<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to setup CCKM in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046949#M218284</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Steve,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As an update to my own post, I remember having read somewhere that if we implement CCKM, having the AAA server handing out the vlan id is not allowed/supported, so I disabled that option. That seems to have made things better...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anyway, we are not completely satisfied with our testing. Is there a command we can run to see if CCKM is working? I remember having read about a command showing the CCKM id assigned to the client?? But I do not remember the exact syntax. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks once again for your time.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 25 Oct 2012 16:08:10 GMT</pubDate>
    <dc:creator>BJCiscoUser</dc:creator>
    <dc:date>2012-10-25T16:08:10Z</dc:date>
    <item>
      <title>How to setup CCKM</title>
      <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046941#M218276</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are rolling out 20+ APs (1042N-E-K9) and one of the VLANs is used for VoIP. We would like to enable CCKM, but are a little unsure of how to go about it after reading through many of all the documentation. We have successfully enabled one AP to serve as a WDS master, and APs shows up as registered. Below are some of our questions&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1. On the AP, what should be the settings for the SSID on which we want to enable CCKM? &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; a. What Encryption Modes are allowed - can we use TKIP or AES-CCMP, or are we obliged to use CKIP-CMIC?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; b. For the SSID, can we enable both CCKM and WPA? And is CCKM with WPA2 supported (chipper AES-CCMP)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; c. For AP Authentication, what Method should we chose? TSL, FAST, or is any of them allowed?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2. On the client machines (we are testing with a Lenovo laptop, ccx c4, and Intel pro-tools):&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; a. We understand that we can choose EAP-TSL for the clients and that should be ok, is that correct?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; b. Do we need to use EAP-FAST or LEAP? And if that is the case, then it seems that MS NPS server as RADIUS is not supported…&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We would very much appreciate any help with the above questions, as mentioned we read through the various documentation, but we are still unclear on the above mentioned points.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Greetings!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Erik-Benjamin Povlsen&lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 05:54:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046941#M218276</guid>
      <dc:creator>BJCiscoUser</dc:creator>
      <dc:date>2021-07-04T05:54:37Z</dc:date>
    </item>
    <item>
      <title>How to setup CCKM</title>
      <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046942#M218277</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Erik, welcome to support forums!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1.) For CCKM and CCXv4 you should use WPA/TKIP/CCKM.&amp;nbsp; CCXv5 supports WPA2/AES/CCKM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2.)TLS or PEAP will work fine.&amp;nbsp; You do not have to do FAST or LEAP.&amp;nbsp; IMHO LEAP needs to go the way of WEP and the dodo.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH, &lt;BR /&gt;Steve &lt;BR /&gt; &lt;BR /&gt;------------------------------------------------------------------------------------------------ &lt;BR /&gt;Please remember to rate useful posts, and mark questions as answered&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 24 Oct 2012 13:49:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046942#M218277</guid>
      <dc:creator>Stephen Rodriguez</dc:creator>
      <dc:date>2012-10-24T13:49:45Z</dc:date>
    </item>
    <item>
      <title>How to setup CCKM</title>
      <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046943#M218278</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Stephen,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thank you for taking time to answer our questions!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So just to be sure of our setup then, using CCXv4, something like this will be ok?..:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;dot11 ssid VOIP&lt;BR /&gt;vlan 5&lt;BR /&gt;authentication open eap eap_methods &lt;BR /&gt;authentication network-eap eap_methods &lt;BR /&gt;authentication key-management wpa cckm&lt;BR /&gt;dot1x eap profile TLS&lt;BR /&gt;mobility network-id 5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface Dot11Radio0&lt;BR /&gt;no ip address&lt;BR /&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;encryption vlan 5 mode ciphers tkip&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And then for the client setup just simple EAP-TSL - with certificates...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again for helping us out!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Erik-Benjamin Povlsen&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 24 Oct 2012 14:16:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046943#M218278</guid>
      <dc:creator>BJCiscoUser</dc:creator>
      <dc:date>2012-10-24T14:16:20Z</dc:date>
    </item>
    <item>
      <title>How to setup CCKM</title>
      <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046944#M218279</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;dot1x eap profile TLS&lt;/P&gt;&lt;P&gt;mobility network-id 5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the above is not needed.&amp;nbsp; that dot1x profile is for if you were using the radio as a bridge and wanted to do 802.1x.&amp;nbsp; WDS goes out over the ethernet to find the 'master' and register/join there for key management.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the mobility network-id command is for WLSM.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;but other than those two things that should be removed, the rest of the config looks fine.&amp;nbsp; Just make sure you define the subinterfaces on the radio and fastethernet interfaces.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH, &lt;BR /&gt;Steve &lt;BR /&gt; &lt;BR /&gt;------------------------------------------------------------------------------------------------ &lt;BR /&gt;Please remember to rate useful posts, and mark questions as answered&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 24 Oct 2012 14:25:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046944#M218279</guid>
      <dc:creator>Stephen Rodriguez</dc:creator>
      <dc:date>2012-10-24T14:25:06Z</dc:date>
    </item>
    <item>
      <title>How to setup CCKM</title>
      <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046945#M218280</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you very much, this solved our issues.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Very nice support!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Erik-Benjamin Povlsen&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 24 Oct 2012 14:33:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046945#M218280</guid>
      <dc:creator>BJCiscoUser</dc:creator>
      <dc:date>2012-10-24T14:33:18Z</dc:date>
    </item>
    <item>
      <title>Re: How to setup CCKM</title>
      <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046946#M218281</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi again Steve,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yesterday we tried the new configuration per your suggestions. But the fast roaming (CCKM) is not working.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are not exactly sure of what we have wrong in our configuration.&lt;/P&gt;&lt;P&gt;I drop in here two configuration examples, one for our WDS master, and one for a client AP - all test configurations. We would appreciate if you would have an idea of what we have wrong here. Thanks in advance!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;## AP-WDS MASTER CONFIG ##&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;version 12.4&lt;/P&gt;&lt;P&gt;no service pad&lt;/P&gt;&lt;P&gt;service timestamps debug datetime msec&lt;/P&gt;&lt;P&gt;service timestamps log datetime msec&lt;/P&gt;&lt;P&gt;service password-encryption&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;hostname AP2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;logging rate-limit console 9&lt;/P&gt;&lt;P&gt;enable secret MyEnableSecret&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_eap&lt;/P&gt;&lt;P&gt;server 10.12.12.12 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_mac&lt;/P&gt;&lt;P&gt;server 10.12.12.12 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_acct&lt;/P&gt;&lt;P&gt;server 10.12.12.12 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_admin&lt;/P&gt;&lt;P&gt;server 10.12.12.12 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server tacacs+ tac_admin&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_pmip&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius dummy&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius infra_devices&lt;/P&gt;&lt;P&gt;server 10.12.1.109 auth-port 1812 acct-port 1813&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius client_devices&lt;/P&gt;&lt;P&gt;server 10.12.12.12 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa authentication login eap_methods group rad_eap&lt;/P&gt;&lt;P&gt;aaa authentication login mac_methods local&lt;/P&gt;&lt;P&gt;aaa authentication login method_infra_devices group infra_devices&lt;/P&gt;&lt;P&gt;aaa authentication login method_client_devices group client_devices&lt;/P&gt;&lt;P&gt;aaa authorization exec default local &lt;/P&gt;&lt;P&gt;aaa accounting network acct_methods start-stop group rad_acct&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa session-id common&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 syslog&lt;/P&gt;&lt;P&gt;dot11 vlan-name Network1 vlan 7&lt;/P&gt;&lt;P&gt;dot11 vlan-name Network2 vlan 6&lt;/P&gt;&lt;P&gt;dot11 vlan-name Network3 vlan 5&lt;/P&gt;&lt;P&gt;dot11 vlan-name Network4 vlan 4&lt;/P&gt;&lt;P&gt;dot11 vlan-name VoIP vlan 3&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid Network1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; vlan 7&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication open &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication key-management wpa version 2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; guest-mode&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; wpa-psk ascii MyWPAGuestKey&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid Network2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; vlan 6&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication open eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication network-eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication key-management wpa cckm&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid VOIP&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; vlan 3&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication open eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication network-eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication key-management wpa cckm&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid Network4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; vlan 4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication open eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication network-eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication key-management wpa version 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;eap profile TLS&lt;/P&gt;&lt;P&gt;method tls&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;eap profile FAST&lt;/P&gt;&lt;P&gt;method fast&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;username Me privilege 15 password 0 MySpecialPassword&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;policy-map VoIPTraffic&lt;/P&gt;&lt;P&gt;class class-default&lt;/P&gt;&lt;P&gt;&amp;nbsp; set cos 6&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;bridge irb&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0&lt;/P&gt;&lt;P&gt;no ip address&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;encryption vlan 7 mode ciphers aes-ccm &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;encryption vlan 6 mode ciphers tkip&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;encryption vlan 5 mode ciphers aes-ccm &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;encryption vlan 3 mode ciphers tkip &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;encryption vlan 4 mode ciphers aes-ccm&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ssid Network5&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ssid Network4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ssid VOIP&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ssid Network6&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;antenna gain 0&lt;/P&gt;&lt;P&gt;station-role root&lt;/P&gt;&lt;P&gt;bridge-group 1&lt;/P&gt;&lt;P&gt;bridge-group 1 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 1 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 1 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0.7&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 7&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 7&lt;/P&gt;&lt;P&gt;bridge-group 7 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 7 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 7 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 7 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 7 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0.4&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 4&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 4&lt;/P&gt;&lt;P&gt;bridge-group 4 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 4 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 4 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 4 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 4 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0.6&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 6&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 6&lt;/P&gt;&lt;P&gt;bridge-group 6 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 6 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 6 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 6 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 6 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0.3&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 3&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 3&lt;/P&gt;&lt;P&gt;bridge-group 3 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 3 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 3 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 3 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 3 spanning-disabled&lt;/P&gt;&lt;P&gt;service-policy input VoIPTraffic&lt;/P&gt;&lt;P&gt;service-policy output VoIPTraffic&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0.7&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 7&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 7&lt;/P&gt;&lt;P&gt;bridge-group 7 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 7 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 7 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 7 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 7 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio1&lt;/P&gt;&lt;P&gt;no ip address&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;shutdown&lt;/P&gt;&lt;P&gt;antenna gain 0&lt;/P&gt;&lt;P&gt;no dfs band block&lt;/P&gt;&lt;P&gt;channel dfs&lt;/P&gt;&lt;P&gt;station-role root&lt;/P&gt;&lt;P&gt;bridge-group 1&lt;/P&gt;&lt;P&gt;bridge-group 1 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 1 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 1 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0&lt;/P&gt;&lt;P&gt;no ip address&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;duplex auto&lt;/P&gt;&lt;P&gt;speed auto&lt;/P&gt;&lt;P&gt;no keepalive&lt;/P&gt;&lt;P&gt;bridge-group 1&lt;/P&gt;&lt;P&gt;no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0.7&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 7&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 7&lt;/P&gt;&lt;P&gt;no bridge-group 7 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 7 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0.4&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 4&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 4&lt;/P&gt;&lt;P&gt;no bridge-group 4 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 4 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0.6&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 6&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 6&lt;/P&gt;&lt;P&gt;no bridge-group 6 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 6 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0.3&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 3&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 3&lt;/P&gt;&lt;P&gt;no bridge-group 3 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 3 spanning-disabled&lt;/P&gt;&lt;P&gt;service-policy input VoIPTraffic&lt;/P&gt;&lt;P&gt;service-policy output VoIPTraffic&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0.5&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 5&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 5&lt;/P&gt;&lt;P&gt;no bridge-group 5 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 5 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface BVI1&lt;/P&gt;&lt;P&gt;ip address 10.12.1.109 255.255.255.0&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip default-gateway 10.12.1.1&lt;/P&gt;&lt;P&gt;ip http server&lt;/P&gt;&lt;P&gt;no ip http secure-server&lt;/P&gt;&lt;P&gt;ip http help-path h&lt;A href="http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag" rel="nofollow"&gt;ttp://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip radius source-interface BVI1 &lt;/P&gt;&lt;P&gt;radius-server attribute 32 include-in-access-req format %h&lt;/P&gt;&lt;P&gt;radius-server host 10.12.12.12 auth-port 1645 acct-port 1646 key NPSKey109&lt;/P&gt;&lt;P&gt;radius-server vsa send accounting&lt;/P&gt;&lt;P&gt;bridge 1 route ip&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;radius-server local&lt;/P&gt;&lt;P&gt;no authentication eapfast&lt;/P&gt;&lt;P&gt;no authentication mac&lt;/P&gt;&lt;P&gt;nas 10.12.1.101 key 0 WDSKey101&lt;/P&gt;&lt;P&gt;nas 10.12.1.102 key 0 WDSKey102&lt;/P&gt;&lt;P&gt;nas 10.12.1.103 key 0 WDSKey103&lt;/P&gt;&lt;P&gt;nas 10.12.1.104 key 0 WDSKey104&lt;/P&gt;&lt;P&gt;nas 10.12.1.105 key 0 WDSKey105&lt;/P&gt;&lt;P&gt;nas 10.12.1.106 key 0 WDSKey106&lt;/P&gt;&lt;P&gt;nas 10.12.1.107 key 0 WDSKey107&lt;/P&gt;&lt;P&gt;nas 10.12.1.108 key 0 WDSKey108&lt;/P&gt;&lt;P&gt;nas 10.12.1.109 key 0 WDSKey109&lt;/P&gt;&lt;P&gt;user wdsuser password wdspassword&lt;/P&gt;&lt;P&gt;radius-server host 10.12.1.109 auth-port 1812 acct-port 1813 key 0 WDSKey109&lt;/P&gt;&lt;P&gt;radius-server attribute 32 include-in-access-req format %h&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;wlccp wds priority 254 interface BVI1&lt;/P&gt;&lt;P&gt;wlccp ap username wdsclientap password wdspassword&lt;/P&gt;&lt;P&gt;wlccp authentication-server infrastructure method_infra_devices&lt;/P&gt;&lt;P&gt;wlccp authentication-server client eap method_client_devices&lt;/P&gt;&lt;P&gt;wlccp authentication-server client leap method_client_devices&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;line con 0&lt;/P&gt;&lt;P&gt;line vty 0 4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;## AP CLIENT CONFIG EXAMPLE ##&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;version 12.4&lt;/P&gt;&lt;P&gt;no service pad&lt;/P&gt;&lt;P&gt;service timestamps debug datetime msec&lt;/P&gt;&lt;P&gt;service timestamps log datetime msec&lt;/P&gt;&lt;P&gt;service password-encryption&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;hostname AP1&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;logging rate-limit console 9&lt;/P&gt;&lt;P&gt;enable secret MyEnableSecret&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_eap&lt;/P&gt;&lt;P&gt;server 10.12.12.12 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_mac&lt;/P&gt;&lt;P&gt;server 10.12.12.12 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_acct&lt;/P&gt;&lt;P&gt;server 10.12.12.12 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_admin&lt;/P&gt;&lt;P&gt;server 10.12.12.12 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server tacacs+ tac_admin&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius rad_pmip&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius dummy&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius infra_devices&lt;/P&gt;&lt;P&gt;server 10.12.1.109 auth-port 1812 acct-port 1813&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa group server radius client_devices&lt;/P&gt;&lt;P&gt;server 10.12.12.12 auth-port 1645 acct-port 1646&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa authentication login eap_methods group rad_eap&lt;/P&gt;&lt;P&gt;aaa authentication login mac_methods local&lt;/P&gt;&lt;P&gt;aaa authentication login method_infra_devices group infra_devices&lt;/P&gt;&lt;P&gt;aaa authentication login method_client_devices group client_devices&lt;/P&gt;&lt;P&gt;aaa authorization exec default local &lt;/P&gt;&lt;P&gt;aaa accounting network acct_methods start-stop group rad_acct&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa session-id common&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 syslog&lt;/P&gt;&lt;P&gt;dot11 vlan-name Network1 vlan 7&lt;/P&gt;&lt;P&gt;dot11 vlan-name Network2 vlan 6&lt;/P&gt;&lt;P&gt;dot11 vlan-name Network3 vlan 5&lt;/P&gt;&lt;P&gt;dot11 vlan-name Network4 vlan 4&lt;/P&gt;&lt;P&gt;dot11 vlan-name VoIP vlan 3&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid Network1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; vlan 7&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication open &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication key-management wpa version 2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; guest-mode&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; wpa-psk ascii MyWPAGuestKey&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid Network2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; vlan 6&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication open eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication network-eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication key-management wpa cckm&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid VOIP&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; vlan 3&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication open eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication network-eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication key-management wpa cckm&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;dot11 ssid Network4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; vlan 4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication open eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication network-eap eap_methods &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; authentication key-management wpa version 2&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;eap profile TLS&lt;/P&gt;&lt;P&gt;method tls&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;eap profile FAST&lt;/P&gt;&lt;P&gt;method fast&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;username Me privilege 15 password 0 MySpecialPassword&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;policy-map VoIPTraffic&lt;/P&gt;&lt;P&gt;class class-default&lt;/P&gt;&lt;P&gt;&amp;nbsp; set cos 6&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;bridge irb&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0&lt;/P&gt;&lt;P&gt;no ip address&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;encryption vlan 7 mode ciphers aes-ccm &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;encryption vlan 6 mode ciphers tkip&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;encryption vlan 5 mode ciphers aes-ccm &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;encryption vlan 3 mode ciphers tkip &lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;encryption vlan 4 mode ciphers aes-ccm&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ssid Network5&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ssid Network4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ssid VOIP&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ssid Network6&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;antenna gain 0&lt;/P&gt;&lt;P&gt;station-role root&lt;/P&gt;&lt;P&gt;bridge-group 1&lt;/P&gt;&lt;P&gt;bridge-group 1 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 1 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 1 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0.7&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 7&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 7&lt;/P&gt;&lt;P&gt;bridge-group 7 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 7 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 7 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 7 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 7 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0.4&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 4&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 4&lt;/P&gt;&lt;P&gt;bridge-group 4 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 4 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 4 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 4 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 4 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0.6&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 6&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 6&lt;/P&gt;&lt;P&gt;bridge-group 6 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 6 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 6 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 6 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 6 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0.3&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 3&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 3&lt;/P&gt;&lt;P&gt;bridge-group 3 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 3 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 3 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 3 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 3 spanning-disabled&lt;/P&gt;&lt;P&gt;service-policy input VoIPTraffic&lt;/P&gt;&lt;P&gt;service-policy output VoIPTraffic&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio0.7&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 7&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 7&lt;/P&gt;&lt;P&gt;bridge-group 7 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 7 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 7 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 7 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 7 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface Dot11Radio1&lt;/P&gt;&lt;P&gt;no ip address&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;shutdown&lt;/P&gt;&lt;P&gt;antenna gain 0&lt;/P&gt;&lt;P&gt;no dfs band block&lt;/P&gt;&lt;P&gt;channel dfs&lt;/P&gt;&lt;P&gt;station-role root&lt;/P&gt;&lt;P&gt;bridge-group 1&lt;/P&gt;&lt;P&gt;bridge-group 1 subscriber-loop-control&lt;/P&gt;&lt;P&gt;bridge-group 1 block-unknown-source&lt;/P&gt;&lt;P&gt;no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt;no bridge-group 1 unicast-flooding&lt;/P&gt;&lt;P&gt;bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0&lt;/P&gt;&lt;P&gt;no ip address&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;duplex auto&lt;/P&gt;&lt;P&gt;speed auto&lt;/P&gt;&lt;P&gt;no keepalive&lt;/P&gt;&lt;P&gt;bridge-group 1&lt;/P&gt;&lt;P&gt;no bridge-group 1 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 1 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0.7&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 7&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 