Cisco Wireless :: 1240AG / MAC Filters With Standalone APs?
Feb 24, 2013
I'm looking at creating WLANs using standalone APs for the first time. I know this can all be done with trivially a controller, but this project can't stretch to that...Can I use MAC filtering on standalone APs to restrict which clients associate?I think these will be 1240AG devices but I assume the answer is the same for all models?Can I mix MAC filtering with WEP/WPA? And use MAC filtering without encryption?
View 2 Replies
ADVERTISEMENT
Apr 29, 2012
We have a mix of 1231 and 1242 access points in an LWAPP environment. They are connected to WiSM controllers in our 6509's and are managed by a central WLC. Everything is running version 7.0.230. My question is can I apply MAC address filtering on a select group of AP's to restrict access to a specific SSID broadcast on these AP's without affecting other AP's also connected to the same WiSM?
View 3 Replies
View Related
Sep 16, 2012
I'm new on this site and having SLM2008 switches. I've been trying to solve the problem for quite a while, but so far I was unable to solve it. So here it is:
I'm trying to send IP TV from ADSL box (aka Free box) located in a small annexe of the house where the telephone line enters. Whole house is wired with 1Gb CAT6 cable. I'm using this wiring to get internet connectivity in different parts of the house and this works great. Now the idea was to create a separate VLAN on my 3 SLM2008 switches to get IP TV stream from ADSL box to the media box (also provided by ISP, aka Freebox HD). Different V LAN configs did not work for me: Free box HD would stuck on boot claiming it doesn't "see" the network. So then I've decided to go from simple things to more complex and removed the V LAN (came back to default config) and connected ADSL box with Free box HD with just one SLM2008 in between. Surprisingly it did not work! Same error on Free box HD! So I plugged the hub and started my Wire Shark to see what is going on.
First tried without the switch (just with a hub in the middle) and I saw successful connection:
1) Freebox HD send DHCP Discover
2) ADSL box responds with DHCP Offer
3) HD sends DHCP Request
4) ADSL issues a DHCP lease
Free box HD is ready to show any channel from ISP.
Secondly I plugged SLM2008 back and looked at traffic right after ADSL box: No DHCP packets seen at all! Then I moved hub next to Free Box HD and I saw it keep sending DHCP Discover every 30 seconds or so.... And it was not getting reply back.
So my conclusion is that SLM2008 for yet unknown reason would not let DHCP discover pass.... I've tried un managed Net Gear switch and *boom* Free box HD booted without a problem. I looked through SLM2008 settings and I have not found something relevant.
How to make my switch pass DHCP discover? If yes my next question would be how to configure V LAN on 3 switches to make it deliver IP TV to my TV set.
View 11 Replies
View Related
Nov 22, 2011
My company uses a pair of 5510 ASAs as the gateway to Internet. I once configured policy-map to filter certain webpages (facebook, twitter, ...etc) and they work fine. However nowdays those websites all support HTTPS. In the https the URL seems encrypted so can't do regex match... Is there anyway that I can still block those webpages?
Another two ways I can think of are
1. Block IPs (don't really want do this unless absolutely necessary)
2. Block DNS for the URL (however they can work around by setting static DNS entries)
View 6 Replies
View Related
Sep 30, 2012
I have two sets of local users who access internal networks vai the Anyconnect application on a Cisco ASA 5505.One user needs to access 1 ip address while about 7 users access abotu 4 addresses.
I have a group called xyz1 which currently has the one user in the connection profile. I guess to reaffirm my thought, If I create another connection entry called xyz2, can I assign the other 7 or 8 users to it?
If I can do this, how can I ensure that each connection entry only has access to specific IP addresses on the internal network?
