<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Wireless clients cannot RDP or SSH in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3772402#M139771</link>
    <description>&lt;P&gt;Interesting development, client has statically assigned himself an IP address in the second half of the /23 subnet and now he can RDP &amp;amp; SSH OK ie a 10.108.157.X address rather than a 10.108.156.X DHCP assigned address&lt;/P&gt;</description>
    <pubDate>Thu, 03 Jan 2019 17:56:30 GMT</pubDate>
    <dc:creator>NIGEL PAYNE</dc:creator>
    <dc:date>2019-01-03T17:56:30Z</dc:date>
    <item>
      <title>Wireless clients cannot RDP or SSH</title>
      <link>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3769511#M139767</link>
      <description>&lt;P&gt;I have a customer that is reporting the above issue from a&amp;nbsp;single site&lt;/P&gt;
&lt;P&gt;Wired clients at this site can RDP and SSH&lt;/P&gt;
&lt;P&gt;Clients at other sites, supported by the same WLC, can connect via RDP &amp;amp; SSH via WiFi&lt;/P&gt;
&lt;P&gt;There are no access lists on the WLC&lt;/P&gt;
&lt;P&gt;Is this far more likely to be a LAN/WAN/FW issue&lt;/P&gt;
&lt;P&gt;Is there any debug I can run on the WLC that might identify the issue or is this the realm of sniffing the LAN/monitoring the Firewall&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Jul 2021 16:38:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3769511#M139767</guid>
      <dc:creator>NIGEL PAYNE</dc:creator>
      <dc:date>2021-07-05T16:38:22Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless clients cannot RDP or SSH</title>
      <link>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3771279#M139768</link>
      <description>&lt;P&gt;the clients cannot start RDP or SSH? is the application installed on these clients?&lt;/P&gt;
&lt;P&gt;is the connection refused? then check if the subnet used on this site is allowed&amp;nbsp;at the destination.&lt;/P&gt;
&lt;P&gt;if other do basic steps like&lt;/P&gt;
&lt;P&gt;- ping default gateway from client&lt;/P&gt;
&lt;P&gt;- ping remote gateway from client&lt;/P&gt;
&lt;P&gt;- ping&amp;nbsp; ssh/rrdp&amp;nbsp;destination&lt;/P&gt;
&lt;P&gt;- traceroute to destination&lt;/P&gt;</description>
      <pubDate>Wed, 02 Jan 2019 10:31:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3771279#M139768</guid>
      <dc:creator>pieterh</dc:creator>
      <dc:date>2019-01-02T10:31:39Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless clients cannot RDP or SSH</title>
      <link>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3772323#M139769</link>
      <description>&lt;P&gt;Can you please check, SSH is blocked by access point/ wireless controller? by ACL.&lt;/P&gt;</description>
      <pubDate>Thu, 03 Jan 2019 16:15:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3772323#M139769</guid>
      <dc:creator>tech_gubby</dc:creator>
      <dc:date>2019-01-03T16:15:03Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless clients cannot RDP or SSH</title>
      <link>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3772400#M139770</link>
      <description>&lt;P&gt;There are no ACLs on the WLC&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 03 Jan 2019 17:53:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3772400#M139770</guid>
      <dc:creator>NIGEL PAYNE</dc:creator>
      <dc:date>2019-01-03T17:53:40Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless clients cannot RDP or SSH</title>
      <link>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3772402#M139771</link>