7&lt;/P&gt;&lt;P&gt;no bridge-group 7 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 7 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0.4&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 4&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 4&lt;/P&gt;&lt;P&gt;no bridge-group 4 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 4 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0.6&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 6&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 6&lt;/P&gt;&lt;P&gt;no bridge-group 6 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 6 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0.3&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 3&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 3&lt;/P&gt;&lt;P&gt;no bridge-group 3 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 3 spanning-disabled&lt;/P&gt;&lt;P&gt;service-policy input VoIPTraffic&lt;/P&gt;&lt;P&gt;service-policy output VoIPTraffic&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface GigabitEthernet0.5&lt;/P&gt;&lt;P&gt;encapsulation dot1Q 5&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;bridge-group 5&lt;/P&gt;&lt;P&gt;no bridge-group 5 source-learning&lt;/P&gt;&lt;P&gt;bridge-group 5 spanning-disabled&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;interface BVI1&lt;/P&gt;&lt;P&gt;ip address 10.12.1.108 255.255.255.0&lt;/P&gt;&lt;P&gt;no ip route-cache&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;ip default-gateway 10.12.1.1&lt;/P&gt;&lt;P&gt;ip http server&lt;/P&gt;&lt;P&gt;no ip http secure-server&lt;/P&gt;&lt;P&gt;ip http help-path h&lt;A href="http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag" rel="nofollow"&gt;ttp://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip radius source-interface BVI1 &lt;/P&gt;&lt;P&gt;radius-server attribute 32 include-in-access-req format %h&lt;/P&gt;&lt;P&gt;radius-server host 10.12.12.12 auth-port 1645 acct-port 1646 key NPSKey108&lt;/P&gt;&lt;P&gt;radius-server vsa send accounting&lt;/P&gt;&lt;P&gt;bridge 1 route ip&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;radius-server host 10.12.1.109 auth-port 1812 acct-port 1813 key 0 WDSKey108&lt;/P&gt;&lt;P&gt;radius-server attribute 32 include-in-access-req format %h&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;wlccp ap username wdsuser password wdspassword&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;line con 0&lt;/P&gt;&lt;P&gt;line vty 0 4&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;end&lt;SPAN id="mce_marker"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 25 Oct 2012 08:59:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046946#M218281</guid>
      <dc:creator>BJCiscoUser</dc:creator>
      <dc:date>2012-10-25T08:59:06Z</dc:date>
    </item>
    <item>
      <title>Re: How to setup CCKM</title>
      <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046947#M218282</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;On which WLAN is the fast roaming not working?&amp;nbsp; If it's the Voice, what model of phone and firmware are you running? FYI 7921/25/26 should be 1.4(3).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if you do a show wds ap on the master, do you see all the AP registered?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH, &lt;BR /&gt;Steve &lt;BR /&gt; &lt;BR /&gt;------------------------------------------------------------------------------------------------ &lt;BR /&gt;Please remember to rate useful posts, and mark questions as answered&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 25 Oct 2012 13:42:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046947#M218282</guid>
      <dc:creator>Stephen Rodriguez</dc:creator>
      <dc:date>2012-10-25T13:42:15Z</dc:date>
    </item>
    <item>
      <title>Re: How to setup CCKM</title>
      <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046948#M218283</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The fast roaming is not working on the VOIP WLAN. We are not testing with a phone, but with a Lenovo laptop (softphone), running CCXv4 and configured with (Intel PROSet) WPA - Enterprise, TKIP, TSL with User certificate.&lt;/P&gt;&lt;P&gt;If we run the cmd: show wlccp wds ap, all AP shows up as &lt;SPAN style="line-height: 115%; font-family: 'Arial','sans-serif'; color: #333333; font-size: 10pt; mso-fareast-font-family: 'Times New Roman'; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA;"&gt;registered&lt;/SPAN&gt;.&lt;BR /&gt;If we run the cmd: whow wlccp wds mn detail, the client (associated to another AP) shows up with the &lt;SPAN style="line-height: 115%; font-family: 'Arial','sans-serif'; color: #333333; font-size: 10pt; mso-fareast-font-family: 'Times New Roman'; mso-ansi-language: EN-US; mso-fareast-language: EN-US; mso-bidi-language: AR-SA;"&gt;following &lt;/SPAN&gt;details:&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;BSS: c8f9.f9a6.f270, SSID: VOIP&lt;BR /&gt;Vlan Assigned by AAA: 3&lt;/P&gt;&lt;P&gt;Ntwrk-ID:&amp;nbsp;&amp;nbsp; -&lt;BR /&gt;Key Mgmt: CCKM,&amp;nbsp; Authentication: EAP&lt;BR /&gt;Posture Token:&lt;BR /&gt;Up-time: 00:33:36, Lifetime: 127&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We have this in the WDS master config, is this ok?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;DIV class="mcePaste" id="_mcePaste" style="position: absolute; width: 1px; height: 1px; overflow: hidden; top: 0px; left: -10000px;"&gt;﻿radius-server local&lt;BR /&gt;&amp;nbsp; no authentication eapfast&lt;BR /&gt;&amp;nbsp; no authentication leap&lt;BR /&gt;&amp;nbsp; no authentication mac&lt;P&gt;radius-server local&lt;BR /&gt;&amp;nbsp; no authentication eapfast&lt;BR /&gt;&amp;nbsp; no authentication leap&lt;BR /&gt;&amp;nbsp; no authentication mac&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;radius-server local&lt;BR /&gt;&amp;nbsp; no authentication eapfast&lt;BR /&gt;&amp;nbsp; no authentication leap&lt;BR /&gt;&amp;nbsp; no authentication mac&lt;/P&gt;&lt;/DIV&gt;&lt;P&gt;radius-server local&lt;BR /&gt;&amp;nbsp; no authentication eapfast&lt;BR /&gt;&amp;nbsp; no authentication leap&lt;BR /&gt;&amp;nbsp; no authentication mac&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 25 Oct 2012 14:12:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046948#M218283</guid>
