Cisco :: AirCap 3602i Configuration For Implementation
			Dec 18, 2012
				I need implementation of the AirCap 3602i wireless access points. Is there a way to manually configure a AirCap 3602i to function without a WAN controller?, I have an older 4402 WAN controller that will upgrade to 7.0.235 firmware, since the AIrCap 3602i requires 7.2.X firmware, is there a workaround for this.
	
	View 23 Replies
  
    
		
ADVERTISEMENT
    	
    	
        Oct 22, 2012
        I upgraded WCS to 7.0.22 and the WLC to 7.1.91.0 so that I could add four 3602i's. Funny thing is that they all work fine except that none of their LED's are 'lit' up. They look dead.
 
Is it the version of sofware?
	View 6 Replies
    View Related
  
    
	
    	
    	
        Oct 7, 2012
        On our conference floor, AP 1242AG already exist but I am going to add AP 3602i to increase wireless coverage.  .  Any issue or concern with this type of setting?
	View 23 Replies
    View Related
  
    
	
    	
    	
        Feb 18, 2013
        I have a problem configuring ClientLink on a FlexConnect local switching AP (3602i), the problem is that I can not see the clients that are using the ClientLink feature when entering the show interface dot11radio 1 lbf rbf command, the AP shows  "Hardware beamforming stats not supported (radioid 0x3B00)" message instead of show the client information. I am using a 2504 Wireless LAN Controller running 7.3.101.0 software version, why is not working properly?
	View 7 Replies
    View Related
  
    
	
    	
    	
        Mar 6, 2012
        I can not get our 3602i AP's to register with our 5508 controller which is running 7.2.103.0 code.  We keep seeing an error in the log on the WLC   "AAA Authentication Failure for UserName:c46413c08e92  User Type: WLAN USER" and on the Access Point we are seeing  [code]
 
I entered the CAPWAP ap controller ip address directly into the AP so it shouldn't be an option 43 DHCP issue
	View 15 Replies
    View Related
  
    
	
    	
    	
        Jun 13, 2013
        I am performing a new install of a WLC 5760 and 3602i APs.  I have limited experience in setting up WLCs.  I am hitting a brick wall in getting the AP to join my WLC. My primary document has been this deployment guide:url...I have also sifted through many of the relevant portions of these guides:  url...
 
I went through the setup wizard and followed the instructions in Ch. 2 to the letter (or at least I think I did).  I have DHCP options 43 and 60 configured per the 3600 series Getting Started Guide.I believe my AP discovery process is sound because I see activity when I power on the AP and perform debug capwap ap all from the WLC.  I have highlighted lines that I think are relevant.  I have attempted to find the answer on my own by searching the Internet for these phrases.  [code]
	View 1 Replies
    View Related
  
    
	
    	
    	
        Feb 27, 2013
        I've been configuring hundreds of 3602i APs via Prime without incident, but I've encountered 2 APs that get to the ap: prompt and doesn't proceed further.  If I type boot, then they'll complete the boot process.
 
How do I configure these 2 APs so they will automatically boot fully?
	View 2 Replies
    View Related
  
    
	
    	
    	
        May 13, 2012
        I have a couple 3600s that don't want to join.  One i and one e that are both doing the something.  It is able to find the controller via layer 3 discovery but it is acting like it is a mesh AP when it tries to join the controller.   
 
From the 2500 controller (running 7.2) 
*spamApTask2: May 13 12:03:05.272: f0:f7:55:ae:xx:xx Mesh AP username f0f755aexx xx. 
*spamApTask2: May 13 12:03:10.739: f0:f7:55:ae:xx:xx spamProcessJoinRequest : RA
P, Check MAC filter
From the 3602i
flash:/mesh_start_cfg.txt: No such file or directory. The filesystem containing the variables may not be initialized yet. 
 
I should note that 3500 APs are able to join this controller.  The field guy is going to try to add the MAC address to the filter list when he gets back out on site to see if it allows it to join.
	View 3 Replies
    View Related
  
    
	
    	
    	
        Jan 27, 2013
        I upgraded my 3602i survey ap the other day to the public image the other day and I have to say.. I've got it up and going of course, but I have a concern on the transmit power settings.  Originally, the only option it gave me was MAX and -4, which I hadn't seen before, interesting.. -4 of what? 20? 17 probably or I though?  At any rate, I went into the CLI to set the power manually, no issues there, though my options are not what I expected, maxing out at 25mw basically, which is fine but.. in setting it manually in CLI, the web interface reports an Error on transmit power.  So.. does this work or not? Any survey with this image to verify it's power settings?  15.2(23c)
	View 3 Replies
    View Related
  
    
	
    	
    	
        Apr 8, 2012
        Cisco Aironet 3602I  is stand alone or need a controller ?
	View 8 Replies
    View Related
  
    
	
    	
    	
        Aug 22, 2012
        I have a 3602i access point and have been looking to see if it was possible to load a Mesh AP image on the AP?
	View 4 Replies
    View Related
  
    
	
    	
    	
        Mar 25, 2013
        I need to configure a Cisco aironet 3602I-K9 because when I connect by the console I can do anything to change the p reconfiguration, this aironet is new and I want to change to autonomous AP, appear errors like: 
Translating "CISCO-CAPWAP-CONTROLLER...domain server ()"
 
CAPWAP-3-ERRORLOG: Invalid event 38 & state 2 combination . Not in Bound state. I tried to enter to configuration mode but dont valid the configuration terminal command or set command, why happens that?
	View 5 Replies
    View Related
  
    
	
    	
    	
        Mar 9, 2011
        I have a problem in understanding how LLQ is implemented in different platforms of Cisco.QoS should kick in only when there is a congestion in the link irrespective of queueing / scheduling (LLQ and CBWFQ).But in certain platforms like GSR and IOS-XR, LLQ is confiugred only with priority and police command not with "prioirity percent <value>" command. In priority and police command since policer is used, LLQ is always on even there is no period of congestion. Of course with police you can re-mark the exceed traffic to different marking but thats not the requirement in my case.
 
In platforms like 7206, LLQ is configured with "prioirty percent <value>" which works ideally only when there is a period of congestion. When there is no congestion, LLQ class can use scanvenge other classes as well.Would like to know is there any specific reason why there is a difference in the implentation of LLQ between different platforms of Cisco.
	View 1 Replies
    View Related
  
    
	
    	
    	
        Dec 6, 2012
        Just a few questions. We are looking to deploying Cisco ASA 5545 into a network. I have a couple of issues with designing the network correctly. 
 
We need to be able to scale out to more hosts than a single VLAN, we would also be considering adding 4948E switch behind the ASA and potentially a stack in front. 
 
The problems are:
 
1) If we have an outside stack of public 4948E (so we can connect some hosts outside the firewall, such as additional ASA's running in NAT mode) for VPN. Is this a reliable, recommended configuration? The reason being we need to have the ability to add other seperate ASA protected networks that we don't want going through the 5545 as it's going to quickly run it out of capacity. If I have the L3 switch stack in front I'm guessing we would have a small subnet to link upstream and then sub-subnetwork into two blocks, one on the inside interface and one on the L3 switch for the other hosts? Or would it be better to let the upstream provider do this, and then just get them to provide us with two smaller subnets rather than one big one? As below if we do L3 stack ourselves we would need to small subnets, one to communicate with upstream and one to link ASA subnets. This seems like a waste of IP's. I was wondering if I could use Internal IP space on the L3 > ASA link, but I thought that could be an issue for BOGONS list. 
 
2) If I want to extend the inside network (Cisco ASA would not run NAT, just public IP's on the inside, routed to the outside interface of the ASA) there are two ways. Use the ASA to create subinterfaces/VLANs (but that would be routed via the ASA - may be a performance hit?) or use a L3 switch behind the ASA. How does one accomplish running L3 switch behind ASA properly?
	View 5 Replies
    View Related
  
    
	
    	
    	
        Apr 4, 2011
        I would like to have implementation of two ASA 5520 (in failover). Architecture Context
-The  ASA are used as VPN concentrator only.In a first time ASA will be in  charge to take in charge VPN IPSec Host-to-LAN connexion (with the IPSec  VPN client) and I think VPN SSL anyconnect client will be setup in a  near futur.
 
-We must define two categories of users (student and researcher), for each one we want define :
  + An IP address pool
  + ACL
  + Split Tunneling (only LAN traffic will go in the VPN tunnel)
 
-The ASA will perform authentification via RADIUS server (the radius server is linked with a LDAP server)
  + In the RADIUS server we want define the category of user (each one user is a student or a researcher)
 
-The VPN clients use the internal DNS to request LAN ressources.
 
-A timeout of the VPN if no traffic during 60 minutes
 
-The VPN user perform authentification with PSK (no certificate)
 
the RADIUS server software is IETF compatible (url...)The architecture is the following :
-One internet connexion
-A corporate firewall with 3 DMZ :
+ 1 DMZ Public ; which is connected the ASA "outside" interface (encrypted traffic)
+ 1 DMZ Private ; which is connected the ASA "inside" interface (uncrypted traffic)
+ 1 DMZ LAN ; there is some VLANs routed by 6500 routers.
-On the LAN there is the radius servers
-On the corporate firewall :
+The https and ipsec will be opened between the internet and the ASA
+The RADIUS traffic between ASA and the radius servers and the traffic between the pool VPN users and the LAN.
 
-What is the best solution to configure the ASA?
	View 1 Replies
    View Related
  
    
	
    	
    	
        Apr 25, 2012
        We are evaluating the 5508 WLC Series controller. When trying to associate the 3602i/e wireless access points we have no success. However the 1131 and 1242 legacy AP's will associate.....LWAP Vs CAWAP ?
 
We've reloaded the 7.2.130 code and it didn't work.
	View 6 Replies
    View Related
  
    
	
    	
    	
        Jul 16, 2012
        Wireless client connected to a 3602i AP running on 2500 series WLC with a latest 7.2 code. Client will now connect to AT&T vpn client - success.Client will connect to SAP application using netweaver gui - failed.With the same scenario, except for the access point being used, client will connect to SAP application using netweaver gui
 
1242AP IOS/CAPWAP - success
1252 CAPWAP - success
3500 CAPWAP - success
 
Whats with the 3600 series APs that i cant pass traffic with the SAP application?
 
Troubleshooting done:
 
802.11n disabled - still failed
Clean Air disabled - still failed
MFP disabled - still failed
	View 4 Replies
    View Related
  
    
	
    	
    	
        Jun 2, 2011
        How does the implementation of encryption wep wpa etc in hardware cisco wap4410N ?
	View 1 Replies
    View Related
  
    
	
    	
    	
        Jun 5, 2011
         I have a network with four 6509s in a ring with 10Gb links. Two adjacent switches are at the home office, the other two at the DR site. The switches at each location are physically similar to each other with respect to what blades are in them. We went through an upgrade from SUP-720's to VS-SUP-720's recently, only at the DR site - basically a practice, with the home office conversion hopefully taking place next weekend. 
 
We initially just brought up the two chassis separately, in non-VSS formation (stand-alone). So far, so good - everything was connected, all traffic was passiing, all links were up, everything was reachable: EVERYTHING worked. Then we made the conversion: step-by-step from the cisco.com page; create a virtual domain, make one switch switch 1, the other switch 2, create differently numbered port-channels on each 6509, add the SUP 10Gb links to the port-channel, do the conversion.
 
Here's where the trouble started. First of all, the two 10Gb links back to home office created a spanning-tree loop and we had to shut down one of the links. (Is there something that needs to be configured on those links to turn spanning tree on? Does VSS conversion turn stp off?) Secondly, though it worked while in stand-alone mode, the copper blade in the standby 6509 stopped passing traffic - it would take config, the links would come up, but you could not ping across those links. Interestingly enough, there was an access switch with links to each of the copper blades, and having them both up also caused a spanning-tree loop. adding a new port-channel and putting both links in it did nothing to alleviate the loop. This leads me to believe that stp is not working properly. I reiterate, that even though the loop occurred, nothing else plugged into that blade was pingable.
	View 3 Replies
    View Related
  
    
	
    	
    	
        Apr 17, 2012
        Unfortunately I didn't discover any configuration switches concerning an IPv6 firewall! So the important question is: Is there any firewall implemented at all? And if so, does it confirm to RFC6092.
	View 14 Replies
    View Related
  
    
	
    	
    	
        May 16, 2013
        Access point gives all junk vlaues in console.   I am getting all outputs while booting up and executing commands. But To say, it is as simple as printing with spelling mistakes 
	View 2 Replies
    View Related
  
    
	
    	
    	
        Jan 25, 2013
        Installed a new 5508 WLC last week, and finished bringing 68 new 3602i access points online in our College Dorms. We are seeing a lot of "Client De-authenticated" errors "Reason: Unspecified Reason: Code 1. Years ago I asked about error code 1. The reply from Cisco was: "The programers put the code in. It basically means we don't know what the problem is."Got a call from one of the dorms stating that students were getting knocked off the network while going to sites. If a student is wired, network is solid.Walked the dorm in question and was getting full bars of signals at all times, and was able to stream a movie from my Ultraviolet account without any break or slowdown as I moved from access point to access point. So.. my device, an iPad, was fully mobile and did not experience any disconnects.Did observe one student using a MacBook Pro. This student was constantly loosing connection to the access point. Checked the controller for the MAC of the student's computer. I did find deauthentication errors. BUT... this student's error was the computer was receiving an IP address from the DHCP that was already in use. At the computer the error message was a timeout issue.I am just learning the ropes on the 5508. Have used 3 4404s for the past six years. 
	View 2 Replies
    View Related
  
    
	
    	
    	
        Mar 27, 2012
        Just wanted to get a few answers in regards to VLAN implementation (thinking about doing this for a large network)...VLAN's always sound good on paper, but how hard/easy are they to implement to a live and running network?
 
1.) Have successfully implemented VLAN's into a production environment (e.g. placed servers, production, printers, etc. on separate VLAN's)?
2.) How much of a pain is it to do this? If you are on a 192.168.1.x subnet, do you have to re-IP all of your printers, switches, etc. This sounds like a lot of work – especially since re-IP’ing domain controllers is a royal pain. 
3.) Have you seen much of a performance increase when implementing VLAN’s (i.e. chatty protocols and broadcasts?)
	View 6 Replies
    View Related
  
    
	
    	
    	
        Sep 16, 2012
        Nowadays my Company works with autonomous APs (AP1142 most of them.We have a WLC 5008 and I am working on the implementation project... So far so good.BUT, I have just realized that the Company didnt buy a second WLC (this project started 1 year ago and I wasnt an employee here yet...).If I transform all autonomous APs we have (around 25, locally and some of them remotes)... And then If I have a HW problem with our single WLC... those APs will continue working ? 
	View 4 Replies
    View Related
  
    
	
    	
    	
        Sep 17, 2011
        I'm planning to separate voice and data traffic with two vlans.  I have a COR switch catalyst 3750, a UC560 for VOIP with SIP trunk and SGE2000P as access switches.  The thing is i had configured VLAN1 (data vlan) and VLAN8 (voice vlan), i've created the vlan 8 in the database on 3750 and let pass those vlans through a TRUNK port.  In the SGE2000P configuration i've created the VLAN8 and the the ports as trunk for letting pass the two vlans for the PC and the IP phone.  This works but some phones aren't registering, and for example i've unplugged a register phone and plug and doesn't registering anymore. 
	View 0 Replies
    View Related
  
    
	
    	
    	
        Nov 11, 2012
        I'm looking to try and implement ipv6 HSRP on a series of IOS-XR Routers running 4.2.1 following on from successfully setting up IPv6 HSRP on a few cat6509s on VLAN Interfaces in other parts of the network. I have entered the "router hsrp" configuration menu and gone into the interface in question that I'm looking to setup with IPv6 HSRP. Unfortunately, there version 2 or address-family ipv6 commands are not available.
	View 2 Replies
    View Related
  
    
	
    	
    	
        May 23, 2013
        We are going to be expanding our Shoretel phone system in our HQ and I need to get QoS configured correctly.  All of our offices are connected via MPLS and I need to make sure that we are sending QoS tagged traffic to our provider.  The phones are tagged by the director, but there is other traffic for call control that needs to be tagged.  I don't have access to our CPE router as it is managed by Sprint.  The Sprint router is connected to our internal network.  We have our data network running on (4) 3750x switches running 12.2(55) with IP feature set.  
The problem is that many of these commands don't work on the 3750 (priority, bandwidth, match protocol, etc...) and the configuration assumes you are applying this to an outbound queue which is not supported on the 3750.  I think I have to do this with policing, but I'm not sure what interfaces need to have this applied.   
	View 3 Replies
    View Related
  
    
	
    	
    	
        Jan 5, 2012
        I am planning an implementation of VSS on our two 6509 switches, and would like some feedback on things to look out for, and any issues encountered by others that have done this already.
 