      <description>&lt;P&gt;Interesting development, client has statically assigned himself an IP address in the second half of the /23 subnet and now he can RDP &amp;amp; SSH OK ie a 10.108.157.X address rather than a 10.108.156.X DHCP assigned address&lt;/P&gt;</description>
      <pubDate>Thu, 03 Jan 2019 17:56:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3772402#M139771</guid>
      <dc:creator>NIGEL PAYNE</dc:creator>
      <dc:date>2019-01-03T17:56:30Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless clients cannot RDP or SSH</title>
      <link>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3772721#M139772</link>
      <description>&lt;P&gt;interesting lead&lt;/P&gt;
&lt;P&gt;is the AP involved in local mode (date delivered to lan centrally by WLC)?&lt;/P&gt;
&lt;P&gt;or flexconnect mode (data delivered by AP to local vlan)?&lt;/P&gt;
&lt;P&gt;in second case, then the subnet mask retrieved from the dhcp scope may not be correct, so it cannot reach the central site through the gateway&lt;/P&gt;</description>
      <pubDate>Fri, 04 Jan 2019 07:50:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3772721#M139772</guid>
      <dc:creator>pieterh</dc:creator>
      <dc:date>2019-01-04T07:50:38Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless clients cannot RDP or SSH</title>
      <link>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3774488#M139773</link>
      <description>&lt;P&gt;It turns out the fault description is not entirely accurate&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;The issue is not just for 10.108.156.xx addresses but affects the whole subnet due to a Cisco bug CSCvb78700 affecting the 4500 core switch&lt;/P&gt;
&lt;P&gt;Image 03.09.00.E is vulnerable to the following.....&lt;/P&gt;
&lt;P&gt;　&lt;/P&gt;
&lt;P&gt;Symptom:&lt;/P&gt;
&lt;P&gt;4500X unable to forward packets when they need to be unknown unicast flooded&lt;/P&gt;
&lt;P&gt;　&lt;/P&gt;
&lt;P&gt;Conditions:&lt;/P&gt;
&lt;P&gt;Destination device's mac is NOT present on the switch mac table, but the ARP is resolved&lt;/P&gt;
&lt;P&gt;　&lt;/P&gt;
&lt;P&gt;Workaround:&lt;/P&gt;
&lt;P&gt;There are 3 possible workarounds.&lt;/P&gt;
&lt;P&gt;　&lt;/P&gt;
&lt;P&gt;Workaround 1: Set the mac address aging timer to the same as the ARP timer. The default would be 14400 seconds for the arp timer. This forces the CPU to punt the traffic to cpu which uses software to forward the first packet to learn the mac.&lt;/P&gt;
&lt;P&gt;　&lt;/P&gt;
&lt;P&gt;Workaround 2: Set static entry for particular MAC address.&lt;/P&gt;
&lt;P&gt;　&lt;/P&gt;
&lt;P&gt;Workaround 3: This corrects the actual unicast floodset&lt;/P&gt;
&lt;P&gt;　&lt;/P&gt;
&lt;P&gt;Any event which triggers the review,&lt;/P&gt;
&lt;P&gt;1) like adding or removing a port from the affected VLAN&lt;/P&gt;
&lt;P&gt;2) shut/no shut of the port&lt;/P&gt;
&lt;P&gt;3) removing and adding the affected VLAN.&lt;/P&gt;
&lt;P&gt;4) System reload.&lt;/P&gt;
&lt;P&gt;　&lt;/P&gt;
&lt;P&gt;Further Problem Description:&lt;/P&gt;
&lt;P&gt;"show platform software floodset vlan &amp;lt;&amp;gt;" and "show platform hardware floodset vlan &amp;lt;&amp;gt;" will be out of sync for the Unicast floodset.&lt;/P&gt;
&lt;P&gt;　&lt;/P&gt;
&lt;P&gt;The software unicast floodset will have all the required ports in specified vlan under it.&lt;/P&gt;
&lt;P&gt;The hardware floodset may have no ports mapped or may have some ports missing.&lt;/P&gt;
&lt;P&gt;&lt;LI-WRAPPER&gt;&lt;/LI-WRAPPER&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Jan 2019 22:56:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-clients-cannot-rdp-or-ssh/m-p/3774488#M139773</guid>
      <dc:creator>NIGEL PAYNE</dc:creator>
      <dc:date>2019-01-07T22:56:37Z</dc:date>
    </item>
  </channel>
</rss>

