<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Wireless lan Controller  Session timeout and lwapp question in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367212#M79962</link>
    <description>&lt;P&gt;Hello, I am a bit confused about the session timeout value&amp;nbsp; found in Wlan&amp;gt;advanced tab. our setting is set to 1800 which is the default. Our vendor just told us that this could be causing the client disconnect that we are seeing.&amp;nbsp; I was under the impression that if a wireless client is connected and active it would not time out unless it is idle for longer than a give time. Can someone please explain what the WLAN session timeout vlaue affects...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Question Q2&lt;/P&gt;&lt;P&gt;Our ventor also indicated to us that the LWAP was used for routing traffic through the WISM.&amp;nbsp;&amp;nbsp; Our LWAPP is a layer 3 lwap.&amp;nbsp; we are using DIstributed MA-850.&amp;nbsp; Can the LWAPP tunnels cause client timeouts.&lt;/P&gt;</description>
    <pubDate>Sun, 04 Jul 2021 01:35:31 GMT</pubDate>
    <dc:creator>janet.maxwell</dc:creator>
    <dc:date>2021-07-04T01:35:31Z</dc:date>
    <item>
      <title>Wireless lan Controller  Session timeout and lwapp question</title>
      <link>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367212#M79962</link>
      <description>&lt;P&gt;Hello, I am a bit confused about the session timeout value&amp;nbsp; found in Wlan&amp;gt;advanced tab. our setting is set to 1800 which is the default. Our vendor just told us that this could be causing the client disconnect that we are seeing.&amp;nbsp; I was under the impression that if a wireless client is connected and active it would not time out unless it is idle for longer than a give time. Can someone please explain what the WLAN session timeout vlaue affects...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Question Q2&lt;/P&gt;&lt;P&gt;Our ventor also indicated to us that the LWAP was used for routing traffic through the WISM.&amp;nbsp;&amp;nbsp; Our LWAPP is a layer 3 lwap.&amp;nbsp; we are using DIstributed MA-850.&amp;nbsp; Can the LWAPP tunnels cause client timeouts.&lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 01:35:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367212#M79962</guid>
      <dc:creator>janet.maxwell</dc:creator>
      <dc:date>2021-07-04T01:35:31Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless lan Controller  Session timeout and lwapp question</title>
      <link>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367213#M79963</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Janet,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; In response to Question #1, the session timeout means that your authenticated user session expires in 1800 seconds, it is not an activity or idle timeout.&amp;nbsp; So depending on your authentication method, this could cause your client to disconnect, I typically set this to 28800 (8 hours) unless the client has a specific requirement to re-authenticate more often.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; In response to Question #2, the LWAPP tunnel that is built between the controller and the access point is used for all traffic between the Access point and the controller (Data, Management, Client). When a client attaches to a LWAPP AP their traffic is sent to the controller thru the LWAPP encapsulate tunnel, when it reaches the controller, it then routes the data and puts it onto the actual wired network, and data sent from the wired network to the client is sent to the controller, then encapsulated in the tunnel to the AP, and then the AP sends it to the client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; The only exception to this is when you have an access point in H-REAP mode and have the WLAN terminating locally. In this case the Management traffic is sent via the LWAPP tunnel, but user traffic is terminated locally on the switch and routed as if it were a wired client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps answer your questions.. Feel free to rate this answer.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kayle&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 08 Mar 2010 21:31:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367213#M79963</guid>
      <dc:creator>Kayle Miller</dc:creator>
      <dc:date>2010-03-08T21:31:00Z</dc:date>
    </item>
    <item>
      <title>Re: Wireless lan Controller  Session timeout and lwapp question</title>