      <dc:creator>BJCiscoUser</dc:creator>
      <dc:date>2012-10-25T14:12:27Z</dc:date>
    </item>
    <item>
      <title>Re: How to setup CCKM</title>
      <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046949#M218284</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Steve,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As an update to my own post, I remember having read somewhere that if we implement CCKM, having the AAA server handing out the vlan id is not allowed/supported, so I disabled that option. That seems to have made things better...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anyway, we are not completely satisfied with our testing. Is there a command we can run to see if CCKM is working? I remember having read about a command showing the CCKM id assigned to the client?? But I do not remember the exact syntax. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks once again for your time.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 25 Oct 2012 16:08:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046949#M218284</guid>
      <dc:creator>BJCiscoUser</dc:creator>
      <dc:date>2012-10-25T16:08:10Z</dc:date>
    </item>
    <item>
      <title>Re: How to setup CCKM</title>
      <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046950#M218285</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Check the ~mn command &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P align="left"&gt;&lt;/P&gt;&lt;TABLE border="1" cellpadding="3" cellspacing="0" id="wp1036732table1036730" width="80%"&gt;&lt;TBODY&gt;&lt;TR align="left" valign="bottom"&gt;&lt;TH scope="col" style="font-size: 14px;"&gt;&lt;DIV style="color: #336666; margin: 0em; text-indent: 0em;"&gt;Command&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/TH&gt;&lt;TH scope="col" style="font-size: 14px;"&gt;&lt;A name="wp1036734"&gt;&lt;/A&gt;&lt;P style="color: #336666; margin: 0em; text-indent: 0em;"&gt;Description&lt;/P&gt;&lt;/TH&gt; &lt;/TR&gt;&lt;TR align="left" valign="top"&gt;&lt;TD&gt;&lt;A name="wp1036919"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;show wlccp ap&lt;/P&gt;&lt;/TD&gt;&lt;TD&gt;&lt;A name="wp1036921"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;Use this command on access points participating in CCKM to display the WDS device's MAC address, the WDS device's IP address, the access point's state (authenticating, authenticated, or registered), the IP address of the infrastructure authenticator, and the IP address of the client device (MN) authenticator.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR align="left" valign="top"&gt;&lt;TD&gt;&lt;A name="wp1036736"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;show wlccp wds { ap |mn } &lt;BR /&gt;[ detail ] [mac-addrmac-address ]&lt;/P&gt;&lt;/TD&gt;&lt;TD&gt;&lt;A name="wp1036738"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;On the WDS device only, use this command to display cached information about access points and client devices.&lt;/P&gt;&lt;A name="wp1036768"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 0px 0em 7px 0.25in; text-indent: -0.25in;"&gt;•&lt;IMG border="0" height="2" src="http://www.cisco.com/en/US/i/templates/blank.gif" width="19" /&gt;ap—Use this option to display access points participating in CCKM. The command displays each access point's MAC address, IP address, state (authenticating, authenticated, or registered), and lifetime (seconds remaining before the access point must reauthenticate). Use the mac-addr option to display information about a specific access point.&lt;/P&gt;&lt;A name="wp1036792"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 0px 0em 7px 0.25in; text-indent: -0.25in;"&gt;•&lt;IMG border="0" height="2" src="http://www.cisco.com/en/US/i/templates/blank.gif" width="19" /&gt;mn—Use this option to display cached information about client devices, also called mobile nodes. The command displays each client's MAC address, IP address, the access point to which the client is associated (cur-AP), and state (authenticating, authenticated, or registered). Use the detail option to display the client's lifetime (seconds remaining before the client must reauthenticate), SSID, and VLAN ID. Use the mac-addr option to display information about a specific client device.&lt;/P&gt;&lt;A name="wp1036853"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;If you only enter show wlccp wds, the command displays the access point's IP address, MAC address, priority, and interface state (administratively standalone, active, backup, candidate, or WDS-only).&lt;/P&gt;&lt;A name="wp1124130"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;If the state is backup, the command also displays the current WDS device's IP address, MAC address, and priority.&lt;/P&gt;&lt;A name="wp1124167"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;If the state is WDS-only, the command displays the device's MAC address, IP address, interface state, access point count, and mobile node count.