Cisco :: Setting Up Primary And Secondary 5508 Using Redundancy Port

May 15, 2013

Management purchased a HA package from Cisco consisting of 2 5508's with pre installed 500 users license on the Primary WLC and none on the secondary WLC. We have 5508's already so I am familiar with setting them up and so forth. What I am not familiar with is setting them up using HA for failover and license sharing. I've looked and looked and can't find documentation online showing how to set this up. I have found some but nothing that is complete. I have spent 2 days spinning my wheels.

View 2 Replies


ADVERTISEMENT

Figure Out Primary And Secondary DNS?

Jun 22, 2011

How can you figure out your primary and secondary DNS? I have a linksys router, and i'm trying to figure out what my primary and secondary DNS are so i can hook up my PS3 online.

View 1 Replies View Related

Make Secondary Router As Primary?

Apr 25, 2011

I have been having problems when trying to host servers on games, etc.I have 2 routers. A modem router, which is a Thomson router. That is the main one. It has a wire connecting from it, to a D-Link router that is near my Computer, and my brother's one. Then that D-Link router has 2 wires from each port, to mine, and my brother's computer.So, I am trying to host games.I didn't connect to the Thomson one, which is also wireless. I am connected to the wired one (D-Link). When I try to host while connected to it, my brother, and other people can't find the server. My brother and me can find it on LAN, but not Internet.But when I disconnect from the Wired, and connect to the Thomson wireless one, and then when I host, I can find it on INTERNET. Even my brother can. He can connect to it perfectly.

I do not want to connect to the wireless, because then it will cause lag spikes every 5 minutes.So, when I disconnect from the wireless, and connect to the wire, I went into the CMD, and typed in ipconfig. I found out that the Default Gteway is the D-Link IP.When I connect to the wireless, and disconnect the wired, I went into CMD, and then the Default Gateway is the Thomson one, which is the main router.So what I want to do, is use the D-Link router, and that router will have the same IP as my thomson one, so that I can host perfectly with no lag spikes, and using a wired connection.

View 19 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.3 Primary / Secondary Same License?

Jan 22, 2012

I have a question about the number of Cisco licenses needed in two cases for ACS 5.3 Virtual Machine.One primary + One secondary : Just one license for all or one license for the primary + another one for the secondary ?One primary + several secondaries : Just one license for all or one license for the primary + just one license for all the secondaries ? 

View 1 Replies View Related

Cisco AAA/Identity/Nac :: Use Two Servers ACS 5.2 In (primary And Secondary) Active?

Jun 16, 2011

it is possible de use two servers ACS 5.2 (primary and secondary) in active/ active? or just in active/ passive?

View 3 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.3 - Unable To Re-register Secondary To Primary?

Jun 11, 2012

Today I ran a failover test between our primary and secondary ACS systems (ran 'acs stop' on the primary) and in the process decided to promote the secondary while I had the primary down. All was fine until I brought the primary back up and tried to re-register the secondary to it. I get the following error message: I went into System Administration >Operations >Distributed System Management on each and it showed the other device as deregestered, tried to promote from there but it failed too, so I deleted them and tried to register the secondary again. After that didn't work I tried rebooting both but that didn't work either. I know the user/pass I'm using is good and I've tried using both the IP address and the hostname.

ACS/admin# sh app version acs
Cisco ACS VERSION INFORMATION-----------------------------Version : 5.3.0.40.5Internal Build ID : B.839Patches :5-3-0-40-5

View 3 Replies View Related

Cisco VPN :: 888 Configure VRF With COOP Having Primary And Secondary Key Servers

Jun 19, 2012

We are trying to configure vrf aware GET VPN with COOP having primary and secondary key servers and also 3 GM routers. All GM routers we use are Cisco 888 and Key servers we use cisco 2911 routers. All GMs crypto maps have been applied into Vlan interface as there's no L3 interface on 888 routers.
 
Always members can form a tunnel with primary KS, we have configured redundancy with secondary key server and listed on each GM primary and secondary KS on GDOI group.
 
The issue we facing is that whenever we shutdown the primary or secondary servers the tunnel is not forming with available KS unless otherwise we mannually clear the crypto session. In another way when primary KS down it doest not fall back to secondary KS and no GM get registered. We have already played with all the timers such as DPD, SA lifetimes, GDOI rekey lifetime etc and also exchanging the keys (import/export) with KS and COOPs but there's no luck. We could see the following message was seen on both KS.
 
[code] 192.168.1.3 is the primary KS and 192.168.1.6 is the secondary KS.I captured attached debug output from 1 GM and secondary KS while I shutdonw the primary KS and also attached is our senario we were trying get work.
 
Also attached is the show output from both KSs when it form a tunnel with GM.

View 2 Replies View Related

Single SSID For Primary And Secondary DD-WRT Wireless Router

Feb 22, 2013

I have more than 5000 sq. ft home and have some dead places other end of the house. Now I am looking for Range Extender/Repeater to boost signal. My primary wireless router is Motorola Surfboard SBG6580 and Secondary Linksys E3000 (planning to update firmware to DD-WRT). So I wanted something such that I can roam between the two routers without switching SSID (use single SSID name for primary and secondary DD-WRT routers) and connect automatically to whichever the best signal (or) strength router. In work place we have same thing like that single wireless SSID name which automatically connect wireless SSID from one end to another end of the building.

View 1 Replies View Related

Cisco Firewall :: 5505s - Secondary ASA Active And Primary Is On Standby

Dec 5, 2011

We have 2 ASA 5505s in a data center at a remote site.
 
Whilst troubleshooting another issue I noticed the below. I don't know much about fail over but this would suggest that the secondary ASA is active and the primary ASA is on standby.
 
if the primary is "active" then how come the secondary is the active ASA? I would have thought that once the primary ASA became active this would assume the "main" role".

[Code] .....

View 7 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.2 - Primary-secondary Radius Server Configuration

Apr 21, 2013

I have a couple of ACS 5.2 configured as active and backup and I am   doing dot 1x authentication using these servers . I have configured the  switch with the bellow configuration.
 
radius-server host 10.0.10.15 auth-port 1645 acct-port 1646
radius-server host 10.0.10.16 auth-port 1645 acct-port 1646
radius-server key 7 aaaaaaaaaaaaaa
 
please help to understand what will happen in switch
 
1) in case of primary failure
2)in case if primary returns alive .

View 8 Replies View Related

Cisco AAA/Identity/Nac :: Secondary ACS 5.1 Fails To Deregister After IP Change On Primary

Aug 9, 2011

IP address of Primary had to be changed, to respond to a hardware failure of TACACS server with IP in many device configs.
 
Now the Secondary fails to respond to repeated "Deregister from Primary" requests, even after reload  - apparently because it cannot reach the Primary at its old IP address. 
 
Requesting Deregister in GUI generates pop-up that says,  "This operation will deregister this ACS Instance from the Primary Instance. Management applications on this ACS instance will be restarted and you will be required to login again.  After performing this operation

[code]....

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5. 2 Secondary Server Is Not Collecting Logs From Primary

Nov 2, 2011

Cisco ACS 5.2 secondary  server is configured as a log collector for both primary and secondary server .Now i am facing problem in log collection from primary server .ACS secondary server is not collecting any logs from primary .

View 2 Replies View Related

Cisco VPN :: 5520 - Primary And Secondary ASAs / L2L Tunnels Not Responding?

Apr 12, 2011

I have a pair of ASA5520s in active/active failover - this works fine.  Both primary and secondary ASAs are running 8.2(2) code.I  have a 30-day temp 50 seat SSL license that I applied to the primary.  I then started having problems with L2L tunnels.
 
I noted that if the 'show crypto isakmp sa' state for an L2L was MM_STANDBY, then the remote protected net could not reach my side.  However, I could ping across to the other side at which time the state changed to MM_ACTIVE as I would expect and the remote could then reach my side.
 
I believe this results from the differences between the two licenses.  When I applied the 50 seat SSL lic. it disabled failover, but I was willing to risk that for a few days to do show my customer the benifits of SSL connectivity.  Note license differences.  Is this causing the MM_STANDBY IKE issue and if so can I overcome it and use the 50 SSL VPN Peers lic.

[code]...

View 3 Replies View Related

Cisco Switching/Routing :: C6509 - Broadcast Not Working Between Primary And Secondary IP Address

May 11, 2012

I have recently configured secondary ip address on LAN Interface of Cisco C6509.. We have some application which needs to use broadcast traffic communication to communicate with client... Broadcast is working within subnet    & also working from broadcast server to primary subnet. But not working from secondary subnet.. I have checked broadcast within secondary IP range & it's working fine...  Secondary not working broadcast with primary and also with broadcast server... broadcast address is different for these subnet but both should be communicate since configured on same interface... When I went through Cisco website found that command "ip directed broadcast" which will pass broadcast to different subnet... But I'm not sure whether any other impact if I enable that command on particular Ethernet interface...

