mobile Device Support
Bonjour
Apple Application Support (iTunes 9 or later)
Important: Uninstalling these components in a different order, or only uninstalling some of these components may have unintended affects.
Quit the following programs if they're running:
iTunes
Apple Software Update
Choose Start > Control Panel.
In Control Panel, open "Add or Remove Programs."
Select iTunes from the list of currently installed programs and click Remove.
When asked if you would like to remove iTunes, select Yes.
After the uninstallation is complete, don't restart your computer if you're prompted.
If other program entries were listed for iTunes in Add or Remove Programs, remove those as well by repeating steps 4-6.
Remove all instances of these applications by repeating steps 4-6:
iPod Updater
Apple Software Update
Apple Mobile Device Support
Bonjour
Apple Application Support
Restart your computer.
You should be able to remove Apple Mobile Device Support by following those steps above. The article you came from however is for Windows XP - if you're using Windows Vista, Windows 7, or Windows 8, follow the directions in here:
Removing and reinstalling iTunes and other software components for Windows Vista, Windows 7, or Windows 8
http://support.apple.com/kb/HT1923
The steps in "Remove iTunes and related components from the Control Panel" and "To remove these components, follow these steps" are the most pertinent.
Let us know if following that article helped at all.
Regards,
Delgadoh -
TROUBLE MOVING CONTACTS FROM ONE GROUP , , TO OTHER (APPLE ADDRESS BOOK) WHEN I TRY TO DRAG IT WON'T STAY . WHERE SHOULD I BE , AND HOW DO I DRAG ???? AND RELEASE AB
I have many different mailaccounts and different groups of contacts on my ipad and iphone. Sometimes i made the mistake when i create a new account linking it with the standard account. How it is possible to move one account to an other group?
-
Hello!
Staff of E4 Group JSC use Apple devices for call, reading email and calendars. When the user open event in calendar of iPhone or iPad, he does not see attachments (picture №1, picture №2). But it is possible on Blackberry (picture №3). How user of Apple can see these attachments? Recommend please any apps for it.Hello!
Staff of E4 Group JSC use Apple devices for call, reading email and calendars. When the user open event in calendar of iPhone or iPad, he does not see attachments (picture №1, picture №2). But it is possible on Blackberry (picture №3). How user of Apple can see these attachments? Recommend please any apps for it. -
I am thinking about buying my wife a IPHONE 5C , She has a IPAD . My question is I have always bought from Apple Store before this. I am with Verizon for other phones and Hotspot. It seems like I come out ahead by buying from Verizon as far as minimum GB
I would still like to use Genius Bar and group sessions at Apple store . Can a person do this if you buy from Verison ?
THANKSIf you haven't purchased your iPhone then yes, you can. Be sure to mention that you want AppleCare+. If they don't know anything about it, leave the store and order through Apple's website. Some of those VZW salespeople are anything but geniuses...
:3 -
Wlc 5508 multicast/bonjour
hello,
i have a wlc 5508 with code 7.0.220, with multicast enabled in it and on the lan too.I am having a bit of confusion getting bonjour to work on the wireless side. Looking at some of the cisco docs, i still have some questions on how to get it working in my specific enviroment.
I have the wlc conected to the lan via a port-channel. 2 wlan (ssid1 and ssid2) each wlan maps to a specific vlan (dynamic int), the management int (also used for dynamic ap-manager) on a third vlan (vlan x).
The requirement:
I need to get Bonjour working between ssid1 and vlan-x, so my wireless clients (in ssid1 can use bonjour with their laptops) can synch between wireless and wired. I know that you can do this within the same wlan (ssid) but in this case, when a user has a laptop wired into the network he cant comunicate to the wireless device. I read about Vlan Select and Multicast Optimization however, from what i understand i need to setup an interface group and just assign my wlan1 and management int to it, correct?
Is there anyone that has this type of setup working? Can you provide some configs/print screens.
Another scenario that may come into play would also be when or if i need a different segment (vlan y) in my lan to also "bonjour" with ssid1? For this i assume i would need to create a dynamic interface on the wlc using the same IP segment and do the a new interface group?
thanks in advanceCisco answers user questions about upcoming Apple Bonjour Gateway
How specific can you be about the beta release of the Gateway?
Beta for the v7.4 release will be in Oct/Nov of this year [2012].
[RECORDING]Better Application Device Visibility With Cisco’s Bonjour Gateway-20120724 1704-1 -
WLC mobility group between 4404 and 5508 controllers
Mobility 'Control and Data Path Down' between 4404 and 5508 WLC's.
Hello, we have 5 x 4404 WLC's running 7.0.240.0 with mobility configured fine between them.
We have installed a 5508 with HA running 7.4.110.0, and have tried to add it to the mobility group, however we see 'Control and Data Path Down' between the new 5508 and all the 4404 controllers.
