<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Wireless Controller 2504 - Joining 2800 Series AP ISSUE** in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699302#M246854</link>
    <description>&lt;P&gt;Dear Professionals,&lt;/P&gt;&lt;P&gt;I'm having an issue to managing WLC and it happens sudden, I need your opinions.&lt;/P&gt;&lt;P&gt;WLC Sysinfo&amp;gt;&amp;gt;&lt;/P&gt;&lt;P&gt;Manufacturer's Name.............................. Cisco Systems Inc.&lt;BR /&gt;Product Name..................................... Cisco Controller&lt;BR /&gt;&lt;STRONG&gt;Product Version.................................. 8.3.143.0&lt;/STRONG&gt;&lt;BR /&gt;Bootloader Version............................... 1.0.16&lt;BR /&gt;Field Recovery Image Version..................... 1.0.0&lt;BR /&gt;Firmware Version................................. PIC 16.0&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;OUI File Update Time............................. Sun Sep 07 10:44:07 IST 2014&lt;/P&gt;&lt;P&gt;Build Type....................................... DATA + WPS&lt;/P&gt;&lt;P&gt;System Name...................................... ////_2504_WLC_01&lt;BR /&gt;System Location..................................&lt;BR /&gt;System Contact...................................&lt;BR /&gt;System ObjectID.................................. 1.3.6.1.4.1.9.1.1279&lt;BR /&gt;IP Address....................................... 172.28.23.12&lt;BR /&gt;IPv6 Address..................................... ::&lt;BR /&gt;Last Reset....................................... Power on reset&lt;BR /&gt;System Up Time................................... 1437 days 23 hrs 37 mins 16 secs&lt;BR /&gt;System Timezone Location......................... (GMT -5:00) Eastern Time (US and Canada)&lt;/P&gt;&lt;P&gt;--More-- or (q)uit&lt;BR /&gt;System Stats Realtime Interval................... 5&lt;BR /&gt;System Stats Normal Interval..................... 180&lt;/P&gt;&lt;P&gt;Configured Country............................... US - United States&lt;BR /&gt;Operating Environment............................ Commercial (0 to 40 C)&lt;BR /&gt;Internal Temp Alarm Limits....................... 0 to 65 C&lt;BR /&gt;Internal Temperature............................. +30 C&lt;BR /&gt;External Temperature............................. +35 C&lt;BR /&gt;Fan Status....................................... 5100 rpm&lt;/P&gt;&lt;P&gt;State of 802.11b Network......................... Enabled&lt;BR /&gt;State of 802.11a Network......................... Enabled&lt;BR /&gt;Number of WLANs.................................. 4&lt;BR /&gt;Number of Active Clients......................... 201&lt;/P&gt;&lt;P&gt;OUI Classification Failure Count................. 0&lt;/P&gt;&lt;P&gt;Burned-in MAC Address............................ F4:7F:35:B6:54:80&lt;BR /&gt;Maximum number of APs supported.................. 75&lt;BR /&gt;System Nas-Id....................................&lt;BR /&gt;&lt;STRONG&gt;WLC MIC Certificate Types........................ SHA1&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Two weeks ago, few of 2800 series APs are suddenly lost controller connections and never keeps failing to re-joining.&lt;/P&gt;&lt;P&gt;Those failed APs were I bought pretty newly, and same AP model. (2802E)&lt;/P&gt;&lt;P&gt;It gives me an 'DTLS failed' error, handshake failed because of certificates.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The certificate has correct validation period with WLC, so I am not sure which part was an issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;- I had to change controller's Date/time to be 3 months past,&lt;/P&gt;&lt;P&gt;then AP started joining. Once it has correct mobility images for current and backup, then I need to correct date/time again.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yesterday, I need to replace old AP to new one, same model (2802E) and issue happened again.&lt;/P&gt;&lt;P&gt;Joining keeps failed, and I had to change date/time again in order to join.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What is this happened? We have many 2802E APs but it just happened only for newly purchased.&lt;/P&gt;&lt;P&gt;Is this about Certificate type issue or just bug?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I appreciate your comments.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 06 Oct 2022 14:53:28 GMT</pubDate>
    <dc:creator>eeebbunee</dc:creator>
    <dc:date>2022-10-06T14:53:28Z</dc:date>
    <item>
      <title>Wireless Controller 2504 - Joining 2800 Series AP ISSUE**</title>
      <link>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699302#M246854</link>
