WLC with WPA1 and WPA2 enabled

I have enable WPA1 and WPA2 on the WLC and My notebook support both WPA1 and WPA2.
Which one will be use when I connect to WLAN. How can I check if I am using WPA1 or WPA2?
Thanks.
C.K.

Hi Friend,
When you check both the options one with higher security level will be selcted intelligently by the client which mean WPA2 will be selcted. If you configure both AES and TKIP, AES with WPA2 will be used.
Beacons will advertise both the encryption types. You can check the client details from the controller.
HTH
Ankur

Similar Messages

  • Wireless speed difference with WEP and WPA2?

    I am connecting to my FiOS router wirelessly, since I was new on wireless networking, I did lots of reading they all say WEP encryption is flawed, and WPA2 should be used instead. So I changed the router's default WEP to WPA2 the same day I got FiOS installed. When I check about 10 of my neighbor's wireless networks, 8 of them using WEP, 1 has Security Disabled(D'oh), and I am the only one using WPA2-personal. My question is will I see any connection speed difference between using WEP and WPA2?
    Solved!
    Go to Solution.

    in every day use, your experience will vary.  There is more "going on" with WPA and WPA2 than with WEP, such as message checking and encryption key changes for each data transmission, so these, combined with other possibilities inherent in computer-connected-to-internet use, can slow you down.  Another factor:  There will be more administrative overhead to use WPA or WPA2.  such as if you ever have to reset the router (to default settings), the default is WEP, so you have to go into the router to then chage it (or import a config file you previously saved on your PC).   AND If you need to call verizon tier one tech support, they only support default settings.  Their premium service is called Expert Care.
    cjacobs001

  • Dear Friends...... I have an ipad 2 32gb with wifi and 3g enabled sim..... i bought it second hand .... and now if am going to download any games it is showing me an email id and asking for its password... please guide me how can i change this setting

    Dear Friends...... I have an ipad 2 32gb with wifi and 3g enabled sim..... i bought it second hand .... and now if am going to download any games it is showing me an email id and asking for its password... please guide me how can i change this setting to my email id and password

    Tap on the id in Settings > Store and log out of it and then login with your id. Any content already on the iPad will be tied to the previous owner's id and it can't be copied or transferred to your id - so it's probably best to do restore the iPad back to factory defaults and start as from new with it : Settings > General > Reset > Erase All Contents And Settings

  • Issue with CDC and Replication enabled

    Hello,
    We have this strange issue with CDC and replication. Let me explain
    1. We have a database on write server and we replicate some tables to the read server. There are 15 tables that we replication and 8 of them have computed columns that are persisted.
    2. We also have CDC enabled on the same database where we have transactional replication enabled. I know that both CDC and replication uses replication log reader. Some how, all the time we see the log_reuse_wait says replication
    3. If I add around 100-200 MB into these tables, with these persisted columns, it will be around 500 MB of data. But the replication is queuing up 10-15 GB of data.
    4. I checked CDC tables, and the updates are in cdc tables. Also, I don't see CDC capture job. Is this because there is already replication enabled?
    What might be the issue that's causing the log to hold for a very long extended periods of time? We don't see any issue with log reader and CDC.

    2. Log_reuse_wait will show replication status both for CDC and replication.
    4. Yes as you are using transaction replication, Log Reader Agent is created for the database and the capture job won’t exist.
    When the Log Reader Agent is used for both change data capture and transactional replication, replicated changes are first written to the distribution database.
    Then, captured changes are written to the change tables. Both operations are committed together. If there is any latency in writing to the distribution database, there will be a corresponding latency before changes appear in the change tables.
    https://msdn.microsoft.com/en-us/library/cc645938.aspx?f=255&MSPPError=-2147217396
    As you said CDC updates are in cdc table I don’t see any issue.
    You could run DBCC OPENTRAN to see the old active transaction? It will give you more info.