View 6 Replies View Related

Cisco Firewall :: ASA 5505 - Dual ISP SLA Track With Primary PPOE Secondary DHCP

Aug 25, 2011

Cisco ASA 5505 Security Plus 1 link with PPOE dialup for internet access
 
desirable situation: Primary link with a PPOE dialup Secondary Link with DHCP address Asignment
 
Problem: i want to configure Dual ISP Failover modus, but the problem exist when i configure  the ip sla syntax it looks good in the running config. but after a reload the secondary line becomes primary
 
It looks like the ppoe client authentication is busy when the ip sla tracking mechanism becomes active. can i tweak the settings that the ip sla tracking mechanism starts later?
 
What i the correct config for Dual ISP setup with primary PPOE and secondary DHCP

View 1 Replies View Related

Cisco Switching/Routing :: 887m - Unable To Route Data Between Primary And Secondary IP Networks

Jan 7, 2013

We an 887m router in our office with an unmanaged switch. We have two networks, 192.168.0.x and 192.168.11.x connected to router on the same interface (192.168.11.253 is a secondary ip) but I can seem to be able to route packets from one network to the other. Internet traffic is fine from both networks. I can't see what I'm doing wrong here. I can ping the 192.168.11.253 (router) from the 192.168.0 network but nothing beyond that.
 
I tried this at home with no other config and its the same. Is this by design?

View 4 Replies View Related

Cisco :: Failover Configuration - Allow Primary Link To Fail And Secondary Link To Automatically Pick Up Traffic?

Dec 27, 2012

We have a customer who has a network consisting of two ISPs, one as a primary and the other as a backup. We are trying to create a configuration that would allow the primary link to fail and the secondary link to automatically pick up traffic and begin routing .how to set something like this up. Both routers are non Cisco routers and there for HSRP is out.

View 14 Replies View Related

Linksys Cable / DSL :: WAG54G-EU Secondary IP Setting

Mar 21, 2011

Can I add a secondary IP address for LAN interface to manage two LAN in my network?

View 1 Replies View Related

Cisco :: 5508 - Eap-Fast PAC On Secondary Controller

Oct 15, 2012

Have a controller based depolyment with (2) 5508s and an 1121 ACS appliance running 5.1 code. Controllers are setup identically and we are radius authenticating users to AD via the ACS. Everything works great on the primary controller, but when I test failover to the secondary controller, my authentication fails and I get the following error message in my ACS logs:
 
12126  EAP-FAST cryptobinding verification passed
12147  Machine Authentication is disabled
12161  Cannot provision Authorization PAC when the stateless session resume is disabled
12106  EAP-FAST authentication phase finished successfully
11503  Prepared EAP-Success

View 1 Replies View Related

Cisco Wireless :: 5508 WLC Redundancy With Prime

Jan 20, 2013

We are going to implement high availabilty in 5508 WLC with version of 7.3.101 . We will be using Prime infrastructure 1.2 for monitoring purpose.With Prime, whether we can monitor and manage redundant WLC also or only active WLC?.

View 3 Replies View Related

Cisco Wireless :: 5508 - WLC Redundancy - Disaster Recovery?

Mar 14, 2013

My questions is in relation to disaster recovery, for wireless.  We have our main data center, in the US, with two 5508 controllers.  We have a DR location, in Europe, with two 5508 controller.  We're upgrading our 5508's to the 7.4 code, so that we can take advantage of the RP port for our controllers.  With that said, is there a way to make the US and Europe controllers redundant?

If there's a disaster, in the US, would the AP licensing, and AP's attach to the European controllers?  Our AP's are set up with HA.  I'm more concerned about the licensing flipping over to the DR controllers.  I've tried researching this topic, and can't really find anything on it.

View 4 Replies View Related

Cisco Wireless :: WLC 5508 Running Version 7.2 - Redundancy

May 1, 2012

I have 2x WLC 5508 running version 7.2. 1st one is setup and running.  My questions is: If I want to setup Active-Passive redundancy, do I need to manually setup the 2nd one exactly as the 1st one and put them in the same group? Or is it a way to copy all of the configs I made on the 1st one over to the 2nd one?

