Cisco :: WLC-5508 - Change Timeout For Client Excluded (MACAddress Status)
Feb 7, 2012
Is there a way to change the timeout for the Client Excluded: MACAddress status? It seems like the exclusion is rather short. I'd like to have the ability to control the exclusion time. Using WLC-5508 7.0.116.0.
View 2 Replies
ADVERTISEMENT
Apr 18, 2012
I'm on WLC 5508 . It doesn't matter if passive client feature is turned on or turned off , when you try to increase "User Idle Timeout" you can see this message:
In our network, a lot of clients gets deauthenticated. I thought it would be useful to enable "Passive-client" feature, or increase "user idle timeout" , but how these works with each other?
View 15 Replies
View Related
Nov 8, 2012
I have a Cisco Catalyst 4506-E Swtich,I configure it as a DHCP and gw for the Wireless Cisco AP through the WLC 5508,the DHCP pool reached the maximum limit I run the Show ip dhcp pool (pool name) it's show the below result
GIR906.PCIRQ.DC.CR.1#show ip dhcp pool 406
Pool 406 :
Utilization mark (high/low) : 100 / 0
Subnet size (first/next) : 0 / 0
Total addresses : 126
Leased addresses : 76
[Code]....
View 4 Replies
View Related
Aug 1, 2011
If any authenticated user uses protocol other than (http, https) within timeout period, that user #is deuthenticated
View 1 Replies
View Related
Feb 21, 2012
We have an application which is accessed over WAN (V-Sat) and the end users are facing the session timeout problem frequently .
View 2 Replies
View Related
Jul 10, 2011
I have a 3825 configured as an EZVPN server with 881 routers as clients. One issue I am seeing is that sessions don't seem to time out, such as when a peer's public IP changes. Show crypto ISAKMP peer shows the same host (using device certificates for authentication) with multiple public IPs establishing sessions. I have ISAKMP keepalives configured on the router.
View 2 Replies
View Related
Oct 30, 2012
Modem is a Netgear dgn2200
On the modem page with all the settings Under basic settings For connection it says Always Connected The box underneath says idle timeout 5 (that's in minutes)
I am unable to change that number or even get a cursor to appear in that box (I want to change it to a 0 - my internet connection has been dropping out when going idle). I can't right click or anything. That is using Firefox. When I say dropping out, I mean, the 3 computers on the network become unuseable - nothing works and things don't appear to be connected to the internet even though my green ADSL light stays on like it's connected - it is not.
I tried the same modem page in IE, and that box with the 5 in it is still showing 5, but this time it's just grayed out - again, can't be changed. The firmware updates are all upto date (apparently - according to it's check)
View 1 Replies
View Related
Jun 8, 2011
How do I change the tcp timeout on a WRT54GS router v2 ?
View 4 Replies
View Related
Mar 13, 2012
I am doing troubleshooting of the wireless connection problem.
<Environment>・WLC 7.0.116.0 is used together with WCS and MSE. ・Lightweight APs (3502i) are connected to the controller. ・It attests a radio client by WPA2-PSK.
The status of the client when not connected with wireless LAN was frequently displayed as follows by Location History.
State1:802.11 State : ProbingIP Address : blankMAC Address : blankAuthenticated : No SSID : blank
State2:802.11 State : AssociatedIP Address : 0.0.0.0 (In practice, Static IP is set up.)MAC Address : XX:XX:XX:XX:XX:XX (expected)Authenticated : No SSID : XXXX (expected)
What is the cause of problem which is assumed in each state of State1 and State2?
View 4 Replies
View Related
Apr 21, 2013
I want to set up AP 1552 as outdoor access point so serve clients. This AP is connected to 3750X switch and recieving power over ethernet.Now, by default AP 1552 come with bridge mode and it cannot be changed to local mode. I read on one of the post and made it ROOTAP but still the OPER STATUS is down. This device is already registered to my WLC.
what needs to be done to bring the AP in operational status.[code]
View 3 Replies
View Related
Nov 16, 2011
If i set up a pptp vpn between a Cisco rv082 router and a microsoft client,Can i set the client idle timeout someway? or Have a default value pre- configured for this?Because this device support 5 users to connect at the same time. It would be best for me, if the device drop the client if it does not use the tunel.
View 3 Replies
View Related
Aug 27, 2012
For guest clients , we have configured guest vlan and applied external web authenication on WLC 5508 , the session timeout value is 2700secons . When a client open a browser to internet page , wlc will redirect to URL and get the login page . After completed the login , he can go to internet page .
We find the iPhone and ipad clients will get the login page again ahfter ~ 5 mins , it is mismatch with session timeout value 2700 sec (45 mins) .
View 5 Replies
View Related
Dec 20, 2011
The behavior of some mobile devices ( as Iphone , Itouch, not Blackberry, not labtops ) with WL Controller (5508) is that, when the client doesn't use it, it disconnects after 480 sec.
The idle timeout configured is 900 sec.
Why the behavior is different in this type of devices? Increase the idle timeout is a solution?
View 2 Replies
View Related
Aug 9, 2011
I need to write a small piece of code in C++ to detect whether the AnyConnect VPN client (v2.5 and above) has established the connection. I recall in Cisco 3000 VPN client when the connection gets established there is a registry value (TunnelEstablished) being set to 1. But with AnyConnect I don't see any changes in the registry. how to detect this in C++?
View 4 Replies
View Related
May 14, 2013
When performing an audit from NCS Prime 1.3 on our 5508 controllers (500 lic) we are getting mismatch messages from many of our 3602i AP's that say the following...
(Type)Configuration Name Audit Status Attribute Prime Infrastructure Value Controller Value
(AP APname, Interface) 802.11a/n Mismatch Spectrum Intelligence true false
These AP's are not configured as Spectrum Intelligence on the controllers, rather as local. It seems that NCS believes that they are supposed to be SI. We have refreshed the config from controller many times but this does not change. The 5508's run v.7.2.111.3 Is there a change I can make on NCS or otherwise to make this mismatch go away? Is this a bug? It is not causing any problems (that we can see) but as most would rather not have these mismatches.
View 2 Replies
View Related
Aug 10, 2011
I'm using a Thomson Technicolor 587nV3. I need to change my NAT status from strict to open. So I can play MW3 online and connect to my friends online games and so I can host multiplayer matches. I have windows 7 laptop to do any of the steps required. I've tried to bind my routers cone through Winscript but without any luck perhaps I done it wrong
View 5 Replies
View Related
Nov 26, 2012
ASA 8.2(5), uauth absolute timeout is disabled and inactivity timeout is set to 48 hours:
timeout xlate 48:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:00:00 absolute uauth 48:00:00 inactivity
timeout tcp-proxy-reassembly 0:01:00
timeout floating-conn 0:00:00
Users still get kicked out every 8 hours and they have to reauth. This is a logging message:
%ASA-5-109012: Authen Session End: user 'john', sid 839, elapsed 28801 seconds
View 1 Replies
View Related
Feb 22, 2012
I have encountered some weird issue on our Cat3750 running as DHCP Server.I have excluded 5 IP addresses only on the running configuration. [code]
View 1 Replies
View Related
Apr 29, 2012
we have a 3560 switch configured with EIGRP with dhcp. We have a user that we cannot ping, however the interface show up / up and no errors on interface. the ip address is 10.2.0.199 - however we have dhcp configured to exclude the range from dhcp ip dhcp excluded-address 10.22.0.1 10.22.0.200 how can this work station get a dhcp address if we have that ip range excluded from the dhcp pool?
The user is off a different switch that is a uplink to this distribution switch. Traceroutes shows that the problem is with the distribution switch.
View 4 Replies
View Related
Nov 13, 2011
I have a 2900 ISR that my VPN clients connect to using IPSEC over UDP. I am having periodic problems, especially with clients connecting through DSL, where they connect and immediately drop. Sometimes this is resolved by users updating their home router firmware. I'd like to issue a new client PCF file using IPSEC over TCP to see if that resolves the problems.
Can I have both running at once, and what do I need to add to the 2900 to enable this connectivty without breaking the existing clients? If the test is successful, I will migrate all users to the new configuration. This ISR is also used to support L2L connectivity for a handful of sites.
View 1 Replies
View Related
Jan 24, 2012
Have issue with iPhones and other smart phones being considered as excluded clients for the reason of Identity Theft? I am looking at one of my controllers and there are almost 680 excluded clients and most of them are smart phones and they are all being excluded for the same reason. It seems to be mostly iPhones but not all of the iPhones are experiencing the same behavior.
There is a mix of AP types (AP1010s, 1131s and 3502s) and also a mix of controller types (44XX and 3508). I have not been able to find any information to explain this behavior on the phone side and/or the wireless side.
View 3 Replies
View Related
Jul 21, 2011
I have more different client networks with one ssid, when a client is in another network gets an ip it still from the old network.
