cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
26779
Views
57
Helpful
44
Replies

Trying to get AIR-AP1562I-E-K9 to Join WLC

jbo@Thisted.dk
Level 1
Level 1

Hey

Hope you can help regarding this Isue

WLC AIR-CT5520-K9 

Running 8.3.121.0 

 

I have added to MAC address on the label in side of the AP to the Controller.

Advanced - Security - Mac Filtering - Any Wlan

 

But I keep getting this error from the AP

[*08/29/2017 08:59:00.4886] CAPWAP State: Discovery
[*08/29/2017 08:59:00.4897] IP DNS query for CISCO-CAPWAP-CONTROLLER.skoler.thisted.dk
[*08/29/2017 08:59:00.4926] DNS resolved CISCO-CAPWAP-CONTROLLER.skoler.thisted.dk
[*08/29/2017 08:59:00.4927] DNS discover IP addr: 10.5.1.15
[*08/29/2017 08:59:00.4944] Discovery Request sent to 10.5.1.15, discovery type DNS(3)
[*08/29/2017 08:59:00.4955] Discovery Request sent to 255.255.255.255, discovery type UNKNOWN(0)
[*08/29/2017 08:59:00.4956] Discovery Response from 10.5.1.15
[*08/29/2017 08:59:01.0000] Discovery response from MWAR 'WLC01'running version 8.3.121.0 is rejected.
[*08/29/2017 08:59:01.0001] Failed to decode discovery response.
[*08/29/2017 08:59:01.0001] CAPWAP SM handler: Failed to process message type 2 state 2.
[*08/29/2017 08:59:01.0001] Failed to handle capwap control message from controller - status 4
[*08/29/2017 08:59:01.0001] Failed to process unencrypted capwap packet 0x2334000 from 10.5.1.15
[*08/29/2017 08:59:01.0001] Failed to send capwap message 0 to the state machine. Packet already freed.
[*08/29/2017 08:59:01.0001] IPv4 wtpProcessPacketFromSocket returned 4

 

After a while failing the above ending in this

[*08/29/2017 09:04:01.9860] CAPWAP State: Discovery
[*08/29/2017 09:04:01.9871] IP DNS query for CISCO-CAPWAP-CONTROLLