Cisco Wireless :: 2504 WLC / 1042 AP - Client Not Connecting
May 21, 2013
2504 WLC, 1042 AP's
I have my NPS server setup, Group Policy, Certs (RAS+IAS), DHCP option 43, DNS A record
If I look in the event viewer on NPS, it says
Log Name: Security Source: Microsoft- Windows -Security -Auditing Date: 5/22/2013 12:36:37 PM
Event ID: 6272Task Category: Network Policy Server Level: Information Keywords: Audit Success User: N/A Computer: mfs1.Mitchell. internal Description:Network Policy Server granted access to a user.
[Code] .....
But the laptop won't connect or get an IP.
View 30 Replies
ADVERTISEMENT
Jul 21, 2012
I ordered controller 2504 and will arrive soon. I want to know that after configure the initial setup of 2504 (i.e. AP manager , Management IPs etc) and defining the DHCP for AP. Will the 1042 lightweight AP will register with the controller automatically or i need to manually define the AP (MAC address) on WLC. and also whether the Option 43 and 60 are correctly defined?
Management Interface: 10.10.22.15
AP Manager Int: 10.10.22.16
ip dhcp pool WLAN103
network 10.10.3.0 255.255.255.0
[code]...
View 4 Replies
View Related
Mar 1, 2013
We have purchased Cisco 2504 Wireless Controller (One) and Ciscon 1042 Access Points (Five). At present I am going to use 3 access points only.I have attached a simple diagram of our office network. We have more than 30 VLANs configured in Core Switch, we are planning to give wifi access to only 3 VLANs.
1. VLAN 121 ( IP Segment - 10.52.121.0 /24)
2. VLAN 116 ( IP Segment - 10.52.116.0 /24)
3. VLAN 100 ( IP Segment - 192.168.100.0 /24) (Guest)
I would like to use LDAP or ACS for authentication purpose.
View 3 Replies
View Related
Sep 11, 2012
I am seeing a lot of client has joined profile XXX in the logs, and the customer has been saying the PC's are dropping constantly and take up to 5 minutes to reconnect.
I found a lot of Auth flood signiture hits, and disabled the signature as a temp test. I also had one WPA WIC error on one AP. The Auth sig was deteced on several AP's at one time.
Now the question, is it normal to see Clients joining like this, and does the auth flood disable the AP for a short period?
View 6 Replies
View Related
Apr 1, 2012
Is it possible to use this feature on WLC 2504 ? ( Passive client feature). I found just this note :" The passive client feature is supported on Cisco 5500 and Cisco 2100 Series Controllers. "
View 8 Replies
View Related
Feb 23, 2013
I recently setup a 2504 WLC that has two primary WLANs (internal and guest) which get their IP addresses from a central DHCP server using the local router's broadcast forwarding. Things seem to be working well for the internal wlan, but clients on the guest wlan don't seem to be getting IP addresses. If I give the client a static IP they are able to communicate across the wlan okay.
It is worth noting that I am using LAG between the controller and router and this guest wlan is really just a regular wlan (with PSK) that has an access-list applied to force it to the internet only. The access-list should be allowing dhcp requests through, but in any case, I removed the access-list and it made no difference.
Here is a debug client for a machine connected to the guest vlan (vlan 33). The internal wlan is on the 10.10.10.0/24 network (same as wired and same that the AP's are connected to) and the guest wlan is 10.33.0.0/16. I don't understand why I am seeing the dhcp request come from the internal vlan/ wlan first and it gets an IP address on this network. I then see a request on the guest wlan/vlan at which point it appears to get a valid IP address on the guest network (10.33.0.0), but the client never sees this. [code]
View 4 Replies
View Related
Jun 5, 2012
Is it mandatory to connect Cisco WLC 2504 to a Gigabit port ?? can we connect it to a fasternet port (100 mbps) ?
View 4 Replies
View Related
May 13, 2013
Management has decided to put in a Wireless network and want to keep it sepeate from rest of the network. I have been asked to scope out DSL/Cable internet connections.
I am not familiar with setting up 2504 with dsl router.
Any basic guides for setting up 2504 with a dsl? do i need any static ip addresses for this setup or dhcp lease provided to cable modem would do?
View 3 Replies
View Related
Aug 15, 2012
I connected my 2504 wlc with my 3750-x switch using port-channel. Later i came to know that LAG mode is not supported in 2500 series , so i removed port-channel from my core switch and connected all the 4 port in WLC to core without any port-channel. Is that recommended?
one more thing is , from WLC i can ping tha management interface on my core. but i cannot ping the default-gateway of my dynamically created interface on my WLC to core(core is the defauly gateway for all).
View 9 Replies
View Related
Jul 12, 2012
I have initially configured 2504 controller with necessary parameters. & we have LAP1131AG access Points. we have connected 2 Nos. of access points in network. we are getting Both AP connected with controller,Whenver i am trying to connect with this wireless network though SSID( currently, open authentication), laptop's not connecting with it. it shown error that " Windows was unable to connect to SSIDname "
View 4 Replies
View Related
Nov 28, 2012
I have a client with a WLC 2504 that wants to route "guest" users through a gateway appliance "radiusgateway.com" and all others through the network. It appears to me this would require the use of two fa ports on the WLC. One directly connected to the radiusgateway (which is connected to a switchport) and the other fa interface connected directly to a switchport bypassing the proxy server.
My issue is, "how do you segment the ssid traffic via the WLC". The interfaces cia the gui aren't that intelligent, there's an enable and logging drop down. Via the command line, I didn't see any methods of routing traffic.
View 1 Replies
View Related
Sep 20, 2012
Can 2 Aironet 1042's using WDS handoff a session between them without any other network hardware needed?
View 1 Replies
View Related
Mar 25, 2012
I'm trying to mesh a 1522 MAP through a 1042 RAP but this doen´t work. I get strange messages on the trap log:
1 Mon Mar 26 18:40:19 2012 Mesh child node 'f0:25:72:d9:69:6f' has changed its parent to mesh node '58:35:d9:c6:60:10' from mesh node '58:35:d9:c6:60:1f'. .. .
3 Mon Mar 26 18:37:13 2012 Mesh child node 'f0:25:72:d9:69:6f' has changed its parent to mesh node '58:35:d9:c6:60:10' from mesh node '58:35:d9:c6:60:10'. 4 Mon Mar 26 18:34:00 2012 Mesh node 'f0:25:72:d9:69:6f' has changed its parent 5 times in last one hour.
5 Mon Mar 26 18:34:00 2012 Mesh child node 'f0:25:72:d9:69:6f' has changed its parent to mesh node '58:35:d9:c6:60:10' from mesh node '58:35:d9:c6:60:1f'. 6 Mon Mar 26 18:33:44 2012 Mesh child node 'f0:25:72:d9:69:6f' is no longer associated with mesh node '58:35:d9:c6:60:10'.
[code]....
If i debug the 1042 i also see "... has 1 AES-CCMP TSC replays messages..."I have some 1522 MAP meshing through 1142 working fine on same 5508 controller version, i think there are few differences between 1042 an 1142.
View 1 Replies
View Related
Nov 27, 2011
I have an Aironet 1042 wireless AP if I create an SSID with no security it shows up as wireless N when I see it on a windows 7 laptop. As soon as I apply any security settings is shows up as G and not N. I just want to be able to authenticate with a Windows 2008 server running NPS - this works fine but I obviously want to connect at N speed and not G.
View 13 Replies
View Related
May 16, 2013
I have a Mesh architecture with 2112 WLC and 1042 APs I want just to know if I can connect one 1310 AP to the ethernet port of a mesh 1042 AP with ethernet bridging enabled.