View 1 Replies
View Related
Mar 29, 2012
What are the pros and cons of 2.5 Ghz and 5Ghz spectrum ,My customer wants 1240AG and the antenna for those are either 2.5 GHz or 5GHZ and wants to know which spectrum is better for him to use
View 2 Replies
View Related
Aug 20, 2012
Cisco 1240AG converting to WEP to WPA
Access Point Model: Cisco 1240AG
System Software Filename: c1240-k9w7-tar.123-7.JA5
System Software Version: 12.3(7)JA5
Bootloader Version: 12.3(7)JA1
Access Point Model: Cisco 1131AG
Software: Cisco Aironet Desktop Utility 2.1.02
After converting encryption from WEP to WPA in a Cisco 1240AG in personal mode with an SSID name of example1 and Cisco 1131AG access point in personal mode with an ssid of example2; both with the same wpa passphrase, I created a new profile on the Cisco Aironet Desktop Utility with a new profile name as well as a WPA passphrase, but the desktop utility will only connect to the access point if one network name, example1 or example2, is entered.
View 18 Replies
View Related
Feb 28, 2013
I have a 1240Ag. Earlier I loaded a startup config from a backup. The AP came back up - I can SSH into it, but when I try to access the web management page it says "IE cannot load the webpage".
View 3 Replies
View Related
Mar 18, 2013
Is it possible to configure two SSIDs with same valn (default VLAN) with same IP addressing subnet on an autonomous 1240AG access point ios ver is 12.4 21a ja1.
View 3 Replies
View Related
Sep 28, 2012
For 2 year now we have been running aironet 1240ag access points throught our warehouse. We use a telnet session on our handheld scanners to connect to our database on the main server.This last week our scanners started getting dropped from the access points serveral times throught the day and often would continue to get dropped at 1 minute intervals for several minutes at a time. This appears to be happening on all of our access points and is affecting all of our scanners but not at the same time.Each time a clinet is dropped we get the following event log on the AP.
Sep 29 11:57:14.807 -0500 Warning Packet to client 0c77.1a3a.6ff7 reached max retries, removing the client
Sep 29 11:57:14.800 -0500 Information Interface Dot11Radio0, Deauthenticating Station 0c77.1a3a.6ff7 Reason: Previous authentication no longer valid
All the AP's are setup the same with the below config
!! Last configuration change at 14:24:18 -0500 Sat Sep 29 2012 by Cisco! NVRAM config last updated at 14:24:18 -0500 Sat Sep 29 2012 by Cisco!version 12.4no service padservice timestamps debug datetime msecservice timestamps log datetime msec localtime show-timezoneservice password-encryption!hostname AP_10!enable secret 5 $1$lcac$OO/IqOlgR2.TPP/BFg7nX1!no aaa new-modelclock timezone -0500 -5!!dot11 syslogdot11 activity-timeout unknown default 128dot11 activity-timeout client default 128dot11 activity-timeout repeater default 128dot11 activity-timeout workgroup-bridge default 128dot11 activity-timeout bridge default 128!dot11 ssid jefferson377 authentication open guest-mode infrastructure-ssid optional!power inline negotiation injector 9caf.ca01.d818power inline negotiation prestandard source!!username Cisco privilege 15
[code]....
View 9 Replies
View Related
Apr 18, 2012
how is the IP configuration for this Fast Ethernet F0.
This is because usually we only assign IP to the BVI interface. Is it after that, the Fast Ethernet F0 automatically also be assigned the same IP?
As such, when goto the Fast Ethernet F0 by CLI, by using no shut then this will Enable the Fast Ethernet Port?
View 4 Replies
View Related
Jul 1, 2012
I am having access point 1240AG and planning to deploy ISE as a exteral radius server. I would like to know how different authorization policy need to configure in AP/ISE. Whether I can use named ACL or VLANs (CoA) as a enforcement types without use of WLC. If yes then how?
View 10 Replies
View Related
Mar 19, 2012
I am setting and configure the Cisco AP 1240AG with 5GHz External Antenna extension. The whole product is called iWap. The problem now is that the wireless signal amplitude only can reach 3 bars instaed of ful 5 bars.
