<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: 9800wlc-L-F not access http/https access in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744187#M249770</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;- Review the configuration of the&amp;nbsp;&lt;SPAN&gt;&amp;nbsp;9800L-F controller with the CLI command&amp;nbsp;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;FONT color="#008000"&gt;&lt;STRONG&gt;show&amp;nbsp; tech&lt;/STRONG&gt;&amp;nbsp;&amp;nbsp;&lt;STRONG&gt;&lt;U&gt;&amp;nbsp;wireless&lt;/U&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&amp;nbsp;, have the output analyzed by&amp;nbsp;&amp;nbsp;&lt;A href="https://cway.cisco.com/tools/WirelessAnalyzer/" target="_blank" rel="noopener nofollow noreferrer" data-saferedirecturl="https://www.google.com/url?q=https://cway.cisco.com/tools/WirelessAnalyzer/&amp;amp;source=gmail&amp;amp;ust=1662270212514000&amp;amp;usg=AOvVaw1v8X824xUFwNwiDM_o5Fxf"&gt;https://cway.cisco.com/&lt;WBR /&gt;tools/WirelessAnalyzer/&lt;/A&gt;&amp;nbsp; , please note do not use classical&lt;FONT color="#FF0000"&gt;&amp;nbsp;show tech-support&lt;/FONT&gt;&amp;nbsp;(short version) , use the command denoted in green for &lt;STRONG&gt;Wireless Analyzer&lt;/STRONG&gt;.&amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;EM&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Checkout all advisories! Also note that all advisories &lt;FONT color="#FF0000"&gt;red-flagged&lt;/FONT&gt; should be&lt;U&gt;&lt;FONT color="#008000"&gt; corrected!!&lt;/FONT&gt;&lt;/U&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;M.&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 22 Dec 2022 18:06:18 GMT</pubDate>
    <dc:creator>Mark Elsen</dc:creator>
    <dc:date>2022-12-22T18:06:18Z</dc:date>
    <item>
      <title>9800wlc-L-F not access http/https access</title>
      <link>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744174#M249767</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;i have a 9800L-F model wlc&lt;/P&gt;
&lt;P&gt;i create 2 vlan&lt;/P&gt;
&lt;P&gt;1 vlan 17 for management &lt;/P&gt;
&lt;P&gt;2 vlan 19 for end user&lt;/P&gt;
&lt;P&gt;i have access wlc form management vlan ( https and https )&lt;/P&gt;
&lt;P&gt;i have access wlc vlan 19 form lan connectivity but user are connect wifi ssid and same rang ip gate vlan 19 but not access http and https so please help&lt;/P&gt;
&lt;P&gt;================================================================&lt;/P&gt;
&lt;P&gt;WLC-ZOMATO-1#show running-config&lt;BR /&gt;Building configuration...&lt;/P&gt;
&lt;P&gt;Current configuration : 15321 bytes&lt;BR /&gt;!&lt;BR /&gt;! Last configuration change at 21:29:24 IST Thu Dec 22 2022 by konverge&lt;BR /&gt;! NVRAM config last updated at 21:34:57 IST Thu Dec 22 2022 by konverge&lt;BR /&gt;!&lt;BR /&gt;version 17.6&lt;BR /&gt;service timestamps debug datetime msec&lt;BR /&gt;service timestamps log datetime msec&lt;BR /&gt;service call-home&lt;BR /&gt;platform qfp utilization monitor load 80&lt;BR /&gt;platform punt-keepalive disable-kernel-core&lt;BR /&gt;!&lt;BR /&gt;hostname WLC-ZOMATO-1&lt;BR /&gt;!&lt;BR /&gt;boot-start-marker&lt;BR /&gt;boot system bootflash:packages.conf&lt;BR /&gt;boot system bootflash:/C9800-L-universalk9_wlc.17.03.04c.SPA.bin&lt;BR /&gt;boot-end-marker&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;vrf definition Mgmt-intf&lt;BR /&gt;!&lt;BR /&gt;address-family ipv4&lt;BR /&gt;exit-address-family&lt;BR /&gt;!&lt;BR /&gt;address-family ipv6&lt;BR /&gt;exit-address-family&lt;BR /&gt;!&lt;BR /&gt;enable password Konverge@123&lt;BR /&gt;!