cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2027
Views
15
Helpful
8
Replies

Join indoor AP 3600 with mesh soft to 5760 controller to convert in local mode

Alexey Belousov
Level 1
Level 1

I have several indoor AP 3600 with mesh soft and WLC 5760.

I need to join these APs to convert to local mode but i can't.

Jan 17 15:38:00.274: *spamApTask0: 1 wcm:  %LWAPP-3-RADIUS_ERR: Could not send join reply, AP authorization failed; AP:34:db:fd:43:50:90 

Jan 17 15:38:00.275: *spamApTask1: 1 wcm:  %CAPWAP-3-DATA_TUNNEL_DELETE_ERR2: Failed to delete CAPWAP data tunnel with interface id: 0x0 from internal database. Reason: AVL database entry not found

Indoor AP 3600 in local mode I loined to the this controller.

Thanks!

1 Accepted Solution

Accepted Solutions

Configure this and try again:

aaa authorization network mac-filter local

https://supportforums.cisco.com/message/4037522#4037522

Regards

View solution in original post

8 Replies 8

Sandeep Choudhary
VIP Alumni
VIP Alumni

Hi,,

Did you add the AP MAC to your AP Policies section of the WLC?  It seems like the WLC may be rejecting the AP join due to this.

Check the AP credentials on the RADIUS server, or the local MAC filtering table - if it was configured. Also check if RADIUS servers are configured and are reachable.

Security > AAA > MAC filter

or

Security>AAA>AP Polices

also paste the output of these:

WLC: sh sysinfo

AP: sh inventory

AP: sh version

Regards

Dont forget to rate helpful posts

Hi!

My WLC 5760  has IOS-XE 03.02.02.SE. Have wlc support local MAC filtering table ? If yes, how can i configure it?

wlc-m35-lan-1#sh inventory

NAME: "Switch 1", DESCR: "AIR-CT5760-6"

PID: AIR-CT5760        , VID: V02  , SN: FOC1742V0ZB

NAME: "Switch 1 - Power Supply B", DESCR: "Switch 1 - Power Supply B"

PID: PWR-C1-350WAC     , VID: V01  , SN: AZS172203H

NAME: "TenGigabitEthernet1/0/1", DESCR: "10/100/1000BaseTX SFP"

PID:                    , VID:      , SN: AGM162021W7   

wlc-m35-lan-1#

wlc-m35-lan-1#sh ver

Cisco IOS Software, IOS-XE Software, 5700 Series Wireless LAN Controller Software (CT5760-IPSERVICESK9-M), Version 03.02.02.SE RELEASE SOFTWARE (fc2)

Technical Support: http://www.cisco.com/techsupport

Copyright (c) 1986-2013 by Cisco Systems, Inc.

Compiled Fri 14-Jun-13 20:47 by prod_rel_team

Cisco IOS-XE software, Copyright (c) 2005-2013 by cisco Systems, Inc.

All rights reserved.  Certain components of Cisco IOS-XE software are

licensed under the GNU General Public License ("GPL") Version 2.0.  The

software code licensed under GPL Version 2.0 is free software that comes

with ABSOLUTELY NO WARRANTY.  You can redistribute and/or modify such

GPL code under the terms of GPL Version 2.0.

(http://www.gnu.org/licenses/gpl-2.0.html) For more details, see the

documentation or "License Notice" file accompanying the IOS-XE software,

or the applicable URL provided on the flyer accompanying the IOS-XE

software.

ROM: IOS-XE ROMMON

BOOTLDR: CT5760 Boot Loader (CT5760-HBOOT-M) Version 1.0, RELEASE SOFTWARE (P)

wlc-m35-lan-1 uptime is 2 hours, 53 minutes

Uptime for this control processor is 2 hours, 54 minutes

System returned to ROM by reload at 15:54:29 UTC Fri Jan 17 2014

System image file is "flash:packages.conf"

Last reload reason: Reload command

This product contains cryptographic features and is subject to United

States and local country laws governing import, export, transfer and

use. Delivery of Cisco cryptographic products does not imply

third-party authority to import, export, distribute or use encryption.

Importers, exporters, distributors and users are responsible for

compliance with U.S. and local country laws. By using this product you

agree to comply with applicable laws and regulations. If you are unable

to comply with U.S. and local laws, return this product immediately.

A summary of U.S. laws governing Cisco cryptographic products may be found at:

http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email to

export@cisco.com.

License Level: Ipservices

License Type: Permanent

Next reload license Level: Ipservices

cisco AIR-CT5760 (i686) processor with 10485760K bytes of physical memory.

Processor board ID FOC1742V0ZB

2 Virtual Ethernet interfaces

6 Ten Gigabit Ethernet interfaces

2048K bytes of non-volatile configuration memory.

10485760K bytes of physical memory.

255000K bytes of Crash Files at crashinfo:.

3612840K bytes of Flash at flash:.

0K bytes of Dummy USB Flash at usbflash0:.

0K bytes of  at webui:.

Base Ethernet MAC Address          : 18:9c:5d:10:98:80

Motherboard Assembly Number        : 73-14448-04

Motherboard Serial Number          : FOC1741440N

Model Revision Number              : A0

Model Number                       : AIR-CT5760

System Serial Number               : FOC1742V0ZB

Switch Ports Model              SW Version        SW Image              Mode  

------ ----- -----              ----------        ----------            ----  

     1 6     AIR-CT5760         03.02.02.SE       ct5760-ipservicesk9   INSTALL

Configuration register is 0x201 (will be 0x102 at next reload)

wlc-m35-lan-1#



Configure this and try again:

aaa authorization network mac-filter local

https://supportforums.cisco.com/message/4037522#4037522

Regards

Thanks, this comment was useful and this link.

I have configured the following and it helped:

"

aaa new-model

aaa atothorization network default local

username [mac] mac

"

after that AP registered

then I configured the following

"

ap name [name] mode local

"

And this AP converted from bridge to local mode!

Thank you!

Saravanan Lakshmanan
Cisco Employee
Cisco Employee

Mesh mode is not supported yet on 5760/3850 controllers.

if you have legacy controller then use it to convert to local mode.

on ap try, test ap mode local.

Good catch  Saravanan +5

@Abelousov:

What deployment modes can the Cisco 5760 WLC and Cisco Catalyst 3850 support?

A. The Cisco 5760 WLC can operate in centralized mode (also known as local mode) as well as converged access mode, whereas the Cisco Catalyst 3850 operates in converged access mode. At this time, there is no support for office-extend access points, indoor or outdoor mesh, or FlexConnect access points on the Cisco 5760 WLC and Cisco Catalyst 3850.

http://www.cisco.com/en/US/prod/collateral/wireless/ps6302/ps8322/ps12598/qa_c67-726507.html

Regards

If this (test ap mode local) does not work, you can use the MODE button & load a Lightweigh recovery image to these 3600 APs & then connect to 5760. That should work

Below explain the mode buttone conversion process

http://mrncciew.com/2013/12/13/ap-conversion-using-mode-button/

HTH

Rasika

**** Pls rate all useful responses ****

Saravanan Lakshmanan
Cisco Employee
Cisco Employee

including the right command.

AP#debug capwap con cli

AP#test mesh mode local

Review Cisco Networking products for a $25 gift card