Few questions I have for this setup and configuration :
1. What is the default or original frequency of antenna of Cisco AP1240AG? Can a 5GHz antenna work with the AP 1240AG whereby it is run with 802.11a and 802.11g?
2. If 5GHz antenna can work with 802.11a or 802.11g, what is the setting or configuration needed to be done at the Cisco 1240AG? Or, no setting or configuration needed because it will automatically work by default?
View 6 Replies
View Related
Apr 29, 2013
We are using an Aironet 1240AG series wireless AP here to connect handheld scanners. They work fine on WPA. However, when we switch to WPA2, they often lose connection. We have tested on 802.11g and a bands, with various encryption types (TKIP, AES, TKIP/AES). Also, how can I update the outdated firmware without signing up for a service contract?
View 3 Replies
View Related
Apr 8, 2013
I have a question regarding cisco aironet 1240ag AP.
1st - Does this devices has a firmware ? So I can update a firmware ? or is an image file for IOS software ?
2nd - Which wireless controller I can use to handle multiple aironet 1240ag AP's ?
3rd - The controller has the ability to create temporally guest password ?
View 5 Replies
View Related
Jun 1, 2011
I have Aironet 1240AG and the 2 laptops connected to same SSID. Unable to can ping each other but can ping/browse server on wired.
Below are my config:
Current configuration : 2646 bytes!version 12.4no service padservice timestamps debug datetime msecservice timestamps log datetime msecservice password-encryption!hostname AP2!enable secret 5 $1$7EVQ$2FN7ewjcrwKCICIfmFgCO.!no
[Code].....
View 2 Replies
View Related
Mar 12, 2012
They are 8 APs Cisco 1240AG installed inside our warehouse, on the other hand we had some places with poor signal level -82dbm so we put two router linksys wrt54g.
The Cisco APs have 2.2dbi omnidirec antennas and they are configured with the same SSID on different channels (1,6,11) and max tx, rx (100mw).
When we check the signal level we realized that we have more signal from the linksy than the Cisco?
View 2 Replies
View Related
Jan 23, 2013
I work as Network administrator in a building products plant at Poland. We had core switch HP Procurve 6200yl with 5 vlans, and 11 Aironet 1240AG Access points without controller. I have a problem with create 2 wi-fi VLANs on the Cisco AP's and linked it with HP switch.
VLANs on the switch:
1 - Default (for office sutff) - working great,
2 - Production (for production stuff) - working great,
3 - Inter (for Router's) - working great,
4 - WMS - i need configure it as wireless,
5 - WiFi with Radius - i need configure it as wireless.VLANS on the Access Points:
4 - WMS - for warehouse terminals - WPA2,
5 - WiFi for office stuff with Radius.
I'm easily able to get it running a single SSID (non-VLAN) network and confirm that I can use that network fine. However, I need to set up these 2 VLANs. I can connect to it via telnet if that'll let me program it faster.
View 2 Replies
View Related
May 8, 2007
I am an IT professional that is installing my first extended range wireless AP in my companies warehouse. I am very excited!
Now I have set up many a linksys and repeater wireless networks, so when I was looking into the Aironet 1240AG I thought ?No Problem!?
And at first, it is not!
I have the AP and antenna set up here in my office before I take it out and mount it in the warehouse. And I can get connected to it, no security for now, no filters, I just want to connect and make it work.
I stay connected for maybe 3 minutes, I can get to the internet, I can ping all my servers. Full connectivity. But then for no reason the connection fails and I cannot reconnect.
The error I get in the log is
Interface Dot11Radio0, Deauthenticating Station 0006.2510.bbe3 Reason: Previous authentication no longer valid
So strange! So I have reset the AP to factory defaults and then set the SSID, and I can connect, again for a second, then nothing.
I have tried with multiple wireless cards, even laptops. Thinking maybe the problem was on the computer side.
View 12 Replies
View Related
Nov 8, 2012
I have an Aironet 1240AG. I resides inside a building with its antenna placed on the outside of the building. In direct line of site, I have a light pole to which I could attach another wireless access point to extend my wireless network. This access point would have to be "rugged". Also, it would have to be able to be bridged to the current access point. In reviewing outdoor wireless access points, it appears that the 1552 is the way to go.