View 4 Replies View Related

Cisco Wireless :: To Configure Second WLC With Primary 5508

Sep 12, 2012

I am getting little confuse about the configuration of my second WLC .I have a project going on with main office and 10 sites . I have placed my primary WLC 5508 with software 6.0 and all the branches i deployed ap .  I put all the AP in Hreap mode did VLAN MAPPING . And i Created Groups based on the location and i put this AP's insde those group .All the sites seems perfectly working. Now  I have to place my sedcond WLC  in one another branch . I did all the initial configuration of my 2nd WLC .
 
But am worried if my primary wlc fail how could it can be taken to second WLC . And if i put inside wireless--> hight avaliabilty--primary ip and secondary ip .Again do i need to configure those WLAN ,  AP GROUPS , everythink in this WLC sepretely or any option . If i need to create the group do i need to select the ap's which already added to primary wlc groups.

View 1 Replies View Related

Cisco Wireless :: 5508 WLC Redundancy - Regional / Centralized Model?

Feb 20, 2012

Our organization has multiple controllers at regional sites (one per region) & want to implement redundancy by placing one controller at headquarter's datacentre as a backup in case the site's failed.All our controllers are 5508 with 7.0.116.0 loaded I did a search around and found multiple documentations of how to do it but all related to creating a mobility group?Is it possbile to implement this scenario without creating mobility group ? (As in Cisco docs for software release 7.0 June 2010 - quoted "Centralized and regional controllers do not need to be in the same mobility group" ) 

View 1 Replies View Related

Setting Up A Time Capsule / Airport As Primary With E4200 Cascade

Mar 14, 2012

I have a Time Capsule current generation, as my primary router connected to my ISP. I'm using a Linksys E4200 as my slave router connected to the Time Capsule via lan to lan. I noticed the TC Internet Connection TCP/IP via DHCP shows a Subnet Mask of 255.255.248.0 and the Surewest IP of 74.222.246.23

Is the 248 setting one I will need on the slave?

The TC IP Address is 10.0.1.1 the DHCP Beginning Address is 10.0.1.3 to allow for the slave to have 10.0.1.2.

The E4200 is set as follows on the routers setup page, Internet Section to Automatic DHCP, Network Section to IP 10.0.1.2 Subnet Mask 255.255.255.0 and DHCP is Disabled.

Both routers have a SSID set to the same name.

Are all these settings correct? I've noticed that a device iPhone or iPad etc has a different IP address assigned by the TC depending on which router it is actually connected. I've also noticed difficulty of a device on one router communicating with one on the other.

View 1 Replies View Related

Cisco Wireless :: 5508 / H-REAP LWAPs Losing VLAN Mapping When Fail To Secondary WLCs

May 2, 2011

I have three 5508 WLCs, running code 7.0.98.0 supporting 100+ LWAPs in H-REAP mode. The LWAPs are servicing 2-3 WLANs each. Some are using central authentication and local switching, some are configured for central authentication and central switching. When the LWAPs fail from one WLC to another WLC, the LWAP's lose all of their VLAN mappings and pick up the VLAN of the management interface on the new WLC.

All WLANs are configured to use the management interface on the WLC and the VLAN mappings are configured per LWAP on the H-REAP properties  tab.  The WLAN ID numbers and all the WLAN settings are the same across all 3 WLC's. I have created AP groups on all 3 WLC's and the AP group config matches across the 3 WLCs.

I can get the LWAPs to keep their VLAN mapping by creating an interface on the WLC with the VLAN ID of the locally switched/remote site VLAN and then setting the interface for the WLAN to the new interface. However, then the WLAN doesn't work, because the centrally located WLC doesn't have the remote site VLAN. It also seems to keep the VLAN mapping if I create the locally switched/remote site VLAN interface on the WLC , and point the WLAN to the management interface. This shouldn't be a necessary step though... In H-REAP with local switching, the LWAPs aren't using the interface on the WLC.

I found a note in the 7.0 WLC config guide that explains why the VLANs are picking up the management interface VLAN, but that same note says the VLAN mappings can be changed per LWAP/WLAN!

From config guide: For hybrid-REAP access points, the interface mapping at the controller for WLANs that is configured for H-REAP Local Switching is inherited at the access point as the default VLAN tagging. This mapping can be easily changed per SSID, per hybrid-REAP access point

Using H-REAP and been able to get the LWAPs to keep the VLAN mapping when failing from one WLC to another?