  • EIS with ASO and Hierachies enabled

    Hello.
    I am in the process of changing my BSO cubes to ASO cubes. So far everything went quite well. Now I like to enhance some of my dimensions and came across following problem:
    In one dimension I have 2 hierarchies. I would like to mark the dimension itself as "Multiple Hierarchies Enabled", then the first hierarchy (Gen2, Intercompany) as "Stored" and the second hierarchy (Gen2, InterSpecial) as dynamic.
    In EIS in the Dimension Properties - Outline Build Tab is the "Outline Hierarchy Information" Options. I enabled the last option and marked "Intercompany" as Stored, which should mark InterSpecial indirectly as dynamic.
    But doing the member load I get the following error for InterSpecial:
    ESS_OUTERROR3_ASO_ISDUPLICATESHAREINHIERARCHY
    But in ASO dynamic hierarchies shared members are allowed .
    I have tried loading the dimensions as only dynamic and afterwards manually change the hierarchy properties via EAS to Stored and Dynamic. The outline verifies successfully.
    What adjustment in the EIS settings do I miss? Or am I on a complete wrong track?
    Any help is very welcome since the solution is urgent. Thanks in advance.

    My primary source is this link which says you have to have both the SERVER and CLIENT at required level to enable encrytpiton if one is at accpeted level it is turned off.
    http://stanford.edu/dept/itss/docs/oracle/10g/java.101/b10979/clientsec.htm#i1022564
    This is the fresh log alert_orcl.log
    starting up 1 dispatcher(s) for network address '(ADDRESS=(PARTIAL=YES)(PROTOCOL=TCP))'...
    MMNL started with pid=12, OS id=10885
    Tue Jul 27 02:06:21 2010
    starting up 1 shared server(s) ...
    Tue Jul 27 02:06:21 2010
    ALTER DATABASE MOUNT
    Tue Jul 27 02:06:25 2010
    Setting recovery target incarnation to 2
    Tue Jul 27 02:06:26 2010
    Successful mount of redo thread 1, with mount id 1253249565
    Tue Jul 27 02:06:26 2010
    Database mounted in Exclusive Mode
    Completed: ALTER DATABASE MOUNT
    Tue Jul 27 02:06:26 2010
    ALTER DATABASE OPEN
    Tue Jul 27 02:06:26 2010
    Thread 1 opened at log sequence 39
    Current log# 2 seq# 39 mem# 0: /home/oracle/oracle/product/10.2.0/db_1/oradata/orcl/redo02.log
    Successful open of redo thread 1
    Tue Jul 27 02:06:26 2010
    MTTR advisory is disabled because FAST_START_MTTR_TARGET is not set
    Tue Jul 27 02:06:26 2010
    SMON: enabling cache recovery
    Tue Jul 27 02:06:26 2010
    Successfully onlined Undo Tablespace 1.
    Tue Jul 27 02:06:26 2010
    SMON: enabling tx recovery
    Tue Jul 27 02:06:26 2010
    Database Characterset is WE8ISO8859P1
    replication_dependency_tracking turned off (no async multimaster replication found)
    Starting background process QMNC
    QMNC started with pid=16, OS id=10894
    Tue Jul 27 02:06:27 2010
    db_recovery_file_dest_size of 2048 MB is 0.00% used. This is a
    user-specified limit on the amount of space that will be used by this
    database for recovery-related files, and does not reflect the amount of
    space available in the underlying filesystem or ASM diskgroup.
    Tue Jul 27 02:06:27 2010
    Completed: ALTER DATABASE OPEN

  • Issues with IOS and WPA2 Enterprise

    Hi,
    Done a lot of searching on this, but can't find anything useful!
    I've got a network running WPA2 Enterprise using AES and PEAP/EAP-MSCHAP-V2
    For some reason, all our apple IOS devices connect to the network fine and are able to accept the server certificate, but can't seem to access anything over the network such as the internet once connected. I'm currently testing an iPad mini with IOS 7.0.4
    I have other devices such as laptops and a Windows Phone 8 devices, and everything works fine.
    Am I missing something here? What could be causing the IOS devices to stop accessing the network?
    Cheers,
    Carl.

    I just found this on the frontline support site, I believe my question has been answered:
    Important Notice
    iOS Devices
    Apple has made a change to the PushMagic or UnlockToken values in that they may differ in size to previous values. This can cause issues with iOS devices being able to connect to the Afaria server as the current database field size is not adequate to facilitate the variable length of this value.
    Apple has made a change to the PushMagic or UnlockToken values in that they may differ in size to previous values. This can cause issues with iOS devices being able to connect to the Afaria server as the current database field size is not adequate to facilitate the variable length of this value.
    There is an Apple issue that we have found in our testing that occurs when iOS devices are enrolled. This issue fails a check when the enrollment payload is inspected and the signing cannot be read. SAP believes Apple will fix this issue prior to iOS 7.1 being released but we are working on a patch that will address this issue shortly in case the fix does not make the iOS 7.1 GA release.
    Afaria will be providing a patch to address this issue that increases the size of the database column from 2K to 6K to accommodate this change.
    This issue is resolved in Service Pack 3 Hot Fix 39 and Service Pack 4 Hot Fix 3. Available now.