View 3 Replies
View Related
Aug 19, 2012
I'm with problem to get IP by dhcp in my network wireless on AP 1240ag. I wish that my AP has two VLANs and each VLAN issue IP by DHCP.My DHCP server is a Windows Server 2008 for VLAN 1 and a Linux for VLAN 12.
The AP it's connected by Trunk to a Switch that has the two DHCP Server each one on port Vlan.but my clients it isn't able get IP address by any each one DHCP server. it's work only with static IP. there is more anything to do in my configuration?
View 4 Replies
View Related
Jul 5, 2011
I have a Brand new AP that was bought for a site which has a controller, however it was never installed. I was wondering can you downgrade this AP to make it work in stand alone mode as a normal AP?
View 1 Replies
View Related
Jun 6, 2012
One of Cisco Wireless AP 1242 installed in my premises restarts itself; AP is getting power from Catalyst 2960 POE. I am using multiple SSID on this AP. I have issued the show tech-support. I have seen below in tech-support System was restarted by unknown reload cause - reason ptr 0xF, PC 0x46FEB8, address 0x0? what could be the reason of restarting of AP. AP is in production since 1 year and it restarts seldom.
View 2 Replies
View Related
Oct 8, 2010
I have an extra 521G standalone access point. My network jack is on the other side of the wall...so I am curious to see if I could use this access point as a bridge of some sorts to join my wireless network (on a UC520W-8U-4FXO-K9) and use the Ethernet jack on the AP as a bridge of some sorts so that I can connect my IP phone and laptop behind it. I've set up standalone AP's like this as base stations before, but I've never tried bridging and haven't had much luck just playing around with it.
View 2 Replies
View Related
Sep 18, 2011
How do you configure for standalone use. no documentation.
View 1 Replies
View Related
Dec 19, 2010
I just installed an Aironet 1140 to replace a Netgear ProSafe access point that I had in my network prior. I'm having one issue that I can't figure out though. None of the client PCs can establish a connection to an external (over the internet) VPN server while on the Aironet wireless. If i unplug the AP and plug a PC into the same port that normall feeds the Aironet I can VPN just fine.
Is there any "VPN Passthrough" option that needs to be enabled somewhere on the 1140 that is blocking this traffic for some reason?
i'm running the following IOS BOOTLDR: C1140 Boot Loader (C1140-BOOT-M) Version 12.4(18a)JA3, RELEASE SOFTWARE (fc1) and I've included my running config below
Current configuration : 2092 bytes!version 12.4no service padservice timestamps debug datetime msecservice timestamps log datetime msecservice password-encryption!hostname ap!enable secret 5 [omitted]!no aaa new-model!!dot11 syslog!dot11 ssid MetroC authentication open authentication key-management wpa guest-mode mbssid guest-mode wpa-psk ascii 7 [omitted]!!!username Cisco password 7 [omitted]!!bridge irb!!interface Dot11Radio0 no ip address no ip route-cache ! encryption mode ciphers aes-ccm ! ssid MetroC ! antenna gain 0 speed basic-1.0 basic-2.0 basic-5.5 basic-11.0 basic-6.0 basic-9.0 basic-12.0 basic-18.0 basic-24.0 basic-36.0 basic-48.0 basic-54.0 m0. m1. m2. m3. m4. m5. m6. m7. m8. m9. m10. m11. m12. m13. m14. m15. station-role root bridge-group 1 bridge-group 1 subscriber-loop-control bridge-group 1 port-protected bridge-group 1 block-unknown-source no bridge-group 1 source-learning no bridge-group 1 unicast-flooding bridge-group 1 spanning-disabled!interface Dot11Radio1 no ip address no ip route-cache ! encryption mode ciphers aes-ccm ! ssid MetroC ! antenna gain 0 no dfs band block speed basic-6.0 basic-9.0 basic-12.0 basic-18.0 basic-24.0 basic-36.0 basic-48.0 basic-54.0 m0. m1. m2. m3. m4. m5. m6. m7. m8. m9. m10. m11. m12. m13. m14. m15. channel width 40-above channel dfs station-role root bridge-group 1 bridge-group 1 subscriber-loop-control bridge-group 1 port-protected bridge-group 1 block-unknown-source no bridge-group 1 source-learning no bridge-group 1 unicast-flooding bridge-group 1 spanning-disabled!interface GigabitEthernet0 no ip address no ip route-cache duplex auto speed auto no keepalive bridge-group 1 no bridge-group 1 source-learning bridge-group 1 spanning-disabled!interface BVI1 ip address 192.168.1.3 255.255.255.0 no ip route-cache!ip http serverno ip http secure-serverip http help-path [URL]
View 9 Replies
View Related
Jun 11, 2013
I have a AIR-SAP-1602i-k9 Aironet. I cannot find any information on the Cisco site on how to configure the Aironet without a controller. I assumed a standalone meant I could just login.