View 9 Replies View Related

Cisco Wireless :: 5508 After Rebooting Primary Controller Changed Into Maintenance Mode

Feb 10, 2013

custommer of mine tried to configure HA AP-SSO with two 5508 controllers. After rebooting the primary controller changed into Maintanence Mode. [code]

View 15 Replies View Related

Cisco Wireless :: WLC 5508 - Ignoring Primary Discovery Request Received On Interface

Jan 13, 2013

Im receving this error on my syslog server: capwap_ac_sm.c:1443 Ignoring Primary discovery request received on non-management interface (2) from APalready checked the configuration and everything seems ok. They are registered and with clients associated.What could be the cause?

View 2 Replies View Related

Cisco :: Configure A Secondary Port For Management Interface WLC 2112

Oct 16, 2011

how to configure the backup port for the management interface for a WLC 2112.  I see in the documentation that it states:
 
"Each interface is mapped to at least one primary port, and some interfaces (management and dynamic) can be mapped to an optional secondary (or backup) port. If the primary port for an interface fails, the interface automatically moves to the backup port. In addition, multiple interfaces can be mapped to a single controller port."
 
But nowhere can I find where it says how exactly to do it.  Google seaches have come up empty as well.  I am connecting the WLC to a 3750 stack, and would like to have a secondary port from the WLC connected to the second node of the 3750 stack.  So far I have connected port 1 (management) of the WLC to a port on node 1 of the stack which is configured as a trunk and everything is workign fine.  I have also connected port 2 from the WLC to a port on node 2 in the stack that is configured the same as the port on node one. how to tell the WLC to use port 2 as the management backup if needed.
 
[URL]

View 2 Replies View Related

Cisco Switching/Routing :: 2801 Secondary IP / Port Forwarding?

Mar 26, 2012

I have the above firewall which is working as it should but I have came across an issue with a recent upgrade to Microsoft Exchange 2007 and Outlook 2010 Autodiscovery due to the way the port forwarding has been configured for Outlook Web Access (OWA) on the router.
 
The router is forwarding OWA requests to the exchange server on port 8080 and the default website in IIS on the Exchange Server under which OWA sits and unfortunately Autodiscovery has been set with an SSL port of 8080. I think the reason for this is that we have an RDP server and the router is forwarding all port 443 requests to this server. Due to this Outlook clients cannot connect to Exchange through autodiscovery and cannot therefore get FREE/BUSY and a few other things.
 
I have 5 public IP addresses and only use two at the moment, one on the ADSL router and one on this firewall. I have no spare interfaces on either the router or the ADSL router.
 
My question is, is it possible to have a secondary ip address set on the public facing interface and set different rules for this IP which would allow me to forward requests on that IP to a different server?
  
Cisco IOS Software, 2801 Software (C2801-ADVSECURITYK9-M), Version 12.4(16b), RELEASE SOFTWARE (fc3)
 
Building configuration...
 
Current configuration : 4778 bytes
!
version 12.4
service timestamps debug datetime msec

[Code].....

View 1 Replies View Related

Linksys Wireless Router :: E2000 - Setting Up Secondary Router In Larger Home?

Aug 1, 2011

I currently have my wired cable internet hooked into my wrt310n. I have that hooked into a linksys 10/100 ef3124 switch. From there, I have cat5 run to the back of my house, where the wireless signal is weakest. I've got an E2000 router and would like to hook that in at the back of the house. What settings do I need to make in order to set up a completely new wireless network in the back of the house?

View 1 Replies View Related

Cisco Firewall :: 3845 - Open Port Range On Secondary IPs On Router Interface

Feb 12, 2013

I have 4 public IPs on Router 3845 interface FastEthernet 0/0/1. IP as below.
 
50.200.2.2
50.200.2.3 secondary
50.200.2.4 secondary
50.200.2.5 secondary
 
I wan to allow ports 80 to 90 on 50.200.2.3 for my webserver (192.168.10.50)

View 5 Replies View Related

Cisco Wireless :: Wireless LAN Controller 5508 - Loading Primary / Backup Image (Not Found)

Oct 23, 2012

I just turned on 2 Wirelless LAN Controllers 5508 and I am getting this message on both of them:
  
Loading primary image (Image not found)
  
** Unable to read "linux.pri.img" from ide 0:2 **
  
Loading backup image (Image not found)
 
 ** Unable to read "linux.bak.img" from ide 0:2 **
 
And it is taking me to the BootMenu. I selected option 4 to Clear Configuration and the controller seems to restart the system but I still get the same error. I checked the LEDs status and Sys is Amber and Alarm is OFF which according to the documentation is a System Crash.

View 1 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved