We are planning to upgrade our current wireless access points (1200 series) to 3600 series. We would also like to add a wireless access controller to the design to centrally managed those Access Points.
Which Cisco Controller model support those 3600 APs efficiently?
I am trying to build a bridge between two of my access points. Both the access points connected to the wireless controller. I have changed the AP mode to "Bridge" after changing the power to custom.
The access points have both rebooted - but never "joined" the controller again. I have checked on the following pdf.
[URL]
One thing I can see - if I run a ping to the last IP.. every now and again I get a single response then it drops again. Via the console on the access point I can see it's getting to the controller, getting its name then reading something that caught my eye
" *Apr 4 11:41:24.451: %CAPWAP-3-ERRORLOG: Go join a capwap controller *Apr 4 11:41:19.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 57.24.10.53 peer_port: 5246
We have an MPLS (layer 3) network 4 offices and a Data center. We are planning to install about 10 Access Points(3600 series) per office and have a controller(5508 series) in the Data center.
Questions:
1- Is this design possible, in other words, just one controller centralizing all Access point traffic in one controller in the Data center?
2- We would like to accomplish this in two phases: A- install access points without controller handling authentication thru Microsoft IAS servers (current configuration with 1200 series) B- Deploy wireless Controller in Data center and start migrating orphan AP to Controllers one office at a time.
I know that the deployment guide for 2600/3600 access points states that if you have surveyed for a 3600 deployment, you don't need to survey again for a 2600 deployment. As the the 3600 is the higher specification model, is it safe to assume the reverse? I.e. a site survey carried out using 2600 access points is valid for a 3600 deployment, or is this too simplistic?
We are re-designing our wireless network and are navigating the security options.Are design will include a 5508 WLC and 3600 series APs. We plan on breaking our wireless out into four VLANS.Is 802.1x the standard for wireless authentication?What EAP flavor would you recommend for wireless? We will be supporting an environment with a variety of mobile devices (iPhone, iPad, HP tablets, Dell laptops, etc.). We will also be supporting wireless Cisco VoIP phones. Someone suggested choosing between EAP-Fast or EAP-PEAP, does this seem reasonable? Also, if we want to authenticate users using their AD account, we need to have NPS running on the AD server and use the radius protocol from client to server, is that right?
I'm currently assigned the task of purchasing new wireless access points, for our offices, at my workplace. We've previously been using "HP V-M200" access points, but we encoutered heavy throughput problems with these. During my tests of the network, I've seen these APs decrease their tranfer-rate to 30Mb, during file-transfer and ping-test. The issue here is concerning the transfer-rate from the Network Interface Card of my laptop to the wireless AP (did an iptraf while testing, and then noticed the 30Mb).
I noticed that the 3600 access point series will get an add-on module to support 802.11ac. This standard will support more than 1 GBit/s.But the 3600 series still do only have got one GBit port. Any extended information about 802.11ac in the upcoming Cisco portfolio?
I have problem setting up wireless repeater using Cisco 1242AG access points. Here is the setup and problem - The location has 2 1242AG APs and a WLC (2206) which will be used by PDAs. One of the AP was converted to Lightweight AP and is wired. This AP is up and working and PDAs are able to connect to it. There is 1 WLAN and it uses Local EAP (LEAP) as authentication. Layer-2 security is configured as WPA/WPA-2 with 802.1X authentication. Under AAA servers Local-EAP is enabled and a profile (with LEAP enabled) is used. Local users are configured for login. As said PDAs are able to connect and it is working without any problem.
WLC (LEAP with local users) -----> LAP ----> Repeater AP
But the 2nd AP has to be configured as repeater was configured to repeater mode (refering to the document) and was placed. The WLC can see a client (with APs MAC address) but it is probing. The AP is still Automonous AP. Also username and password is configured for authentication. But still the radio on the AP is not up and it is in reset state.
I recently installed a couple of Cisco Aironet 3600 Series Wireless Access Points at a remote site. While I was at the site everything seemed OK, The clients were able to get connected to the access points, the guest network worked fine, I could SSH into the access points, and I could ping them. The problem is when I went back to my home site I tried to SSH into the access points through an ASA IPSec VPN Tunnel and it couldn’t find it. When I try to ping the access points they “time out”. I can ping and connect all other addresses (via RDP, HTTP, etc..) on the same subnet which should rule out an access list problem. A couple of notes to be aware of:
The WAP’s have the Autonomous IOS installed (Version 15.2(2)JB) The WAP’s are connected to Dell PowerConnect 5724 (Not by choice.. We are a Cisco shop, these were already there and have plans this year to replace)
I can ping and SSH with Putty to the WAP’s from the local subnet I cannot ping or SSH from a remote subnet to the WAP’s. I can access all other IP’s and Computers from a remote subnet.
I have cisco 4402 Wireless LAN Controller with Cisco Access Point (AIR-LAP1252G-E-K9), everything is running smoothly.How come i use my Access Points without Wireless LAN Controller, is there any possibility then which AP model would be suitable?
We have a Cisco ASA5505 here that provides DHCP and routing to all our devices in our network. We also have a few other switches and wireless access points connected directly to the back of the ASA5505.For the past year all the wireless network signals has been working fine however starting last month, none of the wireless access points (we have three WRT54G) would allow proper connection (dropping connection, slow internet).I thought this maybe all THREE wireless access points are toast/bricked. So i went out and bought brand new Netgear WN604 and even with the new WAP i'm having same connectivity issues (really slow internet).When hardwired directly to the switches we get BLAZING fast internet & connectivity, no issues.
I called CISCO TAC and they automatically said "our ASA5505 is fine, it has to be your wireless access points" not working properly. I explained to them that i also purchased two brand new access points and they are doing the samething now, how can that be?
I've had some long standing issues that I've tried various things to fix. I have two WAP4410N access points set up at a smaller sister company. Wireless clients (laptops) are not receiving DHCP assigned IP addresses. If I type in an IP manually, it works fine.The sister company has a point to point T-1 connection to our main building. Our main building has the DHCP server. The router on the sister company end is configured as the DHCP relay.
I've upgraded the firmware three different times in the past to hopefully resolve the issue, but no luck. Just today, on one of the WAP4410N's, I upgraded to the 2.0.6.1 firmware (backing up config, reset to factory default, upgraded firmware, reset factory default again, restored config). After the first reset to factory defaults, the Access Point itself picked up a DHCP address from the server, and I verified this in the DHCP console on the server, so I know that the DHCP relay is working. However, my laptop would not get a DHCP address when connecting wirelessly through that access point. It is a Windows 7 Enterprise laptop. I also could not get a DHCP IP with my iPhone connecting to wireless, to rule out specific issues with just a laptop.I have the DHCP lease times for the subnet that these WAP4410Ns are on set to 2 hours.
To put a cherry on top, there is one laptop that stays in a lab area at all times, connecting wirelessly, and it DOES get a DHCP IP address (I can see in the DHCP console that the lease for this laptop continually renews as needed). I do remember on initial config when I couldn't get it to work, that I did a manual set up, gained connection, then switched it to DHCP...but that doesn't work for any other laptop.Why would the access points get DHCP address, but not anything connecting to the Access Points?
Using WISM with 7.0.220 and 1240 and 3502 APs. Just found that some of our 3502 AP didn't enbale their clean air and CDP when installed. This only happened on a few new APs. But the area these APs where we seem to have had a few problems with PCs. The only PCs effected where Computer On Wheels (COWs), Dell 780 Desktop with a Cisco Wireless Card.
Using an interl wireless card and others in thes areas worked.Once I enabled the CDP and Clean Air, the COWs worked.My question is with the APs not having CDP enabled, could this affect the cisco wirelss card in the COWs?
At my school we have a lot of access points, but sometimes the computer use the wrong access point. How can I solve that? Is there a program for switching access point?
BTW the halls are next to each other.The house and the 3 halls are in the vicinity however not attached together(i.e. wall to wall). The distance between the house and the first hall is approx 1 road width distance.ISP is Virgin and the internet was installed this year hence has the latest Virgin Home Hub.I am aware that i probably require 3 wireless access points (1 for each hall).The first wireless access point will need to be connected with a RJ-45 cable running from Home Hub. Can i connect the Wireless access points up together or do they all need to come from the ADSL hub?I am not sure what Wireless access points would be best and how to go about connecting this all up
I have New Pace 4111n Wireless Router that I got from AT&T and is setup on 1st floor, but its wireless range does not get me to 2nd floor. I also have the 2Wire wireless router from AT&T. In Addition, I have ethernet connection from level 1 to level 2 as well.
I was wondering if it is possible to have the Pace Wireless N router to work as modem and wireless access point, at the time use the 2Wire router to broadcast wireless and act as access point for 2nd floor.
IF its doable, how should the two be configured and connected.
I am trying to deploy several AIR-CAP3502E-E-K9 access points from a cisco 5508 wire lan contoller running ver 7 code. However iam having difficulty registering the access points with the WLC. The wlc is connect to a 3650 switch, and each access point is connected to a 2960 switch. A bad update was not allowing the access points to get their correct firmware.
I am having an issue here. I have 2x 5508 that each have 100 AP license and a little under 200 access points. Basically all of the access points are using DNS to connect to the primary controller that has the DNS entry. Basically half of my access points need to be on the second controller and in order to do this I have been using the high availability mode of each access point to push them to the second controller IP address.It was working perfectly until now. I have pushed 28 access points to the second controller and the last two I need to push at this location just keep resetting on the primary controller. Neither controller is configured as master controller.
I need an Wireless Access Point.Two SSID simultaneously in different IP Rangeit is with a simple browser GUI to manage? (not console and controller)a distance of about 50 (we can place multiple APs)N speedDual BandWhich series meets the above requirements?It can also Wireless-N Gigabit Router as 4400N, but it does not support Dual Band.
I have access points deployed across several buildings that each have a different IP scheme and their own T1 line. Is it possible to configure the 5508 controller to allow these access points to use the IP scheme assigned for that particular building or will dhcp always assign an IP address to the connecting client based on the IP scheme of the building that the controller resides in?