&lt;BR /&gt;no aaa new-model&lt;BR /&gt;clock timezone IST 5 30&lt;BR /&gt;vtp mode transparent&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;login on-success log&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;subscriber templating&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;parameter-map type webauth global&lt;BR /&gt;type webauth&lt;BR /&gt;virtual-ip ipv4 1.1.1.1&lt;BR /&gt;banner title ^Cwel^C&lt;BR /&gt;!&lt;BR /&gt;access-session mac-move deny&lt;BR /&gt;multilink bundle-name authenticated&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint SLA-TrustPoint&lt;BR /&gt;enrollment pkcs12&lt;BR /&gt;revocation-check crl&lt;BR /&gt;!&lt;BR /&gt;crypto pki trustpoint TP-self-signed-275080374&lt;BR /&gt;enrollment selfsigned&lt;BR /&gt;subject-name cn=IOS-Self-Signed-Certificate-275080374&lt;BR /&gt;revocation-check none&lt;BR /&gt;rsakeypair TP-self-signed-275080374&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;crypto pki certificate chain SLA-TrustPoint&lt;BR /&gt;certificate ca 01&lt;BR /&gt;30820321 30820209 A0030201 02020101 300D0609 2A864886 F70D0101 0B050030&lt;BR /&gt;32310E30 0C060355 040A1305 43697363 6F312030 1E060355 04031317 43697363&lt;BR /&gt;6F204C69 63656E73 696E6720 526F6F74 20434130 1E170D31 33303533 30313934&lt;BR /&gt;3834375A 170D3338 30353330 31393438 34375A30 32310E30 0C060355 040A1305&lt;BR /&gt;43697363 6F312030 1E060355 04031317 43697363 6F204C69 63656E73 696E6720&lt;BR /&gt;526F6F74 20434130 82012230 0D06092A 864886F7 0D010101 05000382 010F0030&lt;BR /&gt;82010A02 82010100 A6BCBD96 131E05F7 145EA72C 2CD686E6 17222EA1 F1EFF64D&lt;BR /&gt;CBB4C798 212AA147 C655D8D7 9471380D 8711441E 1AAF071A 9CAE6388 8A38E520&lt;BR /&gt;1C394D78 462EF239 C659F715 B98C0A59 5BBB5CBD 0CFEBEA3 700A8BF7 D8F256EE&lt;BR /&gt;4AA4E80D DB6FD1C9 60B1FD18 FFC69C96 6FA68957 A2617DE7 104FDC5F EA2956AC&lt;BR /&gt;7390A3EB 2B5436AD C847A2C5 DAB553EB 69A9A535 58E9F3E3 C0BD23CF 58BD7188&lt;BR /&gt;68E69491 20F320E7 948E71D7 AE3BCC84 F10684C7 4BC8E00F 539BA42B 42C68BB7&lt;BR /&gt;C7479096 B4CB2D62 EA2F505D C7B062A4 6811D95B E8250FC4 5D5D5FB8 8F27D191&lt;BR /&gt;C55F0D76 61F9A4CD 3D992327 A8BB03BD 4E6D7069 7CBADF8B DF5F4368 95135E44&lt;BR /&gt;DFC7C6CF 04DD7FD1 02030100 01A34230 40300E06 03551D0F 0101FF04 04030201&lt;BR /&gt;06300F06 03551D13 0101FF04 05300301 01FF301D 0603551D 0E041604 1449DC85&lt;BR /&gt;4B3D31E5 1B3E6A17 606AF333 3D3B4C73 E8300D06 092A8648 86F70D01 010B0500&lt;BR /&gt;03820101 00507F24 D3932A66 86025D9F E838AE5C 6D4DF6B0 49631C78 240DA905&lt;BR /&gt;604EDCDE FF4FED2B 77FC460E CD636FDB DD44681E 3A5673AB 9093D3B1 6C9E3D8B&lt;BR /&gt;D98987BF E40CBD9E 1AECA0C2 2189BB5C 8FA85686 CD98B646 5575B146 8DFC66A8&lt;BR /&gt;467A3DF4 4D565700 6ADF0F0D CF835015 3C04FF7C 21E878AC 11BA9CD2 55A9232C&lt;BR /&gt;7CA7B7E6 C1AF74F6 152E99B7 B1FCF9BB E973DE7F 5BDDEB86 C71E3B49 1765308B&lt;BR /&gt;5FB0DA06 B92AFE7F 494E8A9E 07B85737 F3A58BE1 1A48A229 C37C1E69 39F08678&lt;BR /&gt;80DDCD16 D6BACECA EEBC7CF9 8428787B 35202CDC 60E4616A B623CDBD 230E3AFB&lt;BR /&gt;418616A9 4093E049 4D10AB75 27E86F73 932E35B5 8862FDAE 0275156F 719BB2F0&lt;BR /&gt;D697DF7F 28&lt;BR /&gt;quit&lt;BR /&gt;crypto pki certificate chain TP-self-signed-275080374&lt;BR /&gt;certificate self-signed 01&lt;BR /&gt;3082032E 30820216 A0030201 02020101 300D0609 2A864886 F70D0101 05050030&lt;BR /&gt;30312E30 2C060355 04031325 494F532D 53656C66 2D536967 6E65642D 43657274&lt;BR /&gt;69666963 6174652D 32373530 38303337 34301E17 0D313730 31303731 34353931&lt;BR /&gt;305A170D 32373031 30373134 35393130 5A303031 2E302C06 03550403 1325494F&lt;BR /&gt;532D5365 6C662D53 69676E65 642D4365 72746966 69636174 652D3237 35303830&lt;BR /&gt;33373430 82012230 0D06092A 864886F7 0D010101 05000382 010F0030 82010A02&lt;BR /&gt;82010100 CE27BB6C C2A37AF7 3DE604C2 3A37D02B B06FCB7A 6A6D1050 