Cisco :: Generating CSR For WLC 5508?
Apr 29, 2010Does Cisco WLC 5508 runnig code 6.0.196.0 allows you to generate CSR? Or do you have to use OPENSSL like in previous versions?
View 16 RepliesDoes Cisco WLC 5508 runnig code 6.0.196.0 allows you to generate CSR? Or do you have to use OPENSSL like in previous versions?
View 16 RepliesI am unable to see the interface down alarms on my cisco works LMS 4.0 .
This problem is happening only for the Gigabit interfaces , i m receiving the alarms for the POS interfaces . The router status is showning as known .i have also added this interface in poller also .
I've got a a customer that is using a single sign on product that uses agents installed on the customer's domain controllers. This works fine accept for one scenario. When the customer transitions from a wired to wireless connection or vice versa. We have determined the reason for this is that the DCs are not getting Windows logon events ie 540 on 2003 servers or 4624 on 2008+. The users have files shares mapped onto member servers but refreshing those is not hitting the DCs.
Any way to ensure hitting a domain resource generates a logon event on a DC without directly mapping a resource on a DC. If it matters there are 50 domain controllers and around 200 member servers spread all over 48 states.
We are using CISCO LMS 4.2.3 in our network in India, we are facing a issue regarding alarm generation for a protocol flap/down, especially when BGP / OSPF neighbourship got flapped.These flapping will result in the data service degradation , by which we came to know that some protocol flap may occurred at router end & then we go for the manual check by login into the router.After escalating the same to cisco we came to know that it is a bug of Cisco LMS. using any other method/technique to view the protocol down alarms automatically for cisco routers.
View 2 Replies View RelatedI have ACS 5.2 and would like to know if I can schedule a report to be sent to my email address each Sunday for example for all the failed and succeeded attempts for devices authentication.
View 3 Replies View RelatedI am attemtping to install new ssl certs on our 5.3 cluster. I was able to generate the CSR on the Primary host. When I attempt to generate the csr on the secondary host, I receive the following error:
This System Failure occurred: Error while remotely calling Primary to create: com.cisco.nm.acs.im.certificate.CertificateRequest Object{ request=[B@144cead, privateKey=null, encryptedPrivateKeyPassword=[B@5ce155, certificateSubject=CN=xxxx.xxxxxx.net, keyLength=2048, digest=SHA1, timeStamp=null, friendlyName=null, guid=[B@1cd99ca, description=null, name=xxxx.xxxx.net, version=0, id=0}. Your changes have not been saved.Click OK to return to the list page.
Both hosts are running identical versions:
Cisco ACS VERSION INFORMATION
-----------------------------
Version : 5.3.0.40
Internal Build ID : B.839
I've noted a number of traps reported correctly but with the wrong SSID in the detail on 7.0.116.0
View 1 Replies View RelatedWe are using CISCO LMS 4.2.3 in our network in India, we are facing a issue regarding alarm generation for a protocol flap/down, especially when BGP / OSPF neighbourship got flapped.These flapping will result in the data service degradation , by which we came to know that some protocol flap may occurred at router end & then we go for the manual check by login into the router.after escalating the same to cisco we came to know that it is a bug of Cisco LMS. using any other method/technique to view the protocol down alarms automatically for cisco routers.
View 1 Replies View RelatedWe have Cisco 3945 Router and generating crashinfo while firing PRI from this Router.
View 1 Replies View RelatedRecently I had came across 1 issue where one of the server IP had conflicted with VIP of Nexus core switch. The blade server was physically connected to Nexus Distribution switch which in turn connects to Nexus core. Neither Nexus core nor distribution had generate any logs in regards to IP conflict which ideally happens on Cisco catalyst switches. I haven't find any document on cisco as well as on internet for this issue . I dont know what logging need to enable on Nexus for this specific case . There are different logging levels define for every feature like hsrp, ip,monitor etc...
We have Nexus 7k with latest release 4.2(6) Software
BIOS: version 3.22.0
kickstart: version 4.2(6)
system: version 4.2(6)
Region : UnitedKingdom
Model : TD-W8951ND
Hardware Version : V5
Firmware Version : 22.05.2012
ISP :
I have a TD-W8951ND v5 on the latest firmware.
I recently broke my broadband data cap which surprised me as I had not been using the internet much.
I only have tablet which I switched off having first checked the router to make sure there were no other wireless connections and adding MAC address filtering to be sure no one else was stealing my bandwidth. With just my router connected to the ISP, my ISP has recorded 170MB of downloaded data in 3.5 hours. Switching off the router stops the traffic being recorded (as you would expect), but when switched back on the large data transfers start up again.
I have plugged in an older router (not wireless) and no traffic is generated, so it seems to be the TP-Link router rather than my ISP or ADSL circuit that is at fault.
upgrade from 7.0.235 to 7.0.240? I can't go any higher right because we are still using WCS. I read the white papers but as far as I can tell there are no new features..
View 3 Replies View RelatedI am trying to SSH into my controller after upgrading to 7.0.103 and I get the username prompt but it seems to be disconnecting as soon as I do. Is there something different about this version of code as opposed to the older ones?
View 1 Replies View Relatedi have 2 ssid with the same comfiguration (diff only in name) in one ipsec ssid vpn (l2tp over ipsec with natt ) works fine, in another after phase 2 is completed no traffic is forwarded and vpn session is dropped. There are no access lists on equipment.
I found in documentation that need to activate L3 security and set it to vpn pass-through, but in drop-down menu only one item "none". What is the reason to drop ipsec traffic ?
NCS 1.1.1.24 (PRIME-NCS-VAPL)
5508-50 WLC 7.0.235.3
I had to re-IP this WLC onto another management vlan. Prior to the IP change and code upgrade I removed the WLC from NCS.When attempting to re-add the WLC to NCS, I finally found the it in Configure>Unknown Devices. Now NCS is showing the Device Type as Unknown, and Inventory Status Detail as Unsupported device, and reachable.
I have a customer with an ACS for Windows version 3.3. I know the ACS is End-of-support, but if I could do Authentication for a WLAN with a Controller 5508 Softwareversion 7.0.116.0 and how?
View 3 Replies View RelatedSince the SW upgrade to version 7.3.101.0 (wlc 5508) i have the following issue. We have a W LAN with 802.1x (WPA2/AES) secured. Before the update the users need to enter user/ PW every time when they reconnect (W LAN switch off/ on again) to the W LAN. Now the users don`t need to enter user/ PW when they reconnect to the WLAN.
I could not find any setting on wlc to clear this issue.
Does anyone know if it is possible to use an 5508 WLC running version 7.0.116.0 as a DNS box? Was not able to find anything in the config guide.
View 2 Replies View RelatedCisco WLC 5508
Software Version: 7.4.100.0
Windows Server 2008R2
I've got everything setup on the Windows Server 2008 side of things (certificates, radius clients, etc). I added the radius server on the WLC, and configured a new W LAN to use it. Both are on the same sub net. When trying to connect to the W LAN it kept failing. I installed wire shark on the server to monitor the radius traffic, and to my surprise there was no radius traffic showing up on the server. The radius statistics on the WLC are at 0 as well, so it's like the WLC isn't even attempting Radius.
I re verified that the server was enabled on both the security tab and the W LAN itself on the WLC. Rebooted the controller and the server, all to no avail. I used a radius test client, and can successfully send radius commands to the server using that utility. Frustrated, I just kept trying to reconnect on my wireless device, and after about the 15th try, finally I saw radius activity on wire shark. It rejected my access, but at least I saw activity. It also registered radius statistics on the WLC as well.
So now if I keep trying to connect repeatedly, about every dozen or so times the WLC actually will send a radius request to the server.
I have a main with one WLC 7.0.240.0 and have acquired a HA with 7.3. I have considered whether to put on both WLC version 7.3 or 7.4.:
first, that there are differences between the two versions?
second: As I read, the version 7.4 can make backup of several WLC, this function is already available?
configured the monitor and exporter on the wcs 5508 running 7.4.100.0 and it is not working.
View 1 Replies View RelatedI have a WLC5508 with around 70 AP's (LAP1042N) connecting over an MPLS WAN network. WLC and AP's are running 7.4.100
From time to time I have an AP which disassociates from the WLC with the logging beneath. This is a problem with the AP, or is this due to network saturation between the AP and the WLC ?
And if so, should I change the default retransmit values ?
I have a Cisco 5508 controller and am considering using LAG. Can I enable LAG but only use 2-4 of the 8 available ports on the 5508? I am asking because currently I don't have enough ports on my 3750G switch to accomidate all 8 ports on the 5508.
View 2 Replies View RelatedLooking to upgrade our 5508 WLC to the newest code AIR-CT5500-K9-7-2-103-0-FUS..We are currently running an older code 6.0.196.0..Are there any issues that I need to worry about with this upgrade ?Do I need to upgrade the AP's at the same time ?
View 7 Replies View RelatedI've searched the release notes for 7.2+, but I haven't found a documented number of how many active RF Profiles a 5508 can support. Any limitation of how many RF Profiles they can have?
View 3 Replies View RelatedI am planning to upgrade WLC from 7.2.103.0 to 7.2.110.0 due to some bug, but I wanted to know if it is compatible with WCS - 7.0.240.0 and NAC Guest server version 2.1.0, I am made some search but I couldn't get to proper conclusion.
View 8 Replies View RelatedI have a wlc 5508 running version 7.0.116.0 that I need to uppgrade to use the CAP2602I AP. I understand that I need to upgrade it to version 7.0.240 before 7.4.100 to avoid loosing HREAP VLAN mappings, and I have also read that i need to install the FUS image [URL]. In what order should this be done? Shlod the FUS image be installed before new firmware ore after firmware or after 7.0.240 but before 7.4?
View 1 Replies View Relatedsince few weeks i configure my APs on the new WLC5508, and then, the lights are off on the AP, is it normal? however they seems to work fine. What does this light means? FW version: 7.0.22,Is it important?
View 2 Replies View RelatedI want to use a 5508 as an anchor controller for a wireless guest deployment....but the client has internal 4402's controllers, with software version 7.0.235.0...is it possible tu mix these two controllers for a Wireless Guest Access Deployment??
View 3 Replies View RelatedIs the configuration information for each of the access points that has joined a wireless lan controller stored somewhere specifically in the configuration screens? I enabled the power injector override on one of my access points which is plugged into a POE switch and of course now it will not stay up for more than a few seconds. Therefore I cant just go to the wireless list and modify the configuration there. I cannot seem to find it anywhere else to change it and bring it back up.
View 3 Replies View RelatedA wlan on my controller is configured for WPA2, AES encryption and a PSK. A vendor will supply me with a wireless device for this wlan. The vendor asks if we use AES 128 or AES 256. I had always believed we use AES256 but I can't verify this. How can I verify this to the vendor?
View 1 Replies View RelatedWe are trying to integrate Cisco WLC 5508 and Microsoft NPS 2008 to allow users to use their AD username and password to authenticate to the wireless network.I basically followed the following document but with no luck (Appendix B): URL I'v went through some threads in this forum but also with no luck,Basically, we are recieving the follwoing error in NPS event viewer:A RADIUS message was received from RADIUS client a.a.a.a with an invalid authenticator. This is typically caused by mismatched shared secrets. Verify the configuration of the shared secret for the RADIUS client in the Network Policy Server snap-in and the configuration of the network access server.
View 2 Replies View RelatedI did some testing in WLC in our company wireless network.However, after my 3 hours testing, I had tried to login WLC again by GUI and SSH. The admin username and password does not work any more. All Read only and Guest Account did not work as well.Is any one had this issue before? Is there a restriction for access to WCL per 3 hours or one day? By the way, I did not change any password.
View 8 Replies View Related