Cisco :: 5508 Controller Setup - Management Interface

Jan 2, 2012

I'm trying to verify some behaviors I'm seeing with my 5508 controller setup, I've zero experience with this hardware and clueless on the best practices. With that said... out of the box I ran through the AutoInstall process.

I gave my service port an IP address on my subnet, vlan 100 and gave the management interface the ip address vlan 130
From my host I can ping the management interace and the interface gateway
I cannot connect to the controller via either through the web GUI or telnet
I can connect to the controller via both through the web interface and telnet
while connected to the service port, I can ping the management port IP but I cannot ping the gateway.
We have attached two test 3502I AP's and they found the controller and pulled correct ip addresses, clients can authenticate and access network resources as well as the Internet so for the most part, things are working but it concerns me that the management interface can't ping its own gateway.

View 8 Replies


Cisco :: 5508 - Unable To Access Controller Using Management Interface

Apr 3, 2013

I configure IP address on the management interface port 1 of 5508 controller when i connect it direct to my laptop i can't ping or access controller from my laptop even i connect through layer 2 switch still i can't not.
IP Address of management interface :
Laptop IP Address : 10.21.0,51

View 13 Replies View Related

Cisco Wireless :: 5508 Controller SNMP Management

Jun 10, 2013

We faced one recent issue with WLC configuration behavior and explaining our observation and workaround we did.Requirement is to manage the WLC (5508 with 7.4 code) using two SNMP managers in different locations. Also these two Servers should use the same community string to manage WLC. 

We were able to configure the SNMP community string for one server IP (to allow access) through GUIWhile trying to add another Server – IP with same community string – it didn’t allow As per the configuration guide, Controller can use only one IP address range to manage SNMP community. So we cannot configure the same community string to allow only two different server IP addresses [code] We currently configured the major subnet ( 10.x / 8 - two match both server addresses) and it works fineAlso when we tried / , it didn’t work (SNMP was failing)But this creates a security issue wherein anybody can poll the WLC.

View 1 Replies View Related

Cisco Wireless :: WLC 5508 Management Interface Connection

Aug 1, 2010

I'm setting up a new 5508.  I've used the config from a 4402, have successfully connected to the Service port to manage the device, but for some reason cannot connect to the Management interface.  In this case, port 1.
The service port is connected to a Catalyst switch and grabbed an ip address (10.2.x.x subnet) no problem.  I can access the 5508 via https using the SP.  However, port 1 is connected to the same Catalyst switch, but on a different vlan (subnet 10.20.x.x).  Both ends show that the interfaces are up, I can ping the interface from any other host on the network, but when I try to manage the device via https I cannot connect.  We are using WCS and I cannot add the device from the WCS.  About all I can do is ping that interface.

View 6 Replies View Related

Cisco Wireless :: WLC 5508 7.3 Management Interface Access To GUI?

Jan 16, 2013

After I've upgraded software to the v7.3 and applied AP-SSO it made imposible to access the controller's gui via Service-port. So we tried to access it by management-port, but there is some problem too. It is not working from another subnets. But default gateway on management vlan is set correctly and I even tried to turn of all acl's on switch. WLC is only accessible from the same network. But at the same time wlc is replying on ping fine.All other protocols cannot connect to the controller.

View 3 Replies View Related

Cisco Wireless :: 5508 / WLC Management Interface Not Bound To Port

May 6, 2013

I have 2 x 5508 Wireless Controllers, 1 mgmt port on each as standard. I noticied something different between these controllers running the same code.I can bound a physical port to the mgmt interface on one controller but not the other (both interfaces are untagged)see below, this config appears on one controller but not the other? Is this something to do with the initial setup? How can I add Phyiscal information to the other controller mgmt interface, I cannot delete the mgmt interface. Physical InformationPort Number Backup Port Active Port Enable Dynamic AP Management?

View 2 Replies View Related

Cisco Firewall :: ASA5512-X Setup Using Management Interface

Jun 28, 2012

I have a brand new ASA5512-X running 8.6.1, and am trying to do an initial setup using the Quick Start Guide that came with it.  However, the Management Interface is not working.  I have a PC connected and set to use DHCP, but the port is not active. I connected a console cable and can see in the config that the interface is shutdown.  So I set it to active, and the port is now active, but is not giving out a DHCP address as the guide says it should.I would like to use the ASDM Startup Wizard to configure this device, so how do I get it to work the way the instructions say it should?

View 2 Replies View Related

Cisco :: 5508 - SSH And HTTPS On Controller Interface?

Jan 9, 2013

I have a wireless controller 5508 and all my interfaces can be accessed via https or ssh from a wireless client. Management access from a wireless client is disabled so I don't understand why this is happening.

View 10 Replies View Related

Cisco Wireless :: How To Setup 5508 Series LAN Controller

Sep 23, 2010

how to setup the 5508 Series LAN wireless controller. The online documentation are not details. What different between Service Interface IP and  Management interface IP. The device IP is using what type service or management interface.

View 2 Replies View Related

Cisco Wireless :: 4404 Guest Anchor Controller With 5508 Foreign Controller?

Aug 12, 2012

I know that the 3600 series APs are not supported on the 4404 WLC.  However, would the following scenario be supported? I would like to use the 4404 (software rel. 7.0) as a guest anchor with a 5508 (software release 7.2) as the foreign controller supporting series 3600 APs.  I ask because the APs do not need to join the guest anchor.

View 7 Replies View Related

Cisco Wireless :: 5508 Foreign Controller And 4400 Anchor Controller?

Jun 2, 2013

We have a customer that have 2 5508 as primary and backup controller and a 4400 as an anchor controller.  We plan to upgrade the 5508 to and the 4400 is already  Will there be any issue if the anchor controller is not the same code as the foreign controller?  Do I also have to upgrade the acnhor controller to

View 2 Replies View Related

Cisco :: 5508 - 802.1x Authentication On PSK Key Management?

Aug 20, 2009

I'm setting up a new 5508 WLC (the first wlc I have ever setup) and I have my WLAN setup with our existing WPA/TKIP ssid for transitioning our clients from our existing autonomous system to the wlc.  I have selected PSK as the key mgmt and I can get the client's to connect for a few minutes but I keep seeing these errors:
Fri Aug 21 08:50:05 2009 Client Excluded: MACAddress:00:21:00:f9:dd:50 Base Radio MAC :00:23:eb:27:e3:b0 Slot: 1 User Name: unknown Ip Address: unknown Reason:802.1x Authentication failed 3 times. ReasonCode: 4
I don't have nor do I want 802.1x enabled.  Is there something I need to disable either on the client or the controller?

View 20 Replies View Related

Cisco Wireless :: 5508 WLC Management?

Apr 24, 2013

I have a 5508 deployed, what I'm trying to do is configure it so that it can be accessed with AD credentials, I'm not talking about accessing the wifi network, I'm talking about logging onto the controller itself for management purposes. We havea  few people our team, and it would be alot easier if each of us could log into the controller with our own AD logins. Is there a link that can assist me in accomplishing this, I haven't been able to find one.

View 2 Replies View Related

Cisco Wireless :: 4402 WLC Management / Local Controller Versus Cloud

Feb 26, 2013

We are currently looking to upgrade (re-design) our wireless network at our college. Any experience going from a local, controller-based wireless network to a cloud-based controller? If so, what have you found the pros and cons to be?
If you thought about going to a “cloud solution”, what stopped you?
We are currently running wireless at our 3 primary campus locations, and looking to add it to our 3 satellite locations. We use 4402 WLCs at our primary locations with a mix of 1140 and 1240 APs.

View 5 Replies View Related

Cisco :: 5508 - Forwarding Management Traffic From WLC

Aug 4, 2011

I am trying to forward mgmt traffic from my WLC (5508) to the NNM server. The WLC it self comes in to the mgmt server, but i dont get any snmp traps/message from the Accespoints
Is there some configuration I have to do ?
I have checked the community strings,trap receiver etc, but the WLC is showing up in the mgmt server so i think those parameters should be ok.

View 4 Replies View Related

Cisco Wireless :: Bandwidth Management Using 5508?

Aug 16, 2012

I setup a WLC5508 with 2 SSIDs, one for guest traffic and another for internal users.  They are in separate subnets and are routed out to the internet via 2 different isps, with the guest network going over a bonded t1 and the internal users going out the primary internet connection for the company.  While this works as desired and we've verified that while on the guest network we're going out the right isp, we've encountered an issue with saturation of the bonded t1 pipe by guests.  We'd like to find a way to limit a guest to a capped down/up stream if possible, with downstream being the most important.  The infrastructure includes 3560 switches and AIR-CAP3502I-A-K9 access points. 

View 1 Replies View Related

Cisco Wireless :: WLC 5508 Management Port Is Not Pingable

Jul 3, 2012

I'm having an issue with the 5508 management port .. I can't seem to ping it from the switch connected to it .. ( the Show cdp command shows that the two can see each other .. but no ping is possible ! [code]

View 4 Replies View Related

Cisco Wireless :: 5508 / Change Management IP On Controllers?

Sep 1, 2011

I have two 5508 and one WCS server, the controllers are in one mobility group.Now I have to change the management IP addresses on the controllers. What are the correct steps to do this?

View 9 Replies View Related

Cisco Wireless :: WLC 5508 Management Interfaces For Wlans And Lag

Sep 3, 2012

I didn't design the job, but is pretty straight forward, except the following, the design has a single wlc 5508 with 2 physical connection between two non cisco switches. There are 2 initial WLANs to be created.   I am ok with most of the wlc config execpt the following:
Now from my understanding of everything I have read recently, you can't use LAG on the 2 physical connections if they connect to 2 seperate switches,   unless, although not offically supported, the 2 connections are on either 2 3750s in the same stack or a pair of 6500s running VSS. So I believe that in my case 2 seperate connections from the wlc to 2 non cisco switches will not work with LAG. Is my understanding of this correct?
Is there a way to maintain the 2 physical connections from the wlc to the 2 non cisco switches to maintain redundancy?The wlc will have a management interface obviously, but from what I have read, the 2 WLANs that are going to be created have to have their own interface on the WLC. Which I understand as the managment int and each of the 2 WLANs are on different subnets.
If I don't use a single uplink to one of the non cisco switches (either 1 or 2 physical connections) using LAG, it appears to me that each of the interfaces ( management, wlan1 and wlan2) need to have a physical connection from the WLC to the switch, with each interface mapped to a physical port on the WLC, so correct me please if I am wrong, but this would mean I need 3 physical connections between the wlc and the swtich?

View 3 Replies View Related

Cisco :: Separate Interface For Management On ASA

Nov 5, 2012

I'm trying to separate my management traffic from regular traffic by splitting the management and "outside" interface to separate vlans but I'm hitting a routing issue. Say I have have a management network of running across vlan 1 and I want to use running across vlan 2 for the outside interface to send all the other traffic excluding the management traffic across. Tag both vlans on the external interface, say Eth0/0 Default route of route outside, With this, you can not hit the management interface because there is no route defined for the network. However of course if you try to set one, you'll get the "connected route exists" error. How can I set the default route or gateway of the network on the ASA. Switches just don't complain like the ASA does.

View 8 Replies View Related

Cisco :: 6509 Sup-2T Management Through CMP Interface

Dec 3, 2012

We acquired recentlty a new Cisco 6509 with Sup-2T supervisor card
My question is the following : we have a management subnet on a Copper-based switch; we manage all equipments through this network. I planned to configure the management interface on the 6509 to connect this switch & monitor the VSS through it However, since it is a CMP interface, most of the actions (SNMP, IOS upgrade.. won't be possible through this link)  Moreover, I don't think LMS would be able to get the configuration through it (except by configuring a script running "attach" command & show run
Is there something I miss or must I add another interface of the Catalyst to this network (the problem being that I have no copper line card)

View 2 Replies View Related

Cisco Wireless :: New 5508 DHCP For Management VLAN Not Working?

Sep 25, 2012

I have a new 5508 that I am setting up.  My first one from scratch.
managment -> ->dhcp
voice -> ->dhcp
guest -> ->dhcp
Local DHCP (via the 5508) is for the guest network while the management and voice use the Windows DHCP server.
My problem, Voice and guest work fine.  I have two SSID's (one 802.1X and the other PSK) that use the management interface that will not get an IP.  I have enabled  dhcp proxy from the cli on the controller.  I tried with the management VLAN tagged and untagged.

View 2 Replies View Related

Cisco :: 5508 WLC Configuration / Can't Access GUI On Management Interfaces Ip Address

Aug 30, 2011

I've got a new 5508 wireless lan controller and can ping the ip address of the management interface, but can't access the GUI at the management interface's ip address.  I can access the GUI on the service-port interface.  No static routes in the controller; trunk appears to be set up correctly.

View 5 Replies View Related

Cisco Wireless :: WLC 5508 As Dhcp Server For AP Management Address

May 26, 2013

My 5508 WLC which runs version 7.4 is configured as a DHCP server for the AP management and here's my problem: My AP can get to the address, and can ping the address of the WLC management,But my AP prompts the following log: [code]

In the switch dhcp we can use to do the WLC option43 specified address, but in this case how the address specified WLC, the AP can be registered up?

View 9 Replies View Related

Cisco WAN :: SRP 527W Web Management Interface Inaccessible

Jan 27, 2011

We have recently purchased a Cisco Small Business Pro SRP 527W router, all seems good and it is running smoothly, no disconnections or sync issues like our last router. However, after a certain amount of time the web management interface is unavailable through the browser (accessing it via or the alternative we set-up It is totally unavailable and timeouts in the browser yet there is still internet access and network is still alive. The web management interface was accessible before though and the only solution I have been able to do to access it again is to reboot this router.Could it be possible that because port 80 is forwarded to a different IP it interferes with the Web management interface? And how wcould the interface port access be changed?

View 2 Replies View Related

Cisco :: WLC 2006 - AP Connecting To Management Interface?

Jun 7, 2011

I have running a Wireless LAN Controller Cisco 2006.Today my management IP its public with Internet access. I am thinking in use a private IP without internet access. I have certains Access-Points in other building, that connect to AP Manager interface using Internet . When i see the tcp connections, i look that the access-point not only have TCP connections to AP Manager interfaces, it have TCP connections to Management interface too!!!.If i shutdown the connection between Management interface and Access-Points (mantaining the connection between Access-Point and AP Manager interfaces)?

View 1 Replies View Related

Cisco Application :: ACE 4710 - Management Only Interface?

Apr 25, 2012

Am trying to replicate the managment interface functionality of a CSS on ACE 4710 but have problem with it being treated as a general routed interface.
On ACE 4710 I have a front-end interface for client facing VIPS and a back-end interface facing a server farm, taking care of load balancing flows
Non load-balance system traffic for the back-end servers also flows through these two ACE interfaces, following a default route path (the back-ends use the ACE as default gateway) i.e. dns requests from the servers flow through the ACE egressing the front-end interface to hit a firewall and route to an internal dns server.
If I add a "management interface" to the ACE 4710 and give it an IP address for management access, the interface by default assumes 'routed' mode and as the ACE treats this as a general interface it will route traffic out of it. For example if the IP address of this management interface is on the same network as the internal dns server, it breaks that connectivity. This as the ACE will see the "management" interface as best route to directly connected network and send traffic to dns server over that, however dns server response traffic will follow its defult route path via firewall and ACE front-end interface to get reply to back-end server. The firewall will block this traffic as traffic is asymmetrically routed and firewall not seen the initial dns request packet.
Is there a way of making an ACE interface a 'non routed' management only interface for out of band management use? That is ACE will not attempt to route general traffic through the interface
I realise I could achieve this with multiple contexts but want to have a single context for various reasons - i.e. to have a kind of like for like CSS replacement using ACE 4710

View 3 Replies View Related

Cisco Firewall :: ASA 5510 - Management Interface

Feb 13, 2012

I am having issues with the ASA 5510 management interface. I can't communicate with this interface. It is showing DOWN/DWON even if I type NO SHUT several times.
My existing config is as follows 
our-asa-01# sh run
ASA Version 7.2(5)
hostname our-asa-01
interface Ethernet0/0

View 5 Replies View Related

Cisco WAN :: Configuring SSH On ASR1002 / Apply To Management Interface?

Jun 30, 2010

How to configure SSH on a ASR 1002 and apply it to the Management Interface?

View 3 Replies View Related

Cisco :: 2028 WLC Management Interface / Unexpected Traffic

Apr 16, 2012

I have a number of WLCs/WiSM2 running (still using WCS for management). The management interfaces for the controllers are on a purely private subnet. While going through the intenet edge ASA logs I noticed some traffic drops for the controllers on the Inside interface. I took a packet capture from the controllers and found that they were sending TCP traffic to a number of IP addresses (Microsoft, Hotmail and Google) - always with a src port 2028 (submitserver) with the ACK/FIN flags set. Why this traffic is coming from the management interfaces? The management interface is not used by any wireless clients and is not the default interface for any of the SSIDs.

View 4 Replies View Related

Cisco :: WLC Management Interface Unexpected Traffic 2028

May 22, 2013

I have a number of WLCs/WiSM2 running (still using WCS for management). The management interfaces for the controllers are on a purely private subnet. While going through the intenet edge ASA logs I noticed some traffic drops for the controllers on the Inside interface. I took a packet capture from the controllers and found that they were sending TCP traffic to a number of IP addresses (Microsoft, Hotmail and Google) - always with a src port 2028 (submitserver) with the ACK/FIN flags set.

View 2 Replies View Related

Cisco Firewall :: ASA5540 Management Interface IP Addressing?

May 9, 2011

How does one allow /31 mask for an management interface on an ASA5540 using version 8.3(1)?
I need to configure a 192.168.x.y /31 on the management 0/0 interface of a ASA5540 and it is providing me with the following error:ERROR: /31 mask is not allowed

View 1 Replies View Related

Cisco :: 1130AG - Block Management Interface Webpage

Mar 29, 2012

I'm working on creating an open wireless scheme and we are simply going to use WPA with a key.  What I'm getting a little stuck on is preventing access, by the guests that will connect to the WAPs, to the gateway/management webpage.  I've been looking into seperating with VLANs and trunks (internal with management access and external for guests) but having a hard time with the configuration scheme. 
Not sure if there is an easy way to just block that in the config or what.

View 1 Replies View Related

Copyrights 2005-15, All rights reserved