12E0BE12&lt;BR /&gt;7B093D73 F18EA011 235D5D5A AA79F4FA 6AA8FEDC 9FAA766B 7A1A769D 64A95BB1&lt;BR /&gt;EEE04E31 8DBDFCFB 06F0E6F9 42D0F5DA 3566124E 13978E65 A8ADC852 E4068754&lt;BR /&gt;C2C1CB6D BEA7FD89 7946DF14 425DCB32 88D75FE2 C69F21B9 D1707870 9D371777&lt;BR /&gt;63CD2D39 3FD8CE02 D6430F36 9053FB77 24E3793B 94FB5423 3CAE873D 98FCD934&lt;BR /&gt;C28B327A F507E266 9B8827C7 706E077C 0D4B4907 0D9FE413 D80EB851 46470AB1&lt;BR /&gt;BFAB71C0 DAD562F0 37AFAD0B A61CA6AC C455AF1B EC34F577 3E2B82CC E2125D49&lt;BR /&gt;F49EFAF4 66C76E21 8827AC49 A45F16B9 6571BC91 7B40D71E 6CDB159C 81E245BE&lt;BR /&gt;7340F275 02030100 01A35330 51300F06 03551D13 0101FF04 05300301 01FF301F&lt;BR /&gt;0603551D 23041830 168014B8 329D61CF 778DAAB9 5FF11E72 10FF21DE CC263D30&lt;BR /&gt;1D060355 1D0E0416 0414B832 9D61CF77 8DAAB95F F11E7210 FF21DECC 263D300D&lt;BR /&gt;06092A86 4886F70D 01010505 00038201 01007E82 EB207269 032EC7E3 811C630B&lt;BR /&gt;982F2D6E 3FFA2F46 7880E426 5D1CCA91 6771CDD9 4126A450 01A8DF28 EB4EC122&lt;BR /&gt;C928CBAB 59B34E52 D38AC6B4 B67EA822 C0988FF1 9E808FE3 61240CEB 4B894F56&lt;BR /&gt;99AF1A28 6BC03D01 B8033AEE C0F97C98 3DFAA4CF 528C1259 4D54AB4C 6FA58D99&lt;BR /&gt;5A17E5BE CE5DA0DB BBD79E85 3573CD75 0CCD8F05 E92A83A6 0A2F46CF ED222D87&lt;BR /&gt;2F617C31 794D6F13 0E0D3AB7 9F47826D 39FAF872 338BE63B 486908F0 A3936C7B&lt;BR /&gt;EBFC100C BF9B08C2 367966E6 2AB0BC8D 480AF83D 0FFC1268 866A1913 4C51E951&lt;BR /&gt;9EBDE027 364AAD32 3C7A0893 C4EE8D7F BB6C2296 B752F712 03D19015 F1334748&lt;BR /&gt;197F64BF 98B0816D EBAC8BC3 3B1E1755 8706&lt;BR /&gt;quit&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;license udi pid C9800-L-F-K9 sn FCL264100SJ&lt;BR /&gt;memory free low-watermark processor 170271&lt;BR /&gt;!&lt;BR /&gt;service-template DEFAULT_LINKSEC_POLICY_MUST_SECURE&lt;BR /&gt;linksec policy must-secure&lt;BR /&gt;service-template DEFAULT_LINKSEC_POLICY_SHOULD_SECURE&lt;BR /&gt;linksec policy should-secure&lt;BR /&gt;service-template DEFAULT_CRITICAL_VOICE_TEMPLATE&lt;BR /&gt;voice vlan&lt;BR /&gt;service-template DEFAULT_CRITICAL_DATA_TEMPLATE&lt;BR /&gt;service-template webauth-global-inactive&lt;BR /&gt;inactivity-timer 3600&lt;BR /&gt;diagnostic bootup level minimal&lt;BR /&gt;!&lt;BR /&gt;username konverge privilege 15 password 0 Konverge@123&lt;BR /&gt;!&lt;BR /&gt;redundancy&lt;BR /&gt;mode sso&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;vlan internal allocation policy ascending&lt;BR /&gt;!&lt;BR /&gt;vlan 10&lt;BR /&gt;name DMZ&lt;BR /&gt;!&lt;BR /&gt;vlan 17&lt;BR /&gt;name MGMT&lt;BR /&gt;!&lt;BR /&gt;vlan 18&lt;BR /&gt;name Eternal_IT&lt;BR /&gt;!&lt;BR /&gt;vlan 19&lt;BR /&gt;name Eternal&lt;BR /&gt;!&lt;BR /&gt;vlan 20&lt;BR /&gt;name Eternal_Phone&lt;BR /&gt;!&lt;BR /&gt;vlan 21&lt;BR /&gt;name Wired&lt;BR /&gt;!&lt;BR /&gt;vlan 22&lt;BR /&gt;name Eternal_Guest&lt;BR /&gt;!&lt;BR /&gt;vlan 50&lt;BR /&gt;name Spare_VLAN_1&lt;BR /&gt;!&lt;BR /&gt;vlan 51&lt;BR /&gt;name Spare_VLAN_2&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;class-map match-any AVC-Reanchor-Class&lt;BR /&gt;match protocol cisco-jabber-audio&lt;BR /&gt;match protocol cisco-jabber-video&lt;BR /&gt;match protocol webex-media&lt;BR /&gt;match protocol webex-app-sharing&lt;BR /&gt;match protocol webex-control&lt;BR /&gt;match protocol webex-meeting&lt;BR /&gt;match protocol wifi-calling&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;interface TwoGigabitEthernet0/0/0&lt;BR /&gt;switchport mode access&lt;BR /&gt;negotiation auto&lt;BR /&gt;no snmp trap link-status&lt;BR /&gt;!&lt;BR /&gt;interface TwoGigabitEthernet0/0/1&lt;BR /&gt;description conect test_only&lt;BR /&gt;switchport access vlan 17&lt;BR /&gt;switchport mode access&lt;BR /&gt;negotiation auto&lt;BR /&gt;no snmp trap link-status&lt;BR /&gt;!