      <link>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367214#M79964</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;A href="http://www.ciscosystems.com/application/pdf/paws/98673/wlc-design-ftrs-faq.pdf"&gt;From this document:&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;(Page 13)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The Session Timeout is the maximum time for a client session with the WLC. After this&lt;/P&gt;&lt;P&gt;time, WLC de−authenticates the client, and the client goes through the whole authentication&lt;/P&gt;&lt;P&gt;(re−authentication) process again. This is a part of a security precaution to rotate the&lt;/P&gt;&lt;P&gt;encryption keys. If you use an Extensible Authentication Protocol (EAP) method with key&lt;/P&gt;&lt;P&gt;management, the rekeying occurs at every regular interval in order to derive a new encryption&lt;/P&gt;&lt;P&gt;key. Without key management, this timeout value is the time that wireless clients need to do a&lt;/P&gt;&lt;P&gt;full reauthentication. The session timeout is specific to the WLAN. This parameter can be&lt;/P&gt;&lt;P&gt;accessed from the WLANs &amp;gt; Edit menu.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Mar 2010 13:53:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367214#M79964</guid>
      <dc:creator>BRYN JONES</dc:creator>
      <dc:date>2010-03-09T13:53:51Z</dc:date>
    </item>
    <item>
      <title>Wireless lan Controller  Session timeout and lwapp question</title>
      <link>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367215#M79965</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What happen if i disable the session timeout and the user change its password in ldap. Willl it ask to re-authenticate or will keep the old credential.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Jul 2013 09:35:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367215#M79965</guid>
      <dc:creator>raypotot</dc:creator>
      <dc:date>2013-07-16T09:35:03Z</dc:date>
    </item>
    <item>
      <title>Wireless lan Controller  Session timeout and lwapp question</title>
      <link>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367216#M79966</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;By default, the session timeout parameter is configured for 1800 seconds &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; before a reauthentication occurs. &lt;/P&gt;&lt;P&gt;In order to access the session timeout parameter, click the &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;STRONG&gt;WLANs&lt;/STRONG&gt; menu in the GUI. It displays the list of WLANs &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; configured in the WLC. Click the WLAN to which the client belongs. Go to &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; the&lt;STRONG&gt; Advanced &lt;/STRONG&gt;tab and you find &lt;EM&gt;Enable Session &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Timeout&lt;/EM&gt; parameter. Change the default value to 180, and click &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;STRONG&gt;Apply&lt;/STRONG&gt; for the changes to take effect. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When sent in an Access-Accept, along with a Termination-Action value of &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; RADIUS-Request, the Session-Timeout attribute specifies the maximum number of &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; seconds of service provided before re-authentication. In this case, the &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Session-Timeout attribute is used to load the ReAuthPeriod constant within the &amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Reauthentication Timer state machine of 802.1X. &lt;/P&gt;&lt;P&gt; For more details please check the following cisco doc:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/ps6366/products_qanda_item09186a00808b4c61.shtml"&gt;http://www.cisco.com/en/US/products/ps6366/products_qanda_item09186a00808b4c61.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;Hope this helps!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 17 Jul 2013 02:16:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367216#M79966</guid>
      <dc:creator>mmangat</dc:creator>
      <dc:date>2013-07-17T02:16:02Z</dc:date>
    </item>
    <item>
      <title>I know this an old post but</title>
      <link>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367217#M79967</link>
      <description>&lt;P&gt;I know this an old post but we are testing the session timeout on the&amp;nbsp;Wireless&amp;nbsp;Controller if we disable the timeout will that have any adverse affects. They were set to re-authenticate every 30 minutes not sure what the magic timeout should be but we thought we would test without any.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Bryan&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Aug 2015 17:44:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/1367217#M79967</guid>
      <dc:creator>BRYAN FORD</dc:creator>
      <dc:date>2015-08-19T17:44:14Z</dc:date>
    </item>
    <item>
      <title>Re: I know this an old post but</title>
      <link>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/3388889#M79968</link>
      <description>&lt;P&gt;Althoug almost 3 years has past since you post this message, I'm suffering same 30 minutes re-auth issue today. Did you find solution to avoid this 30 minutes re-auth? Thanks.&lt;/P&gt;</description>
      <pubDate>Fri, 25 May 2018 02:12:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/wireless-lan-controller-session-timeout-and-lwapp-question/m-p/3388889#M79968</guid>
      <dc:creator>Jose Wang</dc:creator>
      <dc:date>2018-05-25T02:12:03Z</dc:date>
    </item>
  </channel>
</rss>