  • HT1529 Trying to have iTalk sync with iTunes, and then enable iTalk Premium to email greater length recordings

    How to sync iTalk with iTunes?

    Entourage calendar does not sync as you are expecting, with iCal.
    Turn your Entourage sync services on (to sync your calendar) and you will notice in iCal a new calendar on the left, called Entourage. Mind has a purple color to it, for example.
    Now, in iCal, create a new appointment and assign it TO the Entourage calendar. Now sync, and hey presto it shows up in Entourage.
    This is by design, Entourage does not sync ALL of your iCal calendars, it will only sync the Entourage calendar which is created in iCal.
    For example, I have Home, Work, Personal and Entourage calendars in iCal - appointments I make with my Home, Work or Personal calendar will not appear in Entourage, period. Only appointments made in iCal using the Entourage calendar will appear in Entourage (after a sync).
    Likewise, appointments made IN Entourage Calendar, are sync'd to iCal and are only visible if you show the Entourage calendar in iCal - (it's switched ON by default, but can be switched off by un-ticking the calendar in the left pane of iCal).
    Does this make sense?

  • Had to swap my phone with apple and cant enable slide to answer any1 help please

    just wondered if any1 could help me get slide to answer on my iphone 5

    Hi jason07188,
    Welcome to the Support Communities!
    To address this issue, I would suggest you close all open apps, then restart and reset your iPhone.  Here's how:
    iOS: Force an app to close
    http://support.apple.com/kb/ht5137
    iPhone, iPad, iPod touch: Turning off and on (restarting) and resetting
    http://support.apple.com/kb/ht1430
    If the issue persists, Reset All Settings on the iPhone.  This information can be found in the iPhone User Guide:
    Reset iPhone settings - iPhone
    http://help.apple.com/iphone/7/#/iph7a2a9399b
    Reset iPhone settings. Go to Settings > General > Reset, then choose
    Reset All Settings: All your preferences and settings are reset.
    If this does not resolve your issue, you may need to back up your device and restore iOS 7.
    I hope this information helps ....
    - Judy

  • WLC 5508 : WPA2 enabled SSID - especially Intel & Dell wireless cards are not getting connected

    Hi ,
    I have one pecular issue in my wireless lan set-up. I have some laptop users who are using below inbuilt wireless adapter/cards :
    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Table Normal";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-priority:99;
    mso-style-qformat:yes;
    mso-style-parent:"";
    mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
    mso-para-margin:0cm;
    mso-para-margin-bottom:.0001pt;
    mso-pagination:widow-orphan;
    font-size:11.0pt;
    font-family:"Calibri","sans-serif";
    mso-ascii-font-family:Calibri;
    mso-ascii-theme-font:minor-latin;
    mso-fareast-font-family:"Times New Roman";
    mso-fareast-theme-font:minor-fareast;
    mso-hansi-font-family:Calibri;
    mso-hansi-theme-font:minor-latin;
    mso-bidi-font-family:"Times New Roman";
    mso-bidi-theme-font:minor-bidi;}
    1 ) Dell wireless 1397 WLAN Minicard
    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Table Normal";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-priority:99;
    mso-style-qformat:yes;
    mso-style-parent:"";
    mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
    mso-para-margin:0cm;
    mso-para-margin-bottom:.0001pt;
    mso-pagination:widow-orphan;
    font-size:11.0pt;
    font-family:"Calibri","sans-serif";
    mso-ascii-font-family:Calibri;
    mso-ascii-theme-font:minor-latin;
    mso-fareast-font-family:"Times New Roman";
    mso-fareast-theme-font:minor-fareast;
    mso-hansi-font-family:Calibri;
    mso-hansi-theme-font:minor-latin;
    mso-bidi-font-family:"Times New Roman";
    mso-bidi-theme-font:minor-bidi;}
    2 ) Intel Centrino Advanced N6200 AGN
    above card are having issue with WPA2 enabled ssid connecitivity. strange is , the same users are getting connected to other wep enabled SSID but its not working for WPA2 SSID.
    I have external ACS server which is used for radius authentication. Last time I had put same query in support forum did some workaround.
    eq. disabling DHCP proxy option in WLC and moving all DHCP scope in external server.
    After doing this workaround this mentioned users are still facing issue. I gone through some cisco document and some forums and came across that there is something to be done in " Session Timed Out "  optionin WLC
    which is default 1800 sec based on that I tried to capture debug outputs for mentioned above problematic clients and user who is working fine .
    I gone through the same debug output  and observed :
    User who is working fine :
    Processing Access-Accept for mobile 00:22:5f:8d:55:84
    00:xx:xx:xx:xx:xx Setting re-auth timeout to 1800 seconds, got from WLAN config.
    00:xx:xx:xx:xx:xx Station 00:22:5f:8d:55:84 setting dot1x reauth timeout = 1800
    00:xx:xx:xx:xx:xx Creating a PKC PMKID Cache entry for station 00:22:5f:8d:55:84 (RSN 2)
    00:xx:xx:xx:xx:xx Adding BSSID 00:1f:ca:2c:f3:01 to PMKID cache for station 00:22:5f:8d:55:84
    New PMKID: (16)
    The User /  card which is having issue :
    Processing Access-Accept for mobile 00:22:5f:90:a2:ac
    00:xx:xx:xx:xx:xx Setting re-auth timeout to 0 seconds, got from WLAN config.
    00:xx:xx:xx:xx:xx Station 00:22:5f:90:a2:ac setting dot1x reauth timeout = 0
    00:xx:xx:xx:xx:xx Stopping reauth timeout for 00:22:5f:90:a2:ac
    00:xx:xx:xx:xx:xx Creating a PKC PMKID Cache entry for station 00:22:5f:90:a2:ac (RSN 2)
    00:xx:xx:xx:xx:xx Adding BSSID 00:26:cb:1d:fe:31 to PMKID cache for station 00:22:5f:90:a2:ac
      New PMKID: (16)
    Please suggest me to do workaround.

    Hi,
    According to output of working as well as not working wireless cards ,
    below is my observations :
    Not working wireless cards observation :
    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Table Normal";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-priority:99;
    mso-style-qformat:yes;
    mso-style-parent:"";
    mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
    mso-para-margin-top:0cm;
    mso-para-margin-right:0cm;
    mso-para-margin-bottom:10.0pt;
    mso-para-margin-left:0cm;
    line-height:115%;
    mso-pagination:widow-orphan;
    font-size:11.0pt;
    font-family:"Calibri","sans-serif";
    mso-ascii-font-family:Calibri;
    mso-ascii-theme-font:minor-latin;
    mso-fareast-font-family:"Times New Roman";
    mso-fareast-theme-font:minor-fareast;
    mso-hansi-font-family:Calibri;
    mso-hansi-theme-font:minor-latin;
    mso-bidi-font-family:"Times New Roman";
    mso-bidi-theme-font:minor-bidi;}
    The client passed the L2 authentication and that, after successful association, it is now going into the DHCP_REQD state
    Not-working wirelss card :
    *Apr 06 11:58:15.866: 0c:60:76:3e:8c:49 10.10.232.137 RUN (20) Successfully plumbed mobile rule (ACL ID 255)
    *Apr 06 11:58:15.866: 0c:60:76:3e:8c:49 Stopping retransmission timer for mobile 0c:60:76:3e:8c:49
    *Apr 06 11:58:15.869: 0c:60:76:3e:8c:49 10.10.232.137 Added NPU entry of type 1, dtlFlags 0x0
    /* Style Definitions */
    table.MsoNormalTable
    {mso-style-name:"Table Normal";
    mso-tstyle-rowband-size:0;
    mso-tstyle-colband-size:0;
    mso-style-noshow:yes;
    mso-style-priority:99;
    mso-style-qformat:yes;
    mso-style-parent:"";
    mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
    mso-para-margin-top:0cm;
    mso-para-margin-right:0cm;
    mso-para-margin-bottom:10.0pt;
    mso-para-margin-left:0cm;
    line-height:115%;
    mso-pagination:widow-orphan;
    font-size:11.0pt;
    font-family:"Calibri","sans-serif";
    mso-ascii-font-family:Calibri;
    mso-ascii-theme-font:minor-latin;
    mso-fareast-font-family:"Times New Roman";
    mso-fareast-theme-font:minor-fareast;
    mso-hansi-font-family:Calibri;
    mso-hansi-theme-font:minor-latin;
    mso-bidi-font-family:"Times New Roman";
    mso-bidi-theme-font:minor-bidi;}
    The client entry is added to the Network Processing Unit (NPU) of the controller with an IP address of  10.10.232.137 but after that , I am getting below output
    *Apr 06 11:58:22.742: 0c:60:76:3e:8c:49 Copy AP LOCP - mode:0 slotId:0, apMac 0x0:1f:ca:2c:ea:e0
    *Apr 06 11:58:22.742: 0c:60:76:3e:8c:49 Copy WLAN LOCP EssIndex:2 aid:50 ssid:USTRI_SECURE
    *Apr 06 11:58:22.742: 0c:60:76:3e:8c:49 Copy Security LOCP ecypher:0x0 ptype:0x2, p:0x0, eaptype:0x2 w:0x1 aalg:0x0, PMState:        RUN
    *Apr 06 11:58:22.742: 0c:60:76:3e:8c:49 Copy 802.11 LOCP a:0x0 b:0x0 c:0x0 d:0x0 e:0x1 protocol2:0x3 statuscode 0, reasoncode 99, status 3
    *Apr 06 11:58:22.742: 0c:60:76:3e:8c:49 Copy Username LOCP :   U25744
    *Apr 06 11:58:22.743: 0c:60:76:3e:8c:49 Copy IP LOCP: 0xa0ae889
    *Apr 06 11:58:22.743: 0c:60:76:3e:8c:49 Copy CCX LOCP 4
    *Apr 06 11:58:22.743: 0c:60:76:3e:8c:49 Copy MobilityData LOCP status:1, anchorip:0x0
    *Apr 06 11:59:14.002: 0c:60:76:3e:8c:49 10.10.232.137 RUN (20) State Update from Mobility-Complete to Mobility-Incomplete
    *Apr 06 11:59:14.002: 0c:60:76:3e:8c:49 Clearing Address 10.10.232.137 on mobile
    *Apr 06 11:59:14.002: 0c:60:76:3e:8c:49 10.10.232.137 RUN (20) Change state to DHCP_REQD (7) last state RUN (20)
    *Apr 06 11:59:14.002: 0c:60:76:3e:8c:49 apfMmProcessDeleteMobile (apf_mm.c:522) Expiring Mobile!
    *Apr 06 11:59:14.002: 0c:60:76:3e:8c:49 apfMsExpireMobileStation (apf_ms.c:4427) Changing state for mobile 0c:60:76:3e:8c:49 on AP 00:1f:ca:2c:ea:e0 from Associated to Disassociated.
    working cards ouput :
    *Apr 06 12:16:28.038: 00:22:5f:8d:55:84 10.10.232.190 RUN (20) Successfully plumbed mobile rule (ACL ID 255)
    *Apr 06 12:16:28.038: 00:22:5f:8d:55:84 Stopping retransmission timer for mobile 00:22:5f:8d:55:84
    *Apr 06 12:16:28.042: 00:22:5f:8d:55:84 10.10.232.190 Added NPU entry of type 1, dtlFlags 0x0
    The client entry is added to the Network Processing Unit (NPU) of the controller with an IP address of  10.10.232.190  and as expected  , I am getting below output
    *Apr 06 12:16:28.749: 00:22:5f:8d:55:84 DHCP received op BOOTREQUEST (1) (len 321, port 29, encap 0xec03)
    *Apr 06 12:16:28.751: 00:22:5f:8d:55:84 DHCP processing DHCP REQUEST (3)
    *Apr 06 12:16:28.751: 00:22:5f:8d:55:84 DHCP   op: BOOTREQUEST, htype: Ethernet, hlen: 6, hops: 0
    *Apr 06 12:16:28.752: 00:22:5f:8d:55:84 DHCP   xid: 0x6eefbbb8 (1861204920), secs: 0, flags: 0
    *Apr 06 12:16:28.752: 00:22:5f:8d:55:84 DHCP   chaddr: 00:22:5f:8d:55:84
    *Apr 06 12:16:28.752: 00:22:5f:8d:55:84 DHCP   ciaddr: 10.10.232.190,  yiaddr: 0.0.0.0
    *Apr 06 12:16:28.752: 00:22:5f:8d:55:84 DHCP   siaddr: 0.0.0.0,  giaddr: 0.0.0.0
    *Apr 06 12:16:28.753: 00:22:5f:8d:55:84 DHCP successfully bridged packet to DS
    *Apr 06 12:16:30.751: 00:22:5f:8d:55:84 Copy AP LOCP - mode:0 slotId:0, apMac 0x0:1f:ca:2c:f3:0
    *Apr 06 12:16:30.751: 00:22:5f:8d:55:84 Copy WLAN LOCP EssIndex:2 aid:10 ssid:USTRI_SECURE
    *Apr 06 12:16:30.751: 00:22:5f:8d:55:84 Copy Security LOCP ecypher:0x0 ptype:0x2, p:0x0, eaptype:0x2 w:0x1 aalg:0x0, PMState:        RUN
    *Apr 06 12:16:30.752: 00:22:5f:8d:55:84 Copy 802.11 LOCP a:0x0 b:0x0 c:0x0 d:0x0 e:0x1 protocol2:0x3 statuscode 0, reasoncode 99, status 3
    *Apr 06 12:16:30.752: 00:22:5f:8d:55:84 Copy Username LOCP : USTR\U17967
    *Apr 06 12:16:30.752: 00:22:5f:8d:55:84 Copy IP LOCP: 0xa0ae8be
    *Apr 06 12:16:30.752: 00:22:5f:8d:55:84 Copy CCX LOCP 4
    *Apr 06 12:16:30.752: 00:22:5f:8d:55:84 Copy MobilityData LOCP status:1, anchorip:0x0
    Finally client is getting stuck with DHCP-REQD state ..................
    Please look into this and put light on this ............

  • WLC Flexconnect with AAA and MAC authentication

    hi,
    i am having cisco WLC with 7.4.121 version and i am having remote side access points to be connected to this controller and remote access point will have different vlan on the remote side itself.
    my question is i am having  Radius authentication for the clients who are all connecting from all the access points and MAC filtering also.
    My radius server is placed in the HQ where we have WLC. which method of flexconnect switchign will give be both AAA and MAc filter options to be working.
    one more question,
    is it possible to make each AP seperate MAC filters On the WLC.
    thanks
    cyril

    If you are planning on doing machine authentication i.e authentication of machine with username password by the AAA server at then this is possible using flexconnect local switching enabled provided you have your AAA server accessible via the local VLAN at the remote site.
    In case you are planning on doing mac-filtering using WLC and username/password authentication using AAA server then this cannot be achieved when you enable Flexconnect local switching as you do not get an option to configure the mac-filtering on Flex-connect groups.Hence you would need to use central authentication.
    Actually the best option for you is that you either deploy a local site AAA server and do both the authentications via your radius server or use Central authentication with Flexconnect APs incase this is not feasible.
    Hope this clears you doubts!!!
    Note: Please do not forget to rate and accept as solution incase the post is valid.

  • OEAP 600 cannot join WLC with auth-list enable

    I've got a strange problem here. In the office, my OEAP 600 can join WLC if there is no MAC authentication. When i enable MAC authentication at WLC, AP will fail to register. However, I try it at home and it works with both MAC authentication enable or disable. I suspect it is because of firewall in my office, but there shouldn't have any different in discovery and joining procedure for AP with MAC authentication enable or disable. I'm confused here. Please help.

    Justin,
    Below is error summary from WLC:
    Last Error Summary
    Last AP Message Decryption Failure----
    Last AP Connection Failure     ---------      Timed out while waiting for ECHO repsonse from the AP
    Last Error Occurred                ---------      Lwapp join request rejected
    Last Error Occurred Reason    ---------      RADIUS authorization is pending for the AP
    The error reason is probaly because I haven't added AP MAC address to ACS. With the same AP, at home using ADSL link, i have no problem.
    Thanks.

  • How do I enable flash and java on firefox23 as I have the latest versions installed yet the plugin page shows "disabled" with no option to enable

    I have updated to Firefox 23 and it disabled my Java and Flash plugins. I then updated these to Flash 11.8.800.94 and Java to Version 7 Update 25. Now these are showing up on the plug in page but are showing "disabled" with no option to enable. How do I enable them to view content on the web.