All controllers have:
The same virtual address
Management interfaces are in the same VLAN, and indeed all the controllers connect via the same pair of 3750X stacked switches.
The default mobility domain name is the same
4404 output when issung the command 'show mobility summary'
Symmetric Mobility Tunneling (current) .......... Enabled
Symmetric Mobility Tunneling (after reboot) ..... Enabled
Mobility Protocol Port........................... 16666
Default Mobility Domain.......................... SGH-Mobility
Multicast Mode .................................. Disabled
Mobility Domain ID for 802.11r................... 0xe209
Mobility Keepalive Interval...................... 10
Mobility Keepalive Count......................... 3
Mobility Group Members Configured................ 6
Mobility Control Message DSCP Value.............. 0
5508 ouput when issueing the command 'show mobility summary'
Mobility Architecture ........................... Flat
Mobility Protocol Port........................... 16666
Default Mobility Domain.......................... SGH-Mobility
Multicast Mode .................................. Disabled
Mobility Domain ID for 802.11r................... 0xe209
Mobility Keepalive Interval...................... 10
Mobility Keepalive Count......................... 3
Mobility Group Members Configured................ 6
Mobility Control Message DSCP Value.............. 0
I've spent quite some time double checking all the configurations to no avail.
Has anybody seen this problem before?
Kind regards
Dave BellThanks Sandeep.
I am well versed with WLC's and mobility, however trying to add a 5508 to a mobility group with 4404's has come up with a bit of a curve ball.
All the 4404 controllers all joined the mobility group fine, no problems at all - its only the 5508 I am struggling with.
In theory its simple, populate the IP address, and MAC addres of the management interface of the remote WLC, as long as the management interfaces are in the same VLAN, and the Default Mobility Domain Name are the same it should come up.
Interestingly I have found the 5508 reports its own management interface MAC address incorrectly when viewing the Mobility Groups:
For example:
{Screen shot WLC1.jpg}
5508 management address is 10.95.x.x and when viewing the Mobility Management screen it shows its own MAC address as bc:16:65:f9:37:60.
however!
From our router is I do an sh arp | i 10.95.x.x (controller management address), I see:f872.eaee.becf.
{Screen shot wlc2.jpg}
Hence the WLC reports as: bc:16:65:f9:37:60
and
The network reports as: f872.eaee.becf for the same IP address.
I have changed the other WLC's to the MAC adress seen on the network for the new controller, aka changed from
bc:16:65:f9:37:60
to
f8:72:ea:ee:be:cf
I now see the controllers reporting the mobility with the new controller as 'Control Path Down', however I am at a loss as to what may be causing this?
Kind regards
Dave Bell -
We have not configured or used interface groups in our wireless deployments, and I am just curious if there are any issues or caveats experienced with using these? We have a few instances where we have setup a /23 network for a specific wlan. I undertsand this increases broadcasts. Would interface groups be preferred over using a /23 or even maybe a /22 to accomodate addressing?
By default, the WLC will not forward broadcast. There are pro's an con's to interface groups... if your doing multicast, that can be an issue unless you specify an multicast vlan. I have used interface groups because customer standardize on /24, so I would combine a bunch of /24's to create an interface group. I have customers with /23 and /23 and others with no issues... but I look at it as on the wired side. You okay with /23 and or /22 on the wired side?
Thanks,
Scott
*****Help out other by using the rating system and marking answered questions as "Answered"***** -
Hi,
I try to get Bonjour (mDNS, iChat, multicast and so on) running across network borders. Where 'running across network borders' means, that the multicast traffic travels from one layer 2 domain / ip network (over a router) to another.
Is this possible?
While playing around with a Cisco Catalyst 3560 as Router and trying to get multicast routing to work, I saw that the TTL of the multicast traffic (desination 224.0.0.251 udp 5353) is 1. And as far as I know a router would decrement the TTL by (at least) 1, so it becomes 0 and the packet would be discarded.
Is it possible to change the TTL value to something greater than 1?
It would be kind if here is someone out there who could give me some hints on this.
Thanks in advance
regards
Mark
Mac OS X (10.4.10)Sonic,
The Multicast address you are referencing 224.0.0.251 is part of Bonjour. Bonjour is a Multicast DNS protocol for service discovery and advertisement and is a perfectly normal process. Apple's implementation of Bonjour assumes a link-local multicast address (224.0.0.*) that is not suppose to traverse a router but will still be heard on interfaces that process multicast packets.
Search for multicast DNS or Bonjour on wikipedia to learn more about how these protocols work.
While you may have had Bonjour disabled in prior versions of MacOS, it was likely re-enabled to support the Apple Wireless Direct Link (a wireless adapter sub-interface) which requires the Bonjour protocol to advertise services such as AirDrop and AirPlay.