View 4 Replies
View Related
Jul 11, 2012
i'm trying to enable WDS with authentication on a Cisco 1042 AP. The unit itself will be the WDS master and Radius server as well it will serve clients (not that many). The AP is running version 12.4(25d).After multiple tries of configurating, I keep getting the same issue: as soon as I connect to the SSID, I can enter the username and password but authentication fails - hence the message in my console:
%DOT11-7-AUTH_FAILED: Station xxxx.xxxx.xxxx Authentication failed. Every configuration I made was started from factory defaults of the AP.My current tests are with one AP only and if tests go successfully, I will add more infrastructure AP's to the setup.
hostname WDS_SERVER!logging rate-limit console 9enable secret 5 $1$FcRQ$T5MglV/0ybzKEfk3DoN/J0!aaa new-model!!aaa group server radius InfraAP server 192.168.28.34 auth-port 1812 acct-port 1813!aaa group server radius Clients server 192.168.28.34 auth-port 1812 acct-port 1813!aaa authentication login APlist group InfraAPaaa authentication login WirelessClients group Clients!aaa session-id common!dot11 ssid Test authentication open eap WirelessClients authentication key-management wpa version 2 cckm guest-mode!username Cisco password 7 14341B180F0B!bridge irb!interface Dot11Radio0 no ip address no ip route-cache ! encryption mode ciphers aes-ccm ! ssid Test ! antenna gain 0 station-role root bridge-group 1 bridge-group 1
[code]....
I've tried the configuration from the Cisco config guide as well but without any luck [URL]
View 5 Replies
View Related
Dec 14, 2011
What dbm or mw each of the power local settings are? I see on a 1042 from -1 thru 20 and am assuming 20dBm is 100mW.
OM-ess-lab-WLAN1(config-if)#power local ?
<-1 - 20> One of : -1 2 5 8 11 14 17 20 maximum Set power to allowed maximum
View 6 Replies
View Related
Jan 24, 2013
Do the 1042 Autonomous APs support GRE tunnels?
View 4 Replies
View Related
Apr 25, 2013
I got a new 1042 AP and connected it to the network. I have a 2504 contrller with 6 AP's already on it. I thought I could just plu in the new AP and it would show up in the AP group. Instead it shows up as a rouge AP. How do i get the new AP to show up in the default group?
View 24 Replies
View Related
Sep 18, 2012
There is WLAN with Nortel APs witha captive portal. We are migrating to a Cisco Solution and we have AP 1041 / 1042
How can I configure Captive Portal in the 1041/1042 APs
View 3 Replies
View Related
Apr 8, 2012
this note is from the 5508 controller config manual, does this apply to 1040 access points in a mesh network?
Note:The recommended power source for MAPs is either a power supply or power injector. PoE is not a recommended power source for MAPs.
View 2 Replies
View Related
Nov 29, 2012
I am not able to join 1042 wireless AP with 2106 controller, even i mention that controller ip is 192.168.200.5 it try to join with controller on 192.168.200.6 ip address always. following are the error logs i can see on console.
*Nov 30 19:50:20.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 192.168.200.6 peer_port: 5246
*Nov 30 19:50:20.001: %CAPWAP-5-CHANGED: CAPWAP changed state to
*Nov 30 19:50:21.435: %CAPWAP-5-DTLSREQSUCC: DTLS connection created sucessfully peer_ip: 192.168.200.6 peer_port: 5246
*Nov 30 19:50:21.436: %CAPWAP-5-SENDJOIN: sending Join Request to 192.168.200.6
*Nov 30 19:50:21.436: %CAPWAP-5-CHANGED: CAPWAP changed state to JOIN
[code]....
View 4 Replies
View Related
Jan 6, 2011
I would like to confirm if it is possible to downgrade AP 1042 from CAPWAP to autonomous? I want to buy the AP model AIR-LAP1042N-A-K9. But i don't sure if in the future it could support this feature.
View 9 Replies
View Related
Jun 11, 2012
I have a 5508 WLC licensed for 100 APs. I have 1 - 1042 LAP connected for testing. I have DHCP configured for the AP, and it gets an address of 192.168.254.100/24 - the controller's management interface is 192.168.254.99/24. I can see that the AP is getting an IP and I can ping it from the controller. However, I simply do not see the AP associating. I enabled capwap debiugging and watched the events, but I didn't see anything crazy that clued me in. What am I doing wrong?