How can I to the wlc change this so he gets one right address. I have a Cisco WLC 5508 and 1262/1252 Access point
View 6 Replies
View Related
Dec 6, 2012
I have an issue where I cannot get clients to change SSID. I have two SSID, one WPA2 secure, one open guest. The secure is locally switched via Flexconnect and the guest is centrally switched. Both of them work. I have been able to test this and both work as intended. The problem is that once you connect to one of them, either secure or guest, you cannot then change to the other. The only way to change is to delete the dhcp entry from the scope and then do it.
Fast SSID change is enabled. I also have debug client output from when the client fails when you try to switch which I will include below. I also pulled some wireshark captures and those show me that the DHCP ack packets are trying to give the client the ip address from the incorrect/previous scope. So basically it's like FAST SSID change is not working and the client is never being disassociated properly??
I am totally stumped and even though the client will most likely not be switched between SSID that often I would still like to know the solution.
Cisco 5508 running 7.2.110.0
Cisco 3502 LWAPP
windows server 2008 dhcp server
[Code].....
View 5 Replies
View Related
Jun 9, 2013
How can i change AP host name for LAP via CLI? I got the error 'command is disabled' when i try to use command 'capwap ap hostname <>'
I try to disconnect LAP from WLC, factory default, clear all private-configure and clear all files in nvram: but not working (still got error). I cannot change via WLC GUI for CAP2602I series. I don't know why.
I checked bug CSCsy17745 but current in use software is fixed.
WLC 5508 with 7.3.101.0
View 6 Replies
View Related
Mar 25, 2012
I have a 5508 WLC and a series of 1140 APs. One small but annoying thing I have noticed is that the APs are pulling the correct time from the WLC but the timezone is off so they are showing time at 0 and not -8. The timezone is set and correct on the WLC.
View 9 Replies
View Related
Aug 3, 2011
I recently downloaded DDWRT to my DIR-615. I was trying to change my DIR-615 from a router to a client bridge but I was not able to get any internet connection on the device after I change the settings.
View 1 Replies
View Related
Mar 8, 2011
how to change a clinet as server for all the remaining clients in a local area network
View 3 Replies
View Related
Apr 20, 2011
We are using a CISCO1921-SEC (ISR) with IOS 15.1 and we configured a "crypto isakmp client configuration group". We can connect with the "Cisco System VPN Client Version 5.0.07.0410" via IPSec/UDP.
1. Is it possible to push routing informations to the System running the VPN Client ? A the moment all traffic is routed to the tunnel but we like only one route to the network permitted with "pool ..." in the "crypto isakmp client configuration group NAME" section.
2. We searched for changing from upd connection to tcp connection via special port. Is it possible with IOS 15.1 on the CISCO1921-SEC ? Is there something possible like "iskamp ipsec-over-tcp port 10000" ?
View 8 Replies
View Related
Apr 1, 2013
For access by external users on our network use all Cisco VPN Client, we have a VPN3000 Concentrator and a Cisco ACS 2.6 for authentication.We wanted to upgrade to the latest release of ACS 4, x .... you can set a password expiration for VPN Client? Or make sure that the remote user can change password?
View 2 Replies
View Related
Dec 30, 2012
I connect a copper SFP on port 2 of WLC 5508 to a ASA 5510 firewall. The links between two devices are down. Since ASA 5510 only support 100 full, how do I change port speed on port 2 to 100.
View 8 Replies
View Related
Sep 1, 2011
I have two 5508 and one WCS server, the controllers are in one mobility group.Now I have to change the management IP addresses on the controllers. What are the correct steps to do this?
View 9 Replies
View Related
Apr 12, 2011
I have two number of WLC model 5508 running IOS version 7.0.98.0. And One WLC in DMZ with the same model and IOS version. AP model is 1141. The Two WLCs are integrated with ACS. I have a SSID named EMployee. The DHCP for the users are configured in a seperate DHCP server and i have mapped this DHCP server IP to the interaface Employee.And this interface is mapped to the SSID as well.. But my client is not receiving the DHCP IP. Attached are the debug logs from the client.
View 9 Replies
View Related
Dec 25, 2011
i see there is an option to "allow password change" or "force password change" for guest roles in the NGS. But when i created a guest account using this guest role, after webauthentication , there is no prompt to change password. Is this the intended behaviour or is there anything else that i need to configure. Looking at it, i am not sure how the NGS would allow a "guest user" to really overwrite the password by allowing password change. ? is that not a security risk as well for the NGS ? my setup has 5508 anchor controller and NGS communicating via RADIUS.
View 7 Replies
View Related