A Cisco RV220W router/firewall connects the local LAN to the internet. The router is connected to a new Cisco SG300-28P switch configured in Layer 2 mode. There are two new AIR-1142N wireless access points running in autonomous mode connected to 2 ports on the SG300 powered through PoE. The AIR-1142N access points are running the latest firmware version 15.2(2)JB. There are two VLANs defined: VLAN1 is the native on all devices, and VLAN2 is for wireless guest traffic to provide access to the internet only.Internal/staff traffic is on 192.168.100.x, and the wireless SSID is MYNetS.Guest traffic is on 192.168.200.x and the wireless SSID is MyNetG.IP addresses are being assigned by the RV220W.
All works well with one exception. Wireless clients on the internal SSID are able to ping/access the switch, router, and other clients on wired ports on the switch. The router, switch, and wired clients can ping wireless clients. However, wireless clients, on the same SSID and the same 1142N cannot ping/access one another. They are being isolated from each other. We absolutely need to have this capability.The SG300 does not have port security enabled on any port. none of the workstations/laptops have a firewall enabled. These laptops are all Macs btw. I have checked that neither of the 1142N access points have Public Secure Packet Forwarding enabled on either of the VLANs.I am at a loss as to why the wireless clients are being isolated.
I would like to enable "client isolation" on an autonomous, standalone 1142N AP but I don't see that option anywhere in the web interface. how to keep associated clients from passing traffic to one another on this AP?
i've been looking for a way to isolate clients on a Cisco Aironet 1121 on a certain SSID, and i cant find anything, tried pretty much everything i coudl remember, but since im no expert on Cisco wireless.
Quote:
Cisco IOS Software, C1100 Software (C1100-K9W7-M), Version 12.3(7)JA1, RELEASE SOFTWARE (fc1) Technical Support: [URL] Copyright (c) 1986-2005 by Cisco Systems, Inc.
I just purchased an Aironet 1142n and need to configure/set it on one subnet in our WAN and ship it to another subnet on the WAN.
I have not been able to access the unit using a network cable from a pc direct connected to the Aironet. The pc's ip address is set to 10.0.0.2 I can not get to the access point thru the web interface using 10.0.0.1.
When I attempted to access it using a Hyper terminal connected to serial port and console port it loaded a list of software and updates and then reported that it shut down and I could not do any thing with it.
What must I do to be able to configuer a static IP and assign it an SSID and Security settings? How can I access the web interface? I have reset it by uplugging the power cord and holding down the Mode button while I plugged back in the power cord and holding it until the light turned amber/orange. Currently the light is solid green with the ethernet port direct connected to the nic card on a desktop.
Need simple configuration for the Aironet 1142N? Optimally, I would like to place 802.11b/g traffic on the 2.4 GHz band and 802.11n traffic on the 5 GHz band.
I've just recently purchased the Aironet 1142n and am hoping to set it up as a repeater. I've followed the documentation here: [UEL] but am still having problems.
What I'm trying to achieve is: I have an adsl router (TP-link W8960N) at the front of the house but the wireless signal does not reach all the way to the end of the house. I am trying to set up the aironet 1142n to act as a repeater and place it in the middle of the house and hopefully that will extend the wireless signal to the end of the house and remove the dead spots. I would like to do this without having ethernet cables running all over the place and have been trying to configure the aironet 1142n to no avail. Every time I set the aironet 1142n to "repeater" it automatically coverts back to "access point" under role of radio network.
I guess my main question first of all is, can I set the aironet 1142n as a wireless repeater? And if so, where am I going wrong in my configuration?
I've just read that " Repeater access points running Cisco IOS software cannot associate to parent access points that that do not run Cisco IOS software."
Does this mean the aironet 1142n set up as a repeater will not work if the original access point (in this case, the TP Link adsl wireless router) isn't a cisco brand?
I have a Cisco 1142N configured in autonomous mode.I'm running on:Cisco IOS Software, C1140 Software (C1140-K9W7-M), Version 15.2(2)JA, RELEASE SO FTWARE (fc1)
I can loggon to the web interface but it won't show me th expected status information.
I have bought 2504 LAN Controller and my old 1142 wants to configure to accept that Controller instead of old controller. These APs and controllers in far away site and before I go there I want to figure out how can I do following.
1. How can I configure old 1142(Previously connected with another LAN Controller) to accept New 2504 Controller instead of old controller ?
I just Bought 1142N AP, I am unable to connect to it or open its Web interface, the Default IPs i am using are 10.0.0.1 for Router and 10.0.0.2 for my PC, whats its Default IP, What IP address should I put on PC, plus Do i need the IOS for the AP?
We have some Cisco Aironet 1142N Autonomous access points installed, currently running 12.4(21a)JA1 IOS system software:
System Software Filename: c1140-k9w7-tar.124-21a.JA1 System Software Version: 12.4(21a)JA1 Bootloader Version: 12.4(23c)JA3
We tried to install the following Autonomous AP IOS software update:
Release 15.2.2-JA ED (c1140-k9w7-tar.152-2.JA.tar) 30-AUG-2012
But the 15.2.2-JA system software release does not install via TFTP Web-GUI (from a accessible PumpKIN TFTP-Server poining on that software update).
What's the problem with that?Is that system software release 15.2.2-JA ED (c1140-k9w7-tar.152-2.JA.tar) not compatible to the Cisco Aironet 1142N Autonomous access points
Hardware configuration:
KurzenPartner_1#show hardware Cisco IOS Software, C1140 Software (C1140-K9W7-M), Version 12.4(21a)JA1, RELEASE SOFTWARE (fc1) Technical Support: [URL] Copyright (c) 1986-2009 by Cisco Systems, Inc. Compiled Wed 16-Sep-09 18:09 by prod_rel_team
I am considering upgrading our 5508 WLCs to version 7.4.1 to take advantage of the Bonjour gateway. What I want to do is allow clients on our guest wireless network to access things like the Apple TV in our conference rooms. My intention would be to have the Apple TVs on a separate vlan. Obviously, the Bonjour gateway would allow for access between these 2 networks. The question I have is this. If I have client isolation turned on my guest wireless network, is it still possible for these devices to access Apple TVs on another network?
I have a Cisco ASA 5505 which is setup as an EasyVPN client to e remote VPN concentrator.
The Cisco ASA has the 50 internal user license with 10 VPN peers.
We just upgraded the license from the base 10 internal user to 50 user license but it has not resolved the problem and only 10 internal users still work, the 11th fails.
Does each EasyVPN client on the inside network take up 1 of the 10 VPN peer licences?
This seems to be the issue from what I can see, just need confirmation.
I am trying to configure an Aironet 1142 WAP model#AIR-AP1142n-A-K9. My setup is very basic, I have a router that acts as the DHCP server, the 1142n, and a PC. I am using the 1142n in Standalone AP mode no authentication, and have it working according to the [URL]. And it is working perfectly. My questions are as follows.
1. I have isolated the wireless users from seeing each other by using ap isolation, Can I prevent the wireless users from accessing the lan pc, router and WAP configuration pages? Is there any way to do that while still maintaining internet access? Basically I just want to provide my users wireless internet access without authentication but don't want them able to see each other or anything on the lan.
i have configured some 1142n's, everything works in terms of .n but the reported client connection on the AP does match the published MCS definitions.eg so what does "Current Rate (Mb/sec) m6-4" actually mean in terms of MCS connection
Wireless client connected to a 3602i AP running on 2500 series WLC with a latest 7.2 code. Client will now connect to AT&T vpn client - success.Client will connect to SAP application using netweaver gui - failed.With the same scenario, except for the access point being used, client will connect to SAP application using netweaver gui
We are planning to setup a new WLAN using Cisco 2504 WLAN Controller and 1142N Access Point. Is it possible to create individual user accounts for the users those who all are connecting to this WLAN Network by using the 2504 WLAN Controller ?
configuring DHCP on access point, i have cisco 1142N access point, in my network.. working in autonomous mode, i have assigned a static ip to access point with default gateway.. from AP i'm able to reach internet and user connecting to access point are not able to get ip.. i have DHCP server in my network. how to make access point to fetch ip from my dhcp server and assign the saem to client.
Using a wrt610n.I am trying to Isolate one of my wireless bands from the rest of the network. I turn on the AP Isolation and I still have access to all of my wired computers. With AP Isolation working will they be able to see the hard drive plugged into the router?I've heard that they can still see other wireless devices, is that true? And if so, can they see others wireless devices on the other wireless band?
Using a wrt610n. I am trying to Isolate one of my wireless bands from the rest of the network. I turn on the AP Isolation and I still have access to all of my wired computers.
Questions: With AP Isolation working will they be able to see the hard drive plugged into the router? I've heard that they can still see other wireless devices, is that true? And if so, can they see others wireless devices on the other wireless band?
I have a Linksys E2000 router on my home network. The router has the newest version of firmware. Every once in a while, wireless clients on my network become "isolated". Here's an example of what happens. I set up a new wireless printer. I can print to the printer wirelessly from my phone, PC's, etc. all fine after setup. I'm thinking everything is cool!! Well after 2 weeks to 1 month this device will become "isolated" so I cannot print to it; it has an IP address, it can ping its gateway, but i cannot ping it from other devices on the same subnet. I know it's not the printer because if i unplug my E2000 and plug it back in, it works fine.
Another example. I have two windows 7 PC's that are on the same home group and i can share files between them. Sometimes it works and other times it doesnt. I can ping my gateway but they cannot ping each other. I would troubleshoot the issue like crazy from the host end, but the second i unplug my E2000 and plug it back in, BINGO they can talk. Something is wrong with how these routers function with hosts in inter-subnet communications.
I own a E4200 v1 router and recently discovered that wired and wireless devices cannot talk to each other.Their IP address are acquired through DHCP and inside the same network, but cannot talk to each other by any means, such as ping or http connection.I tried switching wired device to wireless and this actually solve the problem. I've searched and seen thread talking about "AP isolation" settings in advanced wireless setting, but there's no such setting page in my router (running on v1.0.5 firmware). I've already disabled any filtering and firewall function on the router, but still no good.
I've got a Cisco Aironet LAP1310AG-A-K9 that I can't access through Internet Explorer or Firefox (multiple versions). I set a static IP in DHCP, I can ping the unit, but I can't browse to the GUI.
I can no longer open a http or https connection to the AP. I do have ssh access and I can log in with full privileges.
I was using the Web interface a few days ago and it did something strange during an update. The display of the web page became corrupted and no longer responded to my input.
I restarted it from an ssh session and I have also power cycled it via the power injector. Neither method has worked.
What should I do next or what additional info can I provide from an ssh shell?
Physical access is very difficult. It requires a 30' ladder after 10 p.m. So, I would like to avoid that if possible.
I just picked up a Cisco Aironet AIR-AP1252G-A-K9 Wireless Access Point to mess around with at home and learn IOS.
The unit didn't come with a power adapter or any accessories. Just the bare AP. Does this AP need a controller to work? Can I use it as a standalone AP?
I am trying to find a way to login to our wirless access point. I have a Aironet 1130AG series wireless router. I have the ip address. It is a POE device so i dont have a power supply for this device. When it is on I can see the Wireless Network but the passcode has been lost and no one knows it. Is there a default IP address for this equipment? There is an Ethernet port for a console but without the power supply i cannot access it.
We are currently using several AP's in our organization. And in this one AP i want to give a user the power to change the password of the wireless network to prevent miss use. I was wondering if it was possible to create an account who only has the privilege to change the WPA key?? I want to prevent that he will accidently change other settings.
I have a pair of Aironet 1310's I am needing to bridge. I have used the CLI to configure the BVI1 with the ip address and verified it. I then tried to access the GUI to configure the device via Internet Explorer and it would not provide access. I read that it had to be older versions of IE but my OS will not support older versions. I then downloaded Netsace Navigator 7.01 as indicated, but still did not get access.
Then I thought maybe if I can access the GUIvia the IPSU tool but I have Googled the Cisco IPSU and cannot find a downloadable link.
On my Accespoint i have 2 vlans: 1 for my wifi phones and 1 for my network.Wifi Lan has the SSID LAN with WPA enterprise authentication to a radius server(ms server 2008).Wifi Phone has SSID PHONE and vlan 50 with local radius authentication.This Works all fine, Except when i enable AP for my wifi phones. When AP is enabled the authentication for my lan doesn’t go to my server but local.How do I configure my accesspoints so that the cisco phones use the local radius server with AP and my windows computers connect using the ms radius server?
I am looking at outdoor access points, I want to stick with Cisco aironet, we currently have 6 of them that are 6 years old and running great, one has had a problem because of humidity, dried it out and relocated and we are good again.
I was looking at the Aironet 1310 Outdoor access point, but I can't find much information on it. I am looking to see how many SSIDs can be setup, we currently have 2 one private, and one public, this is done with VLANS. I am also looking at finding out about the power injector, it converts to coaxial cable, it has 2 RJ-45 and 2 Coaxial, does this mean if we get 2 access points, then I only need 1 power injector?
I'm working on setting up an Aironet 1040 Wireless Access Point for my company. It's my first time setting up something like this, and I've run into a bit of trouble.
I created my first SSID easily enough, following the manual and guides online. I set up VLAN 1 as my native VLAN and linked it to my SSID with the encryption and security that I was told to use and it works great. However, my boss asked me to set up a second connection as well for guests at the office, and this is where my trouble starts.
I created VLAN 2, and then another SSID which I linked here. I set up encryption and security the same way, and I can see the network when I open up my network and sharing manager. I can connect to the network as well, but I either get a spinning blue icon where my signal strength indicator is or a few bars with a yellow caution sign, and Windows says 'Identifying...'. I've compared the two SSIDs using the console and the GUI and I can't seem to spot any obvious differences between them.
What is the best way to isolate hosts on WiFi network managed with 4400 controllers so they only see def gw but not each other, something like "switchport protected" but for WiFi ....