<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: [WLC] CAPWAP tunnel lifetime in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4513515#M236213</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Thank you very much for all of your answers, it was very helpful. I guess it was one of our firewall between the APs and WLC that must have terminated the interconnection between them.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 06 Dec 2021 00:42:15 GMT</pubDate>
    <dc:creator>thibaut.matzke</dc:creator>
    <dc:date>2021-12-06T00:42:15Z</dc:date>
    <item>
      <title>[WLC] CAPWAP tunnel lifetime</title>
      <link>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4510653#M236048</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;We faced an issue where after a misconfiguration, APs couldn't connect back to our primary WLC, and went to our secondary WLC. This "migration" wasn't sudden for all of our APs, and I think it was due to CAPWAP tunnel still up and not trying to renegociate with the WLC.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;After resolving the issue, I tried to find the global CAPWAP tunnel lifetime (standard CAPWAP tunnel renegociation), but I couldn't. Does anyone know where I can find this information ? We have a&amp;nbsp;Cisco 8540.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you in advance for your answers,&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Tue, 30 Nov 2021 16:35:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4510653#M236048</guid>
      <dc:creator>thibaut.matzke</dc:creator>
      <dc:date>2021-11-30T16:35:48Z</dc:date>
    </item>
    <item>
      <title>Re: [WLC] CAPWAP tunnel lifetime</title>
      <link>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4510791#M236054</link>
      <description>&lt;P&gt;you can find some information here : when the AP try to contact again Primary AP, if not reachable it will go alternative WLC automatically and join, but when the Primary come back online, i do not believe they will automatically move to Primary, you need to manually move them Primary controller.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/wireless/controller/8-5/config-guide/b_cg85/ap_connectivity_to_cisco_wlc.html#capwap" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/wireless/controller/8-5/config-guide/b_cg85/ap_connectivity_to_cisco_wlc.html#capwap&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;or something i miss understood your situation?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 30 Nov 2021 20:37:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4510791#M236054</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-11-30T20:37:50Z</dc:date>
    </item>
    <item>
      <title>Re: [WLC] CAPWAP tunnel lifetime</title>
      <link>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4510876#M236064</link>
      <description>&lt;P&gt;Hello Balaji, and thank you for your answer ! But this is not what I am looking for. My issue is resolved, but I will deeply explain it to understand why I am asking about CAPWAP tunnel lifetime :&lt;/P&gt;&lt;P&gt;This is the standard configuration : &lt;FONT color="#339966"&gt;&lt;STRONG&gt;all APs are connected to the primary WLC and working well&lt;/STRONG&gt;&lt;/FONT&gt; :&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="first situation.png" style="width: 680px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/138285i1395B83FC0213469/image-size/large?v=v2&amp;amp;px=999" role="button" title="first situation.png" alt="first situation.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;After a misconfiguration on the primary WLC making it &lt;FONT color="#FF6600"&gt;&lt;STRONG&gt;impossible to establish a new CAPWAP tunnel to it&lt;/STRONG&gt;, &lt;/FONT&gt;&lt;FONT color="#666699"&gt;we started to see &lt;/FONT&gt;&lt;FONT color="#000000"&gt;&lt;STRONG&gt;&lt;U&gt;some &lt;/U&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&lt;FONT color="#666699"&gt;APs from the primary WLC going to the secondary one&lt;/FONT&gt;&lt;FONT color="#000000"&gt;,&lt;/FONT&gt;&lt;FONT color="#000000"&gt;&lt;STRONG&gt;but not all of them at the same time&lt;/STRONG&gt;&lt;STRONG&gt; :&lt;/STRONG&gt;&lt;/FONT&gt;&lt;/P&gt;&lt;DIV class=""&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="second situation.png" style="width: 680px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/138290iE6E012C33DB80F96/image-size/large?v=v2&amp;amp;px=999" role="button" title="second situation.png" alt="second situation.png" /&gt;&lt;/span&gt;&lt;/DIV&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I think the reason why not all of the primary WLC APs "migrated" to the secondary one is because &lt;STRONG&gt;&lt;FONT color="#339966"&gt;their CAPWAP tunnel was still active and working (CAPWAP association with primary WLC was still OK)&lt;/FONT&gt;. &lt;/STRONG&gt;Since they didn't have to renegociate any new CAPWAP tunnel to the primary WLC, they stayed connected to it, and &lt;FONT color="#3366FF"&gt;&lt;STRONG&gt;when they had to renegociate CAPWAP tunnel&lt;/STRONG&gt;&lt;/FONT&gt;, since they couldn't do it with the primary WLC, they &lt;STRONG&gt;went on the second one&lt;/STRONG&gt;. &lt;/P&gt;&lt;P&gt;I think this is the "Controller Associated Time" that you can see on the AP :&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="controller associated tile.png" style="width: 371px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/138320i3E9F655ED732F365/image-size/large?v=v2&amp;amp;px=999" role="button" title="controller associated tile.png" alt="controller associated tile.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;After correcting the misconfiguration on the primary WLC, &lt;STRONG&gt;&lt;FONT color="#339966"&gt;every APs connected to the secondary one went back on the primary one automatically&lt;/FONT&gt;.