&lt;BR /&gt;interface TwoGigabitEthernet0/0/2&lt;BR /&gt;negotiation auto&lt;BR /&gt;no snmp trap link-status&lt;BR /&gt;!&lt;BR /&gt;interface TwoGigabitEthernet0/0/3&lt;BR /&gt;negotiation auto&lt;BR /&gt;no snmp trap link-status&lt;BR /&gt;!&lt;BR /&gt;interface TenGigabitEthernet0/1/0&lt;BR /&gt;no negotiation auto&lt;BR /&gt;no snmp trap link-status&lt;BR /&gt;!&lt;BR /&gt;interface TenGigabitEthernet0/1/1&lt;BR /&gt;description Connect to core switch TenG1/0/10&lt;BR /&gt;switchport mode trunk&lt;BR /&gt;no negotiation auto&lt;BR /&gt;no snmp trap link-status&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0&lt;BR /&gt;vrf forwarding Mgmt-intf&lt;BR /&gt;no ip address&lt;BR /&gt;negotiation auto&lt;BR /&gt;!&lt;BR /&gt;interface Vlan1&lt;BR /&gt;ip address 192.168.10.10 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface Vlan17&lt;BR /&gt;description MGMT_SVI&lt;BR /&gt;ip address 10.200.200.36 255.255.254.0&lt;BR /&gt;!&lt;BR /&gt;no ip http server&lt;BR /&gt;ip http authentication local&lt;BR /&gt;ip http secure-server&lt;BR /&gt;ip http secure-trustpoint TP-self-signed-275080374&lt;BR /&gt;ip http client source-interface Vlan1&lt;BR /&gt;ip forward-protocol nd&lt;BR /&gt;!&lt;BR /&gt;ip route 0.0.0.0 0.0.0.0 10.200.201.253&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;control-plane&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;line con 0&lt;BR /&gt;stopbits 1&lt;BR /&gt;line aux 0&lt;BR /&gt;line vty 0 4&lt;BR /&gt;password Konverge@123&lt;BR /&gt;login local&lt;BR /&gt;length 0&lt;BR /&gt;transport input all&lt;BR /&gt;line vty 5 15&lt;BR /&gt;login&lt;BR /&gt;transport input ssh&lt;BR /&gt;!&lt;BR /&gt;call-home&lt;BR /&gt;! If contact email address in call-home is configured as sch-smart-licensing@cisco.com&lt;BR /&gt;! the email address configured in Cisco Smart License Portal will be used as contact email address to send SCH notifications.&lt;BR /&gt;contact-email-addr sch-smart-licensing@cisco.com&lt;BR /&gt;profile "CiscoTAC-1"&lt;BR /&gt;active&lt;BR /&gt;destination transport-method http&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;redun-management interface Vlan1 chassis 1 address 10.200.200.37 chassis 2 address 10.200.200.38&lt;BR /&gt;!&lt;BR /&gt;wireless aaa policy default-aaa-policy&lt;BR /&gt;wireless cts-sxp profile default-sxp-profile&lt;BR /&gt;wireless management certificate ssc auth-token 0 Konverge@123&lt;BR /&gt;wireless management interface Vlan17&lt;BR /&gt;wireless profile airtime-fairness default-atf-policy 0&lt;BR /&gt;wireless profile flex Flex-P-Retail-1F&lt;BR /&gt;ip http client proxy 0.0.0.0 0&lt;BR /&gt;native-vlan-id 17&lt;BR /&gt;vlan-name MGMT&lt;BR /&gt;vlan-id 17&lt;BR /&gt;vlan-name Eternal&lt;BR /&gt;vlan-id 19&lt;BR /&gt;local-roaming&lt;BR /&gt;wireless profile flex Retail-building-1F&lt;BR /&gt;ip http client proxy 0.0.0.0 0&lt;BR /&gt;native-vlan-id 17&lt;BR /&gt;vlan-name MGMT&lt;BR /&gt;vlan-id 17&lt;BR /&gt;vlan-name Eternal&lt;BR /&gt;vlan-id 19&lt;BR /&gt;local-roaming&lt;BR /&gt;wireless profile flex default-flex-profile&lt;BR /&gt;description "default flex profile"&lt;BR /&gt;ip http client proxy 0.0.0.0 0&lt;BR /&gt;native-vlan-id 17&lt;BR /&gt;wireless profile mesh default-mesh-profile&lt;BR /&gt;description "default mesh profile"&lt;BR /&gt;wireless profile radio 5Ghz--profile&lt;BR /&gt;antenna count 0&lt;BR /&gt;description 5Ghz--profile&lt;BR /&gt;wireless profile radio default-radio-profile&lt;BR /&gt;description "Preconfigured default radio profile"&lt;BR /&gt;wireless profile policy Policy-P-Retail-1F&lt;BR /&gt;no central authentication&lt;BR /&gt;no central dhcp&lt;BR /&gt;no central switching&lt;BR /&gt;description Policy-P-Retail-1F&lt;BR /&gt;dhcp-tlv-caching&lt;BR /&gt;et-analytics enable&lt;BR /&gt;flex vlan-central-switching&lt;BR /&gt;http-tlv-caching&lt;BR /&gt;ipv4 dhcp required&lt;BR /&gt;ipv4 dhcp server 10.100.16.1&lt;BR /&gt;passive-client&lt;BR /&gt;vlan Eternal&lt;BR /&gt;no shutdown&lt;BR /&gt;wireless profile policy default-policy-profile&lt;BR /&gt;description "default policy profile"&lt;BR /&gt;dhcp-tlv-caching&lt;BR /&gt;http-tlv-caching&lt;BR /&gt;passive-client&lt;BR /&gt;radius-profiling&lt;BR /&gt;vlan Eternal&lt;BR /&gt;no shutdown&lt;BR /&gt;wireless tag site default-site-tag&lt;BR /&gt;description "default site tag"&lt;BR /&gt;fabric control-plane default-control-plane&lt;BR /&gt;flex-profile Retail-building-1F&lt;BR /&gt;no local-site&lt;BR /&gt;wireless tag site Site-Tage-Retail-1F&lt;BR /&gt;ap-profile AP-Join-P-Retail-1F&lt;BR /&gt;description Site-Tage-Retail-1F&lt;BR /&gt;fabric control-plane default-control-plane&lt;BR /&gt;flex-profile Flex-P-Retail-1F&lt;BR /&gt;no local-site&lt;BR /&gt;wireless tag policy default-policy-tag&lt;BR /&gt;wlan Test-R policy default-policy-profile&lt;BR /&gt;wlan Eternal policy default-policy-profile&lt;BR /&gt;wlan Eternal-R policy default-policy-profile&lt;BR /&gt;wireless tag policy Policy-Tag-Retail-1F&lt;BR /&gt;wlan Test-R policy Policy-P-Retail-1F&lt;BR /&gt;wlan Eternal policy Policy-P-Retail-1F&lt;BR /&gt;wlan Eternal-R policy Policy-P-Retail-1F&lt;BR /&gt;wireless tag rf 5Gz-RF-tag&lt;BR /&gt;5ghz-rf-policy 5GHz&lt;BR /&gt;wireless tag rf default-rf-tag&lt;BR /&gt;description "default RF tag"&lt;BR /&gt;wireless wps rogue ap init-timer 60&lt;BR /&gt;wireless wps rogue ap rldp alarm-only monitor-ap-only&lt;BR /&gt;wireless wps rogue security-level high&lt;BR /&gt;wireless fabric control-plane default-control-plane&lt;BR /&gt;wireless country IN&lt;BR /&gt;wlan Test-R 2 Test-R&lt;BR /&gt;ccx aironet-iesupport&lt;BR /&gt;load-balance&lt;BR /&gt;radio policy dot11 5ghz&lt;BR /&gt;security wpa psk set-key ascii 0 Admin@123&lt;BR /&gt;no security wpa akm dot1x&lt;BR /&gt;security wpa akm psk&lt;BR /&gt;no shutdown&lt;BR /&gt;wlan Eternal 1 Eternal&lt;BR /&gt;no broadcast-ssid&lt;BR /&gt;ccx aironet-iesupport&lt;BR /&gt;radio policy dot11 5ghz&lt;BR /&gt;security wpa psk set-key ascii 0 Eternal@123&lt;BR /&gt;no security wpa akm dot1x&lt;BR /&gt;security wpa akm psk&lt;BR /&gt;wlan Eternal-R 3 Eternal-R&lt;BR /&gt;ccx aironet-iesupport&lt;BR /&gt;load-balance&lt;BR /&gt;radio policy dot11 5ghz&lt;BR /&gt;security wpa psk set-key ascii 0 Admin@123&lt;BR /&gt;no security wpa akm dot1x&lt;BR /&gt;security wpa akm psk&lt;BR /&gt;universal-ap-admin&lt;BR /&gt;no shutdown&lt;BR /&gt;ap dot11 24ghz rf-profile Low_Client_Density_rf_24gh&lt;BR /&gt;coverage data rssi threshold -90&lt;BR /&gt;coverage level 2&lt;BR /&gt;coverage voice rssi threshold -90&lt;BR /&gt;description "pre configured Low Client Density rfprofile for 2.4gh radio"&lt;BR /&gt;high-density rx-sop threshold low&lt;BR /&gt;rate RATE_12M supported&lt;BR /&gt;rate RATE_24M supported&lt;BR /&gt;rate RATE_6M supported&lt;BR /&gt;tx-power v1 threshold -65&lt;BR /&gt;no shutdown&lt;BR /&gt;ap dot11 24ghz rf-profile High_Client_Density_rf_24gh&lt;BR /&gt;description "pre configured High Client Density rfprofile for 2.4gh radio"&lt;BR /&gt;high-density rx-sop threshold medium&lt;BR /&gt;rate RATE_11M disable&lt;BR /&gt;rate RATE_12M mandatory&lt;BR /&gt;rate RATE_1M disable&lt;BR /&gt;rate RATE_24M supported&lt;BR /&gt;rate RATE_2M disable&lt;BR /&gt;rate RATE_5_5M disable&lt;BR /&gt;rate RATE_6M disable&lt;BR /&gt;tx-power min 7&lt;BR /&gt;no shutdown&lt;BR /&gt;ap dot11 24ghz rf-profile