I tried seeing if it would pull a DHCP address on my network but it didnt.
View 1 Replies
View Related
Mar 18, 2013
It`s possible configure aironet 1600 standalone without WLC and without 2 SSID? ¿What's default IP address o process to configuration?
View 3 Replies
View Related
Feb 18, 2013
I have to set up the AP in a standalone mode to support voice and data traffic through the wireless network. for this, i was trying to look for the config guide so i know how to go about it, but all the doc was refering to controller based setup. i followed this link URL
I have never worked on wireless in a standalone mode, so this is the first time i will be doing it.
View 22 Replies
View Related
Dec 28, 2011
For some time now I have been looking for a good business class wireless AP. I've narrowed it down to the Cisco Aironet 1140 standalone (no controller). I'm no stranger to Cisco products. I've worked with their routers, switches and Pix/ASA firewalls. However, I've not had the opportunity to work with their wireless AP's. Anyone using these AP's (more specifically the 1140 standalone), can provide information on the reliability and security of these devices. Some of the features I would like to have like Radio Mgmt. and Rogue AP Detection I see are only available on the controller based units. Does not having these features on the standalone unit reduce its reliability and security? This is for a small business and the budget does not allow to drop for a controller at this time.
View 7 Replies
View Related
May 29, 2013
I'm about to purchase 2 Aironet APs, either 1140 or 1160 Series for a small Business. I know too little about the AP installation. How to let both APs works in Roaming Mode so that users can move freely within the site without having to drop and connect from one AP to the other.
View 4 Replies
View Related
Jun 9, 2013
We have this access point AIR-AP1231G-A-K9 for mobile users. current version is c1200-k9w7-mx.123-7.JA4. Sometimes users are able to associate but not getting IP address from dhcp. It shows 0.0.0.0 for the particular client.
View 2 Replies
View Related
Jan 23, 2012
for some reason our wlan-controllers were build up to be standalone instead of beeing one mobility-group. I would like to change this in order to use all features of HA.
let me describe our scenario: two WLCs 5508 running SW ver. 6
- same subnet
- both are running in master controller mode
- different hostnames, ip-addresses, etc
- all settings for WLANs and AP-groups (exept the APs themselves in these groups) are the same
- in total at this moment we are running around 100 LAPs configured one half on WLC#1, the other half on WLC#2
I don't know exactly why, but when that setting was installed, someone already configuredHA for each accesspoint... e.g.:
- AP#1 primary WLC#1, secondary WLC#2
- AP#2 primary WLC#2, secondary WLC#1 but without WLC#2 knowing the configuration for AP#1 it makes no sense, correct?
so my question is: how should I do the migration in the best way?
is it easy as:
- disabling master controller mode on WLC#2
- configuring both WLCs into one mobility group
--> WLCs are negotiating their configurations for the APs
View 5 Replies
View Related