&amp;nbsp; &lt;/STRONG&gt;For information, while troubleshooting (with this very &lt;A href="https://www.cisco.com/c/en/us/support/docs/wireless/5500-series-wireless-controllers/119286-lap-notjoin-wlc-tshoot.html" target="_self"&gt;useful link&lt;/A&gt;), I could see with the CAPWAP debug command on an AP that they were trying to reconnect to the first WLC continuously, so this was expected.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now, from this usecase, what I want to know is the to understand "&lt;FONT color="#3366FF"&gt;&lt;EM&gt;&lt;STRONG&gt;when they had to renegociate CAPWAP tunnel&lt;/STRONG&gt;&lt;/EM&gt;"&lt;/FONT&gt;. Is this because the &lt;STRONG&gt;CAPWAP protocol has an lifetime&lt;/STRONG&gt; ? And if so, what is it ? And if not, then when does an AP needs to renegociate its CAPWAP tunnel ? I couldn't find a precise answer on it, and this would really help me understand why not all APs migrated to the secondary WLC at the same time.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you in advance for your answers,&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Dec 2021 10:00:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4510876#M236064</guid>
      <dc:creator>thibaut.matzke</dc:creator>
      <dc:date>2021-12-01T10:00:46Z</dc:date>
    </item>
    <item>
      <title>Re: [WLC] CAPWAP tunnel lifetime</title>
      <link>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4511373#M236106</link>
      <description>&lt;P&gt;is the WLC Cluster ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As per i know the AP do the heartbeat with Controller every 30seconds see if the WLC up and running, then take action based on the availability Groups, below document explain better :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://mrncciew.com/2013/04/07/ap-failover/" target="_blank"&gt;https://mrncciew.com/2013/04/07/ap-failover/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 01 Dec 2021 18:35:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4511373#M236106</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-12-01T18:35:54Z</dc:date>
    </item>
    <item>
      <title>Re: [WLC] CAPWAP tunnel lifetime</title>
      <link>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4511429#M236109</link>
      <description>&lt;P&gt;Yes the WLC is a cluster, but this is not what I am asking.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for your documentation link, it was very interesting, but I still couldn't find the information I am looking for.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I understand that an AP sends heartbeat to its WLC every 30 seconds via its CAPWAP tunnel to be sure it is still working, but even when everything is working well, this CAPWAP tunnel needs to be renegociated at some point, right ? This CAPWAP interconnection with the WLC has a lifetime, no ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you in advance for your answers,&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;</description>
      <pubDate>Wed, 01 Dec 2021 20:04:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4511429#M236109</guid>
      <dc:creator>thibaut.matzke</dc:creator>
      <dc:date>2021-12-01T20:04:11Z</dc:date>
    </item>
    <item>
      <title>Re: [WLC] CAPWAP tunnel lifetime</title>
      <link>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4511707#M236118</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &lt;EM&gt;&amp;nbsp;&amp;gt;this CAPWAP tunnel needs to be renegotiated&amp;nbsp;at some point, right&lt;/EM&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;- I don't think so , the ap-heartbeat is an indicator for the controller to keep the capwap-tunnel UP.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;M.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Dec 2021 07:57:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4511707#M236118</guid>
      <dc:creator>Mark Elsen</dc:creator>
      <dc:date>2021-12-02T07:57:31Z</dc:date>
    </item>
    <item>
      <title>Re: [WLC] CAPWAP tunnel lifetime</title>
      <link>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4512015#M236131</link>
      <description>&lt;P&gt;I think it stays up forever, unless you have a layer 3 border between the WLC and the APs. In that case there might be a firewall in between, which terminates all connections after xx hours, for example.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Dec 2021 16:03:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4512015#M236131</guid>
      <dc:creator>patoberli</dc:creator>
      <dc:date>2021-12-02T16:03:27Z</dc:date>
    </item>
    <item>
      <title>Re: [WLC] CAPWAP tunnel lifetime</title>
      <link>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4512032#M236132</link>
      <description>&lt;P&gt;why we asking Cluster, checking failover.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;as per i know the Tunnel forever, until the AP reboot and reload new session start.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="image.png" style="width: 362px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/138455iD774517672809EAF/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Dec 2021 16:31:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4512032#M236132</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-12-02T16:31:39Z</dc:date>
    </item>
    <item>
      <title>Re: [WLC] CAPWAP tunnel lifetime</title>
      <link>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4513515#M236213</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Thank you very much for all of your answers, it was very helpful. I guess it was one of our firewall between the APs and WLC that must have terminated the interconnection between them.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Dec 2021 00:42:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wlc-capwap-tunnel-lifetime/m-p/4513515#M236213</guid>
      <dc:creator>thibaut.matzke</dc:creator>
      <dc:date>2021-12-06T00:42:15Z</dc:date>
    </item>
  </channel>
</rss>