Typical_Client_Density_rf_24gh&lt;BR /&gt;description "pre configured Typical Client Density rfprofile for 2.4gh radio"&lt;BR /&gt;rate RATE_11M disable&lt;BR /&gt;rate RATE_12M mandatory&lt;BR /&gt;rate RATE_1M disable&lt;BR /&gt;rate RATE_24M supported&lt;BR /&gt;rate RATE_2M disable&lt;BR /&gt;rate RATE_5_5M disable&lt;BR /&gt;rate RATE_6M disable&lt;BR /&gt;no shutdown&lt;BR /&gt;ap dot11 24ghz rrm channel cleanair-event&lt;BR /&gt;ap dot11 24ghz rrm channel cleanair-event rogue-contribution&lt;BR /&gt;ap dot11 24ghz cleanair alarm air-quality&lt;BR /&gt;ap dot11 24ghz cleanair alarm device&lt;BR /&gt;ap dot11 24ghz shutdown&lt;BR /&gt;ap dot11 24ghz rate RATE_12M supported&lt;BR /&gt;ap dot11 24ghz rate RATE_24M supported&lt;BR /&gt;ap dot11 24ghz rate RATE_6M supported&lt;BR /&gt;ap dot11 5ghz rf-profile 5GHz&lt;BR /&gt;channel chan-width 40&lt;BR /&gt;coverage data rssi threshold -65&lt;BR /&gt;coverage voice rssi threshold -65&lt;BR /&gt;description 5GHz&lt;BR /&gt;hsr-mode&lt;BR /&gt;rate RATE_12M disable&lt;BR /&gt;rate RATE_18M mandatory&lt;BR /&gt;rate RATE_24M supported&lt;BR /&gt;rate RATE_6M disable&lt;BR /&gt;rate RATE_9M disable&lt;BR /&gt;no shutdown&lt;BR /&gt;ap dot11 5ghz rf-profile Low_Client_Density_rf_5gh&lt;BR /&gt;coverage data rssi threshold -90&lt;BR /&gt;coverage level 2&lt;BR /&gt;coverage voice rssi threshold -90&lt;BR /&gt;description "pre configured Low Client Density rfprofile for 5gh radio"&lt;BR /&gt;high-density rx-sop threshold low&lt;BR /&gt;rate RATE_12M mandatory&lt;BR /&gt;rate RATE_24M mandatory&lt;BR /&gt;rate RATE_6M mandatory&lt;BR /&gt;tx-power v1 threshold -60&lt;BR /&gt;no shutdown&lt;BR /&gt;ap dot11 5ghz rf-profile High_Client_Density_rf_5gh&lt;BR /&gt;description "pre configured High Client Density rfprofile for 5gh radio"&lt;BR /&gt;high-density rx-sop threshold medium&lt;BR /&gt;rate RATE_12M mandatory&lt;BR /&gt;rate RATE_24M mandatory&lt;BR /&gt;rate RATE_6M disable&lt;BR /&gt;rate RATE_9M disable&lt;BR /&gt;tx-power min 7&lt;BR /&gt;tx-power v1 threshold -65&lt;BR /&gt;no shutdown&lt;BR /&gt;ap dot11 5ghz rf-profile Typical_Client_Density_rf_5gh&lt;BR /&gt;description "pre configured Typical Density rfprofile for 5gh radio"&lt;BR /&gt;rate RATE_12M mandatory&lt;BR /&gt;rate RATE_24M mandatory&lt;BR /&gt;rate RATE_6M mandatory&lt;BR /&gt;no shutdown&lt;BR /&gt;ap dot11 5ghz rrm channel cleanair-event&lt;BR /&gt;ap dot11 5ghz rrm channel cleanair-event rogue-contribution&lt;BR /&gt;ap dot11 5ghz edca-parameters fastlane&lt;BR /&gt;ap dot11 5ghz rate RATE_12M disable&lt;BR /&gt;ap dot11 5ghz rate RATE_18M mandatory&lt;BR /&gt;ap dot11 5ghz rate RATE_24M supported&lt;BR /&gt;ap dot11 5ghz rate RATE_6M disable&lt;BR /&gt;ap dot11 5ghz rate RATE_9M disable&lt;BR /&gt;ap country IN&lt;BR /&gt;ap fra&lt;BR /&gt;ap tag-source-priority 2 source filter&lt;BR /&gt;ap tag-source-priority 3 source ap&lt;BR /&gt;ap location name Retail-building-1F&lt;BR /&gt;ap-eth-mac 889c.ad4a.b720&lt;BR /&gt;ap-eth-mac 889c.ad4b.7ba4&lt;BR /&gt;ap-eth-mac 889c.ad4b.bcac&lt;BR /&gt;ap-eth-mac 889c.ad4b.d2c8&lt;BR /&gt;ap-eth-mac 889c.ad4b.d7b8&lt;BR /&gt;ap-eth-mac 889c.ad4b.dfd4&lt;BR /&gt;ap-eth-mac 889c.ad4b.e45c&lt;BR /&gt;ap-eth-mac 889c.ad4b.f6b4&lt;BR /&gt;ap-eth-mac 889c.ad4b.ffa4&lt;BR /&gt;ap-eth-mac 889c.ad4c.13cc&lt;BR /&gt;ap-eth-mac 889c.ad4c.1f2c&lt;BR /&gt;description Retail-building&lt;BR /&gt;tag policy Policy-Tag-Retail-1F&lt;BR /&gt;tag rf 5Gz-RF-tag&lt;BR /&gt;tag site Site-Tage-Retail-1F&lt;BR /&gt;ap profile default-ap-profile&lt;BR /&gt;country IN&lt;BR /&gt;description "default ap profile"&lt;BR /&gt;ntp ip 0.0.0.0&lt;BR /&gt;rogue detection containment auto-rate&lt;BR /&gt;rogue detection