We have the 10Gig port installed on the Management blades, but not configured yet.
 
Main questions would be:
 
1: What kind of "down time" am I looking at for the migration? (Reboots, configuration reloads, etc.)
2: I will be saving the configurations on both devices before-hand, but how does the VSS migration "merge" the configurations of both devices?
3: L2 VLANS - we have some on one switch, others on the second switch. Will these be combined, or would this be a manual process?
 
Any other things of note that I should know about before planning this migration?
	View 3 Replies
    View Related
  
    
	
    	
    	
        May 20, 2013
        3602I constantly shows a fast blinking green light, watching the boot up I see the following:
 
Loading "flash:/ap3g2-k9w8-mx.152-2.JA/ap3g2-k9w8-xx.152-2.JA"...uncompress: Unknown mzip segment type: 2
 
Error loading "flash:/ap3g2-k9w8-mx.152-2.JA/ap3g2-k9w8-xx.152-2.JA" 
	View 7 Replies
    View Related
  
    
	
    	
    	
        Dec 3, 2012
        We are implementing a WLC infrastructure in our company following the below scenario:
- WLC 5508, OS 7.2
- APs AIR-LAP1142N-T-K9
- 3 Wlans (1Open w/ Web Auth, 1 WPA2 and 1 802.1x)
 
Issues:Everything seems to be fine, but some users loses connectivity (when connected to 802.1x network) at least 3 times by day.
- I cannot see anything at WLC logs concerning the association/deassociation of any of these users. 
- Only strange line in the logs is "RADIUS server 172.21.44.50:1646 deactivated in global list" (authorization server config)
- Also I see some "Coverage hole pre alarm for client" but that doesn't look like a problem...
	View 6 Replies
    View Related
  
    
	
    	
    	
        Sep 4, 2012
        I'm in the process to install two 4948E switches.  I will be configuring GLBP and wanted to get some guidelines on configuring GLBP and EIGRP:
 
- First question is like HSRP I'm configuring it on both swithches like this:
 
Switch 1:
interface vlan 5
ip address 10.1.5.249 255.255.255.0
glbp 5 ip 10.1.5.1
glbp 5 priority 110
glbp 5 preempt
glbp 5 authentication md5 key-string xxxxxx
[code]....
 
- Second question is about EIGRP, when I configure EIGRP on the main switch that is AVG with the following commands, will I also have to run the same commands on the second 4948 E too?
 
router eigrp 10
network 10.1.5.0 255.255.255.0
	View 2 Replies
    View Related
  
    
	
    	
    	
        Apr 17, 2012
        I need to implement LACP HP servers mostly DL 380 g7 with Intel based dual port with two types of Cisco equipment first scenario server connected to 3750x stack of 4 switch's .second scenario same server type connected to two Cisco Nexsus 5596 . My question regarding two type of connection.Is it possible to do active active ?Would it give fault tolerance ?With HP LACP implementation is there known issue or should i expect latency with such configuration?What is the maximal lag- channel group that is possible per type?
	View 1 Replies
    View Related
  
    
	
    	
    	
        Jul 1, 2012
        our company backbone is hp 5406, and desktop switches are hp 2510 currently we are working with ipv4.if we want to start use IPV6 for test environment,  what’s things we need to enable in our backbone/regular switches.i mean for example if we want to set static IPV6 address for 2 servers and send ping between them, or even make new vlan with IVP6 subnet, and use it like regular vlan but with static ip's(until we got ipv6 dhcp).i have hp 5406 manual for IPV6 but i can't understand what i really need to do for start using IPV6.
	View 5 Replies
    View Related