Since you are receiving Teardrop attack notifications on your router, it is safe to assume that internal interfaces are being monitored. I would suggest disabling the deep packet security inspection for internal ethernet and wireless interfaces (or if possible dismiss or disable just the offending signature for your trusted hosts).
Best Regards -
WLC controller Ethernet Multicast Mode
When do you enable the ethernet multicast mode on controller? In my test lab, I have it disabled and I have not seen any issues so far. Thanks.
When you are supporting Wireless Applications that require MC, such as Spectralink's (ca use MC for registration as well as Push-to-Talk).
However, it is a common mistake to use the same MC group that your application uses.... Wrong! The WLC controller actually uses the configured MC group to distribute MC traffic to the joined AP's, so you really want to use a group that is not used by the actual applications.
(don't forget to rate all responses) -
Can some please clarify how Mobility groups work and when to use them. I have 2 data centers, each with a WLC, for centralized control. I just want to provide simple redundancy.
When should I use an Anchor group.
Thanks for your help.To make it simple, any wlc's that will be a primary, secondary or tertiary WLC for lap's will need to be placed in the same mobility group. Now if you have a guest anchor controller for guest, then that will need to be added in the same mobility group. Bottom line, when users roam from AP to AP from WLC to another even getting tunneled (anchor) the WLC's need to be aware of the roaming and that is what mobility group does.
Anchor is if you want to tunnel users to a specific controller like in a guest wireless situation when the WLC is located in the DMZ. There are other reasons, but this is most likely why. -
WLC MOBILITY GROUP SINGLE WEB AUTHENTICATION
Hi.
I have installed two AIR-WLC2112 with mobility group configured and authentication web.
I want to know if you can create user / password web authentication only in one WLC.
Now, when I create a new user / password , I have to create in two WLC.
ThanksInorder to validate a site issuing a certificate , client should be loaded with a certificate from same Certificate Authority. Else ignore the warning and continue to the site. If you want to know if the site is valid , click on View certificate on the warning page and see if it belongs to the website.
-
HI,
How many WLCs 5508 can you add to the mobility group?WLC code 5.1 and above we can add 24 WLC in a single mobility Group..
http://www.cisco.com/en/US/docs/wireless/controller/7.0/configuration/guide/c70mobil.html#wp1093878
Lemme know if this answered ur question and please dont forget to rate the usefull posts!!
Regards
Surendra -
Hi to all,
we've two internal WLC which belong to the same MG (the default one), and one DMZ WLC which belongs to another MG.
All are running OS 4.2.61
After configuring Mobility Group using the "edit all" inserting the WLC IP address and MAC of the MGMT interface and the name of the MG which they belong, I notice a strange behaviour:
- WLC1 has Data path UP with internal's WLC2 and DMZ WLC...but Control path is down.
- WLC2 has Data path and Control path UP with DMZ WLC and only Data path UP with WLC1
- DMZ WLC has Data path and Control path UP with DMZ WLC and only Data path UP with WLC1
MG Secure Mode is disabled on all WLC's seeing the following bug CSCsk36683 (The mobility control path is down when secure mode is enabled).
Reachability via ping is OK, via eping the same but mping are not working from WLC1 to WCL2 and from DMZ WLC to WLC2
I've already restarted both controllers without success...what i've noticed is on WLC2 and DMZ WLC msglog there are a lot of these entries with a lot of RX errors ===>>>MM-3-INVALID_PKT_RECVD: Received an invalid packet from X.X.X.X. Source member:0.0.0.0. source member unknown.
any idea?
Tnx
OmarHere is the URL for the configuration for the Mobility Group follow the URL which will help you :
http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a00809817ca.shtml
Maybe you are looking for
-
Drag and drop tree editor that reads/writes/edits to XML
Hi, I wondered if anyone knew any good ONLINE tools / GUIs available which gives you a very simple user interface to manage an XML file. This XML file is not complicated at all but simply represents the XML tree but allows the user to move nodes, add
-
Tiger to Panther ok, reverse doesn't work
Hi, I can do a video chat perfectly when I initiate it from my Tiger PB (last version) to a Panther eMac (last version), but it doesn't work when the other party tries to initiate it with me. I get the invitation, I accept and then wait and wait and
-
FCPx with earlier FCP projects
I cannot understand how apple can call this "FINAL CUT".... It will not open Final cut projects. I guarantee that Adobe will NEVER make a version of Photoshop that cannot open a .psd file. Even Microsoft will never make a version of Excel that cann
-
TA48312 where do you find OS 9.0 updates to use classic on G3, & G4?
where do you find OS 9.0 updates to use classic on G3, & G4?
-
Current SQL, highlighting management
Oracle SQL Developer version 1.1.2.25 BUILD MAIN-25.79 Running under WinXP Issue description: This feature is not working properly, if current sql is on a single line it is not highlighted nor the last line of a multiple sql instruction.