cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
119
Views
0
Helpful
2
Replies
Highlighted
Beginner

Cisco 1702i access point not able to join 1832 mobility express.

Dear Community,

 

During the joining process of 1702i with 1832 mobility express i got the the following error.

 

*Apr 13 08:30:27.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.1.1.41 peer_port: 5246
*Apr 13 08:30:33.011: DTLS_CLIENT_ERROR: ../capwap/base_capwap/dtls/base_capwap_dtls_record.c:394 BD is not of DTLS Change Cipher Spec type
*Apr 13 08:30:33.011: %DTLS-5-SEND_ALERT: Send FATAL : Internal error Alert to 10.1.1.41:5246
*Apr 13 08:30:33.011: %DTLS-5-SEND_ALERT: Send FATAL : Close notify Alert to 10.1.1.41:5246
*Apr 13 08:31:31.999: AP has SHA2 MIC certificate - Using SHA2 MIC certificate for DTLS.

*Apr 13 08:31:32.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.1.1.41 peer_port: 5246
*Apr 13 08:31:32.000: DTLS_CLIENT_ERROR: ../capwap/base_capwap/dtls/base_capwap_dtls_handshake.c:929 Unexpected message received while expecting HelloVerifyRequest
*Apr 13 08:31:32.000: %DTLS-5-SEND_ALERT: Send FATAL : Unexpected message Alert to 10.1.1.41:5246
*Apr 13 08:31:32.000: %DTLS-5-SEND_ALERT: Send FATAL : Close notify Alert to 10.1.1.41:5246
*Apr 13 08:32:46.999: AP has SHA2 MIC certificate - Using SHA2 MIC certificate for DTLS.

 

KIndly Help.

2 REPLIES 2
Rising star

Re: Cisco 1702i access point not able to join 1832 mobility express.

1) look at this post for some optional causes

2) and this Field Notice: FN - 63916

that says: Some Wireless Access Points (APs) manufactured between August 2014 and October 2014 might have an incorrectly programmed SHA-2 certificate.

3) check the software version on the 1702 is compatible with the version ME version on the 1832

Cisco Mobility Express Solution Compatibility Matrix

 

Cisco Employee

Re: Cisco 1702i access point not able to join 1832 mobility express.

Hello, try to use config ap dtls-version dtls_all command and check if the APs are able to connect to the WLC again. 

CreatePlease to create content
Content for Community-Ad
August's Community Spotlight Awards