      <description>&lt;P&gt;Dear Professionals,&lt;/P&gt;&lt;P&gt;I'm having an issue to managing WLC and it happens sudden, I need your opinions.&lt;/P&gt;&lt;P&gt;WLC Sysinfo&amp;gt;&amp;gt;&lt;/P&gt;&lt;P&gt;Manufacturer's Name.............................. Cisco Systems Inc.&lt;BR /&gt;Product Name..................................... Cisco Controller&lt;BR /&gt;&lt;STRONG&gt;Product Version.................................. 8.3.143.0&lt;/STRONG&gt;&lt;BR /&gt;Bootloader Version............................... 1.0.16&lt;BR /&gt;Field Recovery Image Version..................... 1.0.0&lt;BR /&gt;Firmware Version................................. PIC 16.0&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;OUI File Update Time............................. Sun Sep 07 10:44:07 IST 2014&lt;/P&gt;&lt;P&gt;Build Type....................................... DATA + WPS&lt;/P&gt;&lt;P&gt;System Name...................................... ////_2504_WLC_01&lt;BR /&gt;System Location..................................&lt;BR /&gt;System Contact...................................&lt;BR /&gt;System ObjectID.................................. 1.3.6.1.4.1.9.1.1279&lt;BR /&gt;IP Address....................................... 172.28.23.12&lt;BR /&gt;IPv6 Address..................................... ::&lt;BR /&gt;Last Reset....................................... Power on reset&lt;BR /&gt;System Up Time................................... 1437 days 23 hrs 37 mins 16 secs&lt;BR /&gt;System Timezone Location......................... (GMT -5:00) Eastern Time (US and Canada)&lt;/P&gt;&lt;P&gt;--More-- or (q)uit&lt;BR /&gt;System Stats Realtime Interval................... 5&lt;BR /&gt;System Stats Normal Interval..................... 180&lt;/P&gt;&lt;P&gt;Configured Country............................... US - United States&lt;BR /&gt;Operating Environment............................ Commercial (0 to 40 C)&lt;BR /&gt;Internal Temp Alarm Limits....................... 0 to 65 C&lt;BR /&gt;Internal Temperature............................. +30 C&lt;BR /&gt;External Temperature............................. +35 C&lt;BR /&gt;Fan Status....................................... 5100 rpm&lt;/P&gt;&lt;P&gt;State of 802.11b Network......................... Enabled&lt;BR /&gt;State of 802.11a Network......................... Enabled&lt;BR /&gt;Number of WLANs.................................. 4&lt;BR /&gt;Number of Active Clients......................... 201&lt;/P&gt;&lt;P&gt;OUI Classification Failure Count................. 0&lt;/P&gt;&lt;P&gt;Burned-in MAC Address............................ F4:7F:35:B6:54:80&lt;BR /&gt;Maximum number of APs supported.................. 75&lt;BR /&gt;System Nas-Id....................................&lt;BR /&gt;&lt;STRONG&gt;WLC MIC Certificate Types........................ SHA1&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Two weeks ago, few of 2800 series APs are suddenly lost controller connections and never keeps failing to re-joining.&lt;/P&gt;&lt;P&gt;Those failed APs were I bought pretty newly, and same AP model. (2802E)&lt;/P&gt;&lt;P&gt;It gives me an 'DTLS failed' error, handshake failed because of certificates.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The certificate has correct validation period with WLC, so I am not sure which part was an issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;- I had to change controller's Date/time to be 3 months past,&lt;/P&gt;&lt;P&gt;then AP started joining. Once it has correct mobility images for current and backup, then I need to correct date/time again.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Yesterday, I need to replace old AP to new one, same model (2802E) and issue happened again.&lt;/P&gt;&lt;P&gt;Joining keeps failed, and I had to change date/time again in order to join.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What is this happened? We have many 2802E APs but it just happened only for newly purchased.&lt;/P&gt;&lt;P&gt;Is this about Certificate type issue or just bug?&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I appreciate your comments.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Oct 2022 14:53:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699302#M246854</guid>
      <dc:creator>eeebbunee</dc:creator>
      <dc:date>2022-10-06T14:53:28Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless Controller 2504 - Joining 2800 Series AP ISSUE**</title>
      <link>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699357#M246867</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;Based on your description and workaround, it seems you are having known problem with expired certificates. You can find more information on this link: &lt;A href="https://www.cisco.com/c/en/us/support/docs/field-notices/639/fn63942.html" target="_blank"&gt;https://www.cisco.com/c/en/us/support/docs/field-notices/639/fn63942.html&lt;/A&gt;&lt;BR /&gt;&lt;BR /&gt;Basically you need to configure your WLC to ignore those certificates &amp;gt; &lt;STRONG&gt;config ap cert-expiry-ignore {mic|ssc} enable&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;(Cisco Controller) &amp;gt;show certificate summary&lt;BR /&gt;Web Administration Certificate................... 3rd Party&lt;BR /&gt;Web Authentication Certificate................... 3rd Party&lt;BR /&gt;Certificate compatibility mode:.................. off&lt;BR /&gt;&lt;STRONG&gt;Lifetime Check Ignore for MIC ................... Enable&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;Lifetime Check Ignore for SSC ................... Enable&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Oct 2022 16:30:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699357#M246867</guid>
      <dc:creator>Jeza-925</dc:creator>
      <dc:date>2022-10-06T16:30:58Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless Controller 2504 - Joining 2800 Series AP ISSUE**</title>
      <link>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699360#M246869</link>