    Thanks Philipp but i have already done that and the content started working...
    However, when i closed and restarted the browser it returned back to the same settings...
    I dont think that should happen, but anyway thank you for the solution. At least I can use it by resetting the values if need be
    Appreciate your help

  • HT204406 I am not able to download my files from iCloud to my iPad using iTunes Match, my internet connection is alive as I tested with Safari, I have enabled iTunes Match on and off to be usre is active..but still  cannot download....my music

    I am not able to download my files from iCloud to my iPad using iTunes Match, my internet connection is alive as I tested with Safari, I have enabled iTunes Match on and off to be usre is active..but still  cannot download....my music

    I have the same problem on my Windows 7 computer. In the right-click menu for a song one option is DELETE. However when I click that option the next window is to HIDE instead of DELETE. Apple, please help us with this.

  • Rogue AP - Not in sync with WCS and WLC

    WCS - 7.0.164.0 and WLC - 7.0.98.0.
    For some reason, I am seeing rogue ap alert on WLC and am not seeing on WCS.   How do I clean up database and sync with WCS and WLC.
    I am seeing same thing with coverage holes.
    - Allen -

    Allen,
         On the WLC go to Management > SNMP > Trap Controls, make sure that you have the traps checked.
    HTH,
    Steve
    *Please remember to rate helpful posts*

  • LWA Guest Access with ISE and WLC

    Hi guys,
    Our Company try to implement Guest Access with ISE dan WLC with Local Web Auth Method. But there is problem that comes up with the certificate. This is the scenario :
    1. Guests try to connect wifi with SSID Guest
    2. Once it connect, guests open the browser and try to open a webpage (example: cisco.com)
    3. Because, guests didn't login, so it redirect to "ISE Guest Login Page" (url became :
    https://ise-hostname:8443/guestportal/Login.action?switch_url=https://1.1.1.1/login.html&wlan=Guest&redirect=www.cisco.com/
    4. If there is no ISE Guest Login Page installed, message Untrusted Connection message will appear, but it will be fine if they "Add Exception and install the certificate"
    5. After that the Guest Login Page will appear, and guests input their username and password.
    6. Login success and they will be redirected to www.cisco.com and there is pop up from 1.1.1.1 (WLC Virtual Interface IP) with logout button.
    The problem happen in scenario 6, after login success, the webpage with ISE IP address and message certificate error for 1.1.1.1 is appear.
    I know it happened when guests didn't have the WLC Login Page Certificate...
    My Question is, is there a way to tunneling WLC Certificate on ISE ? Or what can we do to make ISE validate WLC Certificate, so guests doesn't need to install WLC Certificate/ Root Certificate before connect to Wifi ?
    Thx 4 your answer and sorry for my bad English....

    Thx for your reply Peter, your solution is right,
    i don't choose CWA, because their DNS is not stable...
    i've found the problem...
    the third-party CA is revoked, so there is no way it will success until it fixed...
    and there is no guarantee, they will fix it soon..
    so solution that we choose is by disable "HTTPS" on WLC...
    "config network web-auth secureweb disable".
    "config network web-auth secureweb disable".
    "config network web-auth secureweb disable".
    "config network web-auth secureweb disable".
    "config network web-auth secureweb disable"
    thank you all...

Maybe you are looking for

  • How to change the URL of a URL-iView over Code ?

    Hi all, i am getting started with the Portal-Application-Developement and want to change the URL of an URL-iView on runtime with java-code. i have read the context and can get the Property url with this statement. endContext.getProfile().getProperty(

  • Safari Problem

    I force quit the safari in iOS 7 with a tab open. Now i'm unable to open the safari app. It crashes every time and I am unable to go into the settings page of safari in setting. When updating to iOS 7.0.3 the phone got bricked. The update got install

  • How to copy files from another computer

    Hi, My daughter is logged into my server from her home. We ar trying to copy files using select all copy/ paste to my folder on the server. We have copied about 82 images all jpegs. but thy all say 0 bytes. What did we do wrong? Thanks Martin

  • MainStage 2.2.1 - CPU issues with old MacBook

    I just downloaded MainStage 2 for my trusty old MacBook - it's 2.0GHz Core Duo, 2GB... best spec you can make it really. I use it to run both Ableton Live and Garageband with absolutely no problems... The CPU handles both apps fine, unless I have som

  • How can I download Photoshop elements 12 without a DVD drive?

    How can I download Photoshop Elements 12 without a DVD drive?  I am using a MAC