min-rssi -80&lt;BR /&gt;rogue detection min-transient-time 300&lt;BR /&gt;rogue detection report-interval 30&lt;BR /&gt;syslog host 255.255.255.255&lt;BR /&gt;ap profile AP-Join-P-Retail-1F&lt;BR /&gt;country IN&lt;BR /&gt;description AP-Join-P-Retail-1F&lt;BR /&gt;link-latency&lt;BR /&gt;mgmtuser username Ap2 password 0 Admin@123 secret 0 Admin@123&lt;BR /&gt;ntp ip 0.0.0.0&lt;BR /&gt;preferred-mode ipv4&lt;BR /&gt;rogue detection min-rssi -80&lt;BR /&gt;ssh&lt;BR /&gt;statistics ap-system-monitoring alarm-enable&lt;BR /&gt;statistics ap-system-monitoring enable&lt;BR /&gt;syslog host 255.255.255.255&lt;BR /&gt;ap 889c.ad4b.7ba4&lt;BR /&gt;policy-tag Policy-Tag-Retail-1F&lt;BR /&gt;rf-tag 5Gz-RF-tag&lt;BR /&gt;site-tag Site-Tage-Retail-1F&lt;BR /&gt;trapflags ap crash&lt;BR /&gt;trapflags ap noradiocards&lt;BR /&gt;trapflags ap register&lt;BR /&gt;end&lt;/P&gt;
&lt;P&gt;WLC-ZOMATO-1#&lt;BR /&gt;WLC-ZOMATO-1#&lt;/P&gt;
&lt;P&gt;-------------------------------------&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 17:26:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744174#M249767</guid>
      <dc:creator>Ramprasad2</dc:creator>
      <dc:date>2022-12-22T17:26:34Z</dc:date>
    </item>
    <item>
      <title>Re: 9800wlc-L-F not access http/https access</title>
      <link>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744178#M249768</link>
      <description>&lt;P&gt;vlan 19 but not access http and https&amp;nbsp; - we are not able to understand this, are you looking from VLAN to access WLC http and https ?&lt;/P&gt;
&lt;P&gt;or internet ?&lt;/P&gt;
&lt;P&gt;if internet is the issue -&amp;nbsp; you need to look at the route going to device having IP&amp;nbsp; 10.200.201.253 ( check routing back and NAT for RFC1918 addressing)&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 17:46:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744178#M249768</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-12-22T17:46:15Z</dc:date>
    </item>
    <item>
      <title>Re: 9800wlc-L-F not access http/https access</title>
      <link>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744187#M249770</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;- Review the configuration of the&amp;nbsp;&lt;SPAN&gt;&amp;nbsp;9800L-F controller with the CLI command&amp;nbsp;&lt;STRONG&gt;&amp;nbsp;&lt;/STRONG&gt;&lt;FONT color="#008000"&gt;&lt;STRONG&gt;show&amp;nbsp; tech&lt;/STRONG&gt;&amp;nbsp;&amp;nbsp;&lt;STRONG&gt;&lt;U&gt;&amp;nbsp;wireless&lt;/U&gt;&lt;/STRONG&gt;&lt;/FONT&gt;&amp;nbsp;, have the output analyzed by&amp;nbsp;&amp;nbsp;&lt;A href="https://cway.cisco.com/tools/WirelessAnalyzer/" target="_blank" rel="noopener nofollow noreferrer" data-saferedirecturl="https://www.google.com/url?q=https://cway.cisco.com/tools/WirelessAnalyzer/&amp;amp;source=gmail&amp;amp;ust=1662270212514000&amp;amp;usg=AOvVaw1v8X824xUFwNwiDM_o5Fxf"&gt;https://cway.cisco.com/&lt;WBR /&gt;tools/WirelessAnalyzer/&lt;/A&gt;&amp;nbsp; , please note do not use classical&lt;FONT color="#FF0000"&gt;&amp;nbsp;show tech-support&lt;/FONT&gt;&amp;nbsp;(short version) , use the command denoted in green for &lt;STRONG&gt;Wireless Analyzer&lt;/STRONG&gt;.&amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp;&lt;EM&gt;&amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;Checkout all advisories! Also note that all advisories &lt;FONT color="#FF0000"&gt;red-flagged&lt;/FONT&gt; should be&lt;U&gt;&lt;FONT color="#008000"&gt; corrected!!&lt;/FONT&gt;&lt;/U&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;M.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 18:06:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744187#M249770</guid>