      <description>&lt;P&gt;Hello, Thank you for your comment.&lt;/P&gt;&lt;P&gt;When I checked the config of WLC, those are already enabled.&lt;/P&gt;&lt;P&gt;(Cisco Controller) &amp;gt;show certificate sum&lt;BR /&gt;Web Administration Certificate................... 3rd Party&lt;BR /&gt;Web Authentication Certificate................... Locally Generated&lt;BR /&gt;Certificate compatibility mode:.................. off&lt;BR /&gt;&lt;STRONG&gt;Lifetime Check Ignore for MIC ................... Enable&lt;/STRONG&gt;&lt;BR /&gt;&lt;STRONG&gt;Lifetime Check Ignore for SSC ................... Enable&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Thank you.&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Oct 2022 16:38:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699360#M246869</guid>
      <dc:creator>eeebbunee</dc:creator>
      <dc:date>2022-10-06T16:38:12Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless Controller 2504 - Joining 2800 Series AP ISSUE**</title>
      <link>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699419#M246870</link>
      <description>&lt;P&gt;Well not sure then what could be the problem... Can you post WLC error logs and also logs from AP? 8.3.143.0 is older version, did you consider upgrading to 8.5.171.0 / 8.5.182.0 ?&lt;/P&gt;</description>
      <pubDate>Thu, 06 Oct 2022 17:04:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699419#M246870</guid>
      <dc:creator>Jeza-925</dc:creator>
      <dc:date>2022-10-06T17:04:39Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless Controller 2504 - Joining 2800 Series AP ISSUE**</title>
      <link>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699604#M246875</link>
      <description>&lt;P&gt;Agree you have hit that field notice:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;AP-COS APs can be fixed via Cisco bug ID &lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvb93909" target="_blank"&gt;CSCvb93909&lt;/A&gt; in AireOS 8.5 and later.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;You need to upgrade to &lt;SPAN&gt;8.5.160.0 or above&lt;/SPAN&gt; to permenantly fix this issue (this will also fix the SHA-2 Expiry on some IOS based APs)&lt;/P&gt;&lt;P&gt;The 2504 is EOL so it is also recommended to plan to upgrade the WLC&lt;/P&gt;</description>
      <pubDate>Thu, 06 Oct 2022 21:21:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699604#M246875</guid>
      <dc:creator>Haydn Andrews</dc:creator>
      <dc:date>2022-10-06T21:21:35Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless Controller 2504 - Joining 2800 Series AP ISSUE**</title>
      <link>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699608#M246878</link>
      <description>&lt;P&gt;I have no subscription for the maintenance contract.. I have only hardware support contract.... but thank you though..!&lt;/P&gt;</description>
      <pubDate>Thu, 06 Oct 2022 21:31:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699608#M246878</guid>
      <dc:creator>eeebbunee</dc:creator>
      <dc:date>2022-10-06T21:31:14Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless Controller 2504 - Joining 2800 Series AP ISSUE**</title>
      <link>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699624#M246882</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1110274"&gt;@eeebbunee&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;I have no subscription for the maintenance contract.. I have only hardware support contract.... but thank you though..!&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;Read and understand the below steps to download the software legally:&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;1.&amp;nbsp; The last-and-final firmware release for the 5508/WiSM-2/2504 is &lt;A href="https://software.cisco.com/download/home/283848165/type/280926587/release/8.5.182.0" target="_self"&gt;8.5.182.0&lt;/A&gt;.&amp;nbsp; It is vital to note down the filename and the location of the download link.&lt;BR /&gt;2.&amp;nbsp; Read this:&amp;nbsp;&amp;nbsp;&lt;A href="https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-wlc-dos-mKGRrsCB" target="_self"&gt;Cisco Wireless LAN Controller AireOS Software FIPS Mode Denial of Service Vulnerability&lt;/A&gt;&lt;BR /&gt;3.&amp;nbsp; Scroll down to the "Customers Without Service Contracts" section and read that carefully.&amp;nbsp; Take note:&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;BLOCKQUOTE&gt;
&lt;P&gt;Customers who purchase directly from Cisco but do not hold a Cisco service contract and customers who make purchases through third-party vendors but are unsuccessful in obtaining fixed software through their point of sale should obtain upgrades by contacting the Cisco &lt;A href="https://www.cisco.com/c/en/us/support/web/tsd-cisco-worldwide-contacts.html" target="_self"&gt;TAC&lt;/A&gt;.&lt;/P&gt;
&lt;P&gt;Customers should have the product serial number available and be prepared to provide the URL of this advisory as evidence of entitlement to a free upgrade.&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;4.&amp;nbsp; Contact Cisco TAC using &lt;A href="mailto:tac@cisco.com" target="_self"&gt;email&lt;/A&gt; only -- Never contact Cisco TAC on the phone.&lt;BR /&gt;5.&amp;nbsp; Provide TAC the firmware filename and the location of the download link (Step 1).&lt;/P&gt;</description>
      <pubDate>Thu, 06 Oct 2022 22:25:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-controller-2504-joining-2800-series-ap-issue/m-p/4699624#M246882</guid>
      <dc:creator>Leo Laohoo</dc:creator>
      <dc:date>2022-10-06T22:25:10Z</dc:date>
    </item>
  </channel>
</rss>

