The "[ERROR] spam_lrad.c 1553: spamProcessJoinRequest :spamDecodeJoinReq failed" error message appea...
The "[ERROR] spam_lrad.c 1553: spamProcessJoinRequest :spamDecodeJoinReq failed" error message appears during the upgrade of AP from Autonomous to LWAPP mode and is connected to the Wireless LAN Controller that runs version 3.2
With self-signed certificate access points (SSC APs), the SSC AP policy is disabled. The reason is that the AP Auth List has to have the hash keys as the WLC needs the key-hash with the MAC address of the access point and accept ssc enabled for them to join the WLC.
In such cases, you see this error message on the controller:
Wed Aug 9 17:20:21 2006 [ERROR] spam_lrad.c 1553: spamProcessJoinRequest :spamDecodeJoinReq failed Wed Aug 9 17:20:21 2006 [ERROR] spam_crypto.c 1509: Unable to free public key for AP 00:12:44:B3:E5:60 Wed Aug 9 17:20:21 2006 [ERROR] spam_lrad.c 4880: LWAPP Join-Request does not include valid certificate in CERTIFICATE_PAYLOAD from AP 00:12:44:b3:e5:60. Wed Aug 9 17:20:21 2006 [CRITICAL] sshpmPkiApi.c 1493: Not configured to accept Self-signed AP cert
You need to complete these steps and perform one of these two actions:
Issue the show auth-list command at the controller CLI in order to check for whether the controller is configured to accept APs with SSCs.
This is a sample output of show auth-list command:
Authorize APs against AAA ....................... disabled
Allow APs with Self-signed Certificate (SSC) .... enabled
i have tried to search everywhere without been able to get a real answer, does the vWLC (Cisco Virtual Wireless Controller) support the 802.11ac Radio Module installed on the 3600 and 3700 Cisco AP´s ?i can see the M module mentioned on the compatibi...
Hi,We have Catalyst 9800-40 WLC , and we are facing the issue "Two Access Points with same name are not able to join controller "I tried to add new access points . Initially APs joined controller and their MAC ID was shown in Access point list. ...
Hi AP c9130 joined to C9800 wlc. and then changed name for the AP and made some change on the WLC. Please see the screenshot. But we still cannot access the AP via ssh. Did we miss some step or some step is wrong? Thank you
Hi everyone,I was reviewing the configuration of a C9800 yesterday and I stumbled on this configuration line :access-session mac-move deny I went googling about it and I sort of understand the key concept behind it, being that if it is set to deny, a...
I configured our new C9800 to send logs to our syslog server. logging facility local0
logging source-interface GigabitEthernet0 vrf Mgmt-intf
logging host x.x.x.xAs you can see I want to send the messages via the out-of-band management interface.This...