I need an official document from Cisco saying the APs models supported by the WLC 5508. Specially, I need to know if the AIR-AP1242AG-T-K9, converted from standalone, will be supported by the 5508.
We have a couple of Access Points which are not registering with WLC 2500. I followed-up on the two LAPs in the dorm. They were cycling through red, amber, green, indicating they were trying to join the controller but could not.
Recently, we have changed our IP Schema for the Wireless Devices and I believe there is an IP Conflict between APs and WLC. Earlier APs were cofigured with Static IP Address assignment, thus they can't change their IP Address.
how to reset the Access Point? I know we can hard reset them by pressing the Mode button manually.
Is there another way via which this can be done witout removing the Access Points from their enclosures?
I have multiple cisco 1130ag access point at one of my clients villa. The issue I am facing is when moving throughout the buildingthe laptop and smartphones will not switch between AP’s unless it loses its connection with its existing AP then it will see the other AP that is closer and connect to it.
For example, I start at one end of the building where it connects to AP#1 , if I then slowly go to another section of the villa, it it will not switch over to AP#2 until the signal is lost from AP1
I have following settings
AP's are Cisco 1130AG Single SSID with WEP Security
Situation: I have a store where there is already installed an AP1042N. In the back of the building there is no wireless signal. I want to install a second access point to extend my range;
At home, I use my laptop to connect to my wireless router without any trouble.But at: public libraries, Starbucks, hotel rooms... any free public wifi? All attempts to connect meets with the same error: "unable to connect to network" (preceded by the system hanging for a lengthy amount of time). Windows advises me to unplug the router and plug it back in, which obviously isn't an option.It's annoying to troubleshoot, because I'm only having the problem at times where I have no wired access (hence: no way to get to forums like these and look for an answer, update drivers, whatever).
I have a customer who wants wireless for his entire school campus. In the gymnasium, he says that there will be at lease 500 people with wireless devices at one time during a game or event. How many access points will I need to provision to accomplish this request? We are quoting the AIR-CAP3602I.
what I can do to accomplish my end goal of safe public wifi and configuration.I have 2 domain controllers (for redundancy) with a split scope for DHCP and they both serve DNS. I have VLAN 2 (management), VLAN 3 (Servers), VLAN 4 (Wired Access), VLAN 6 (Wireless Access) and VLAN 480 (Outside Wireless). I have setup INT VLANs for all of these on my main router (Cisco 3550) with the ip-helper address to the DC for all but the VLAN 480. All of this works great, and the scopes are setup just like the VLANs. (ie 192.168.2.0 (management) .3 (servers) etc.)I was wondering if there is a way to have VLAN 480 get DHCP from the cisco 3550 as a random address say, 172.16.0.0 255.255.248.0?
On a side note, I have seperate Wireless Access Points for the outside. (From a guy before me) I understand you can have a guest wireless setup on the newer Access Points, and trunk (cisco term) the 2 VLANs and seperate them out with Access Control Lists so they don't talk to each other, but I would rather just give the VLAN 480 it's own DHCP from the router.
I am trying to setup EAP-TLS authentication for my wireless access points, but I can't sign my ACS certificate with my enterprise CA certificate.If I generate a self-signed certificate on the ACS server, and try to sign it on my CA, I get an ASN tag error. It looks like that is because the ACS server is not in the certificate path of the CA server.If I generate a certificate on the CA and try to import it into ACS, I get a "unable to parse certificate" error. Is there a way to edit the Certificate Trust List in 5.2? It looks like that was possible with 4.2, but not with the latest version.
I am recently engaged by a client to convert his network to wireless network. My client operates in an office with 8 floors and also concrete walls. On making my research i came about your product Cisco AP500 Series Wireless Access Points.I will like to know if this product can work for my client perfectly or I will need to get other enhancement to make it work at its optimum.
I have 8 no. AIR-LAP1131AG-A-K9 and WLC 2112 Wireless LAN Controller,i configured the device and its working at deffent SSIDs but when i am trying to enable same SSID on all LAP it shows "AP on dupplicate SSID found and Layer 2 security found".
I would like to start setting up a Cisco Wireless Lan Controller 5508 with some Cisco 1262n AP's. How to start setting this to take advantage of having this wireless lan controller? I have a DHCP server, a Cisco 6509, and Cisco 3750g that connects the access points. I have Vlan 50 for wireless access points.
We have a Cisco 2500 WLC with 136 APs. Recently, we discovered eight APs that were not listed on the Wireless > Access Points > All AP list. These APs were once working and connected, but now they are no longer in the All AP list. I located one of these APs and found the green LED blinking. I power cycled the AP and it came back online with a solid green LED and was then registered on the All AP list. The All AP list will only show the connected APs. I would like to know if there is a method to show the APs that were once connected and are no longer registered so we can better identify when an AP is not working?
Access points 1142 controller 5508 running code 6.0.196.0 When you set the access point port speed with "config ap duplex full speed 1000 all" the access points leave the controlle and do not rejoin. I have had to reset the the access points manually with a power down and hold the reset button.