The controller is v6.0.199.4
Every time I have set these up in the past they have been pretty straight forward. I haven't gotten too deep into the config on the WLC becuase I don't want to cause more issues.
View 2 Replies
View Related
Feb 13, 2013
I am trying to configure a Cisco 1042 autonomous AP and have ran into some problems. I require 2 broadcasted SSIDs that use WPA v2. When I only have 1 of the SSIDs enabled, I can authenticate with no problems. When I have both SSIDs enabled, I can connect to one of the networks, but not the other. I have verified the PSK multiple times, but the logs still show dot11-7-auth_failed. If I remove the working SSID and make no changes to the SSID for which authentication previously fails, everything works fine. Upon adding the other SSID back, I run into the same authentication issue.
View 3 Replies
View Related
Apr 6, 2012
I want buy an Access point which cover 300 Meter coverage Area.
Have any data sheet or link where I can found which AP coverage how many Area, Like 1042 Access Point cover how many Feet Space.
View 8 Replies
View Related
May 3, 2012
We are experiencing problems with Apple Ipads on a large scale network that we install and maintain, the Ipads seem to join the network with no problems (bit slower than laptops etc) but will then disconnect for no apparent reason at random intervals. We have ran laptops on the same AP's and in the same area and no similar probems occurred, we are using IOS Cisco 1041's and 1042's, we have seen one of the Ipads's sitting quite happily on a 1042 2,4ghz radio and then it disconnected and went to the 5ghz radio. We are getting similar disconnects on the single radio 1041.
View 13 Replies
View Related
Oct 25, 2012
In my class room, a lot of new Dell notebook (university purchased) all of those are the same model. Those came with 2.4&5Ghz WLAN NIC.
So, my WLC-based AP in that room which is Cisco 1x1042 & 1x1252 running in light-weight.This make huge congest on 5 Ghz. All of my 41 NB go for 5Hgz. And Zero client on 2.4Ghz radio, 2.4Ghz is not utilized at all.
I have read a lot of those related discussion. But I even can not find one that need to utilized BOTH of band. Most of those discussion talking to band-select which is "this feature only goes in one direction from the 2.4 GHz range to the 5 GHz not visa-versa."
My constrint is We can not touch the NB. Because this is university, much many diverse user loging in.
View 7 Replies
View Related
Mar 19, 2012
I have 1042 Light weight AP and i want to convert it to Autonomous mode . i dont find any particular image for this conversion ..when i try to find autonomous image for 1040 its showing "c1140-k9w7-tar.124-25d.JA1.tar"........can i use this image ?...
View 1 Replies
View Related
Apr 30, 2012
My access point 1042 series in light weight mode reloads itselft every time it booting, sometimes it boot succesfully.
View 2 Replies
View Related
Sep 5, 2012
tying to connect CSM client to CSM server (ver 4.0) and getting attached error message. The server is running, no errors reported while installation, all services are up and fine. I tried to install client locally on the server and connect it that way with no luck. CSM server runs on Win 2008, firewall disabled.
View 0 Replies
View Related
Apr 12, 2011
I am unable to connect to the vpn I set up on my ASA 5505 using the Cisco VPN Client on a Windows machine. The log of the vpn client and the config of the ASA 5505 are below.
LOG CISCO VPN CLIENT
Cisco Systems VPN Client Version 5.0.06.0160
Copyright (C) 1998-2009 Cisco Systems, Inc. All Rights Reserved.
[Code]......
View 2 Replies
View Related
Dec 8, 2012
I recently picked up a Billion 7800N home router to replace my old netgear which was dropping signal alot.I seem to have develpoed a problem accessing my work network through the VPN client. I am able to connect the Cisco VPN client to the network ok but I don't have any access to the server and exchange email. I have tested the client settings on my old Netgear and it is working fine. This points me to the direction of the router....I don't have any packet filtering on and I have set up profile from my fixed internal home ip to the work ip to allow any protocol and any port.I have also port forwarded 500, 4500 and 10000UDP to my internal ip address.
View 4 Replies
View Related