      <dc:creator>Mark Elsen</dc:creator>
      <dc:date>2022-12-22T18:06:18Z</dc:date>
    </item>
    <item>
      <title>Re: 9800wlc-L-F not access http/https access</title>
      <link>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744192#M249771</link>
      <description>&lt;P&gt;I have a Catalyst 9800 L-F&amp;nbsp; in a test environement with three 9120 APs in Flex mode. I have enabled "wireless mgmt-via-wireless". But when I am connected over wireless with a client that is connected in the same vlan ( vlan1) as the controller I can´t access the controller itself. All other IPs within the network are reachable.&lt;/P&gt;
&lt;P&gt;When I am connected via cable - everything is working fine.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do you have an idea what is going worng?&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 18:23:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744192#M249771</guid>
      <dc:creator>Ramprasad2</dc:creator>
      <dc:date>2022-12-22T18:23:33Z</dc:date>
    </item>
    <item>
      <title>Re: 9800wlc-L-F not access http/https access</title>
      <link>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744195#M249772</link>
      <description>&lt;P&gt;&lt;SPAN&gt;wireless mgmt-via-wireless &amp;lt;&amp;lt;&amp;lt;- need this&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 18:39:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744195#M249772</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2022-12-22T18:39:11Z</dc:date>
    </item>
    <item>
      <title>Re: 9800wlc-L-F not access http/https access</title>
      <link>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744201#M249774</link>
      <description>&lt;P&gt;it has configured already&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 18:47:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744201#M249774</guid>
      <dc:creator>Ramprasad2</dc:creator>
      <dc:date>2022-12-22T18:47:42Z</dc:date>
    </item>
    <item>
      <title>Re: 9800wlc-L-F not access http/https access</title>
      <link>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744250#M249779</link>
      <description>&lt;P&gt;You running FlexConnect?&amp;nbsp;&lt;A href="https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvu29200" target="_blank"&gt;CSCvu29200 : Bug Search Tool (cisco.com)&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 22 Dec 2022 21:42:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744250#M249779</guid>
      <dc:creator>Scott Fella</dc:creator>
      <dc:date>2022-12-22T21:42:58Z</dc:date>
    </item>
    <item>
      <title>Re: 9800wlc-L-F not access http/https access</title>
      <link>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744570#M249800</link>
      <description>&lt;P&gt;&lt;SPAN&gt;no ip http server &amp;lt;- can you enable http it can that user use http not https&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 23 Dec 2022 12:30:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/4744570#M249800</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2022-12-23T12:30:48Z</dc:date>
    </item>
    <item>
      <title>Re: 9800wlc-L-F not access http/https access</title>
      <link>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/5346854#M287443</link>
      <description>&lt;P&gt;Hi Brother,&lt;/P&gt;&lt;P&gt;How did you fix this issue ? I am having the same issue&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 13 Nov 2025 14:12:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/9800wlc-l-f-not-access-http-https-access/m-p/5346854#M287443</guid>
      <dc:creator>aneesap90</dc:creator>
      <dc:date>2025-11-13T14:12:34Z</dc:date>
    </item>
  </channel>
</rss>