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&lt;BR style="color: #000000; font-family: Arial, Helvetica, sans-serif; background-color: #ffffff;" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;A name="Using_Debug_Messages" style="color: #000000; font-family: Arial, Helvetica, sans-serif; background-color: #ffffff;"&gt;&lt;/A&gt;&lt;A name="wp1036950" style="color: #000000; font-family: Arial, Helvetica, sans-serif; background-color: #ffffff;"&gt;&lt;/A&gt;&lt;A name="wpxref49851" style="color: #000000; font-family: Arial, Helvetica, sans-serif; background-color: #ffffff;"&gt;&lt;/A&gt;&lt;/P&gt;&lt;H3 style="font-size: 13px; color: #336666; font-family: Arial, Helvetica, sans-serif; margin: 14px 0em 7px -0.1in; background-color: #ffffff;"&gt;Using Debug Messages&lt;/H3&gt;&lt;P&gt; &lt;A name="wp1036951" style="color: #000000; font-family: Arial, Helvetica, sans-serif; background-color: #ffffff;"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P style="color: #000000; font-family: Arial, Helvetica, sans-serif; font-size: 12px; margin: 1px 0em 6px; background-color: #ffffff;"&gt;In privileged exec mode, use these debug commands to control the display of debug messages for devices interacting with the WDS device:&lt;/P&gt;&lt;P&gt; &lt;A name="wp1037012" style="color: #000000; font-family: Arial, Helvetica, sans-serif; background-color: #ffffff;"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P align="left"&gt;&lt;/P&gt;&lt;TABLE border="1" cellpadding="3" cellspacing="0" id="wp1036998table1036996" width="80%"&gt;&lt;CAPTION style="margin: 14px 0em 0px 0in; text-align: left; text-indent: 0em;"&gt;&lt;/CAPTION&gt; &lt;TBODY&gt;&lt;TR align="left" valign="bottom"&gt;&lt;TH scope="col" style="font-size: 14px;"&gt;&lt;A name="wp1036998"&gt;&lt;/A&gt;&lt;DIV style="color: #336666; margin: 0em; text-indent: 0em;"&gt;Command&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;/TH&gt;&lt;TH scope="col" style="font-size: 14px;"&gt;&lt;A name="wp1037000"&gt;&lt;/A&gt;&lt;P style="color: #336666; margin: 0em; text-indent: 0em;"&gt;Description&lt;/P&gt;&lt;/TH&gt; &lt;/TR&gt;&lt;TR align="left" valign="top"&gt;&lt;TD&gt;&lt;A name="wp1063094"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;debug wlccp ap&lt;BR /&gt;{mn | wds-discovery | state}&lt;/P&gt;&lt;/TD&gt;&lt;TD&gt;&lt;A name="wp1063096"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;Use this command to turn on display of debug messages related to client devices (mn), the WDS discovery process, and access point authentication to the WDS device (state).&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR align="left" valign="top"&gt;&lt;TD&gt;&lt;A name="wp1063098"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;debug wlccp dump&lt;/P&gt;&lt;/TD&gt;&lt;TD&gt;&lt;A name="wp1063100"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;Use this command to perform a dump of WLCCP packets received and sent in binary format.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR align="left" valign="top"&gt;&lt;TD&gt;&lt;A name="wp1063102"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;debug wlccp packet&lt;/P&gt;&lt;/TD&gt;&lt;TD&gt;&lt;A name="wp1063104"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;Use this command to turn on display of packets to and from the WDS device.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR align="left" valign="top"&gt;&lt;TD&gt;&lt;A name="wp1063106"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;debug wlccp wds [aggregator | authenticator |nm | state | statistics]&lt;/P&gt;&lt;/TD&gt;&lt;TD&gt;&lt;A name="wp1063108"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;Use this command and its options to turn on display of WDS debug messages. Use the statistics option to turn on display of failure statistics.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;TR align="left" valign="top"&gt;&lt;TD&gt;&lt;A name="wp1063110"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;debug wlccp wds authenticator {all | dispatcher |mac-authen | process | rxdata | state-machine |txdata}&lt;/P&gt;&lt;/TD&gt;&lt;TD&gt;&lt;A name="wp1063112"&gt;&lt;/A&gt;&lt;P style="font-size: 12px; margin: 1px 0em 6px; text-indent: 0em;"&gt;Use this command and its options to turn on display of WDS debug messages related to authentication.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;__________________________________________________________________________________________ &lt;BR /&gt;"Satisfaction does not come from knowing the solution, it comes from knowing why." - Rosalind Franklin &lt;BR /&gt;__________________________________________________________________________________________ &lt;BR /&gt;‎"I'm in a serious relationship with my Wi-Fi. You could say we have a connection."&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 25 Oct 2012 16:31:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046950#M218285</guid>
      <dc:creator>George Stefanick</dc:creator>
      <dc:date>2012-10-25T16:31:57Z</dc:date>
    </item>
    <item>
      <title>Re: How to setup CCKM</title>
      <link>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046951#M218286</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you should be able to do a show dot11 association &amp;lt; mac address &amp;gt; and see what the keying is.&amp;nbsp; or the show wlccp wds mn detail shows that the client is CCKM&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH, &lt;BR /&gt;Steve &lt;BR /&gt; &lt;BR /&gt;------------------------------------------------------------------------------------------------ &lt;BR /&gt;Please remember to rate useful posts, and mark questions as answered&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 25 Oct 2012 16:33:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/how-to-setup-cckm/m-p/2046951#M218286</guid>
      <dc:creator>Stephen Rodriguez</dc:creator>
      <dc:date>2012-10-25T16:33:23Z</dc:date>
    </item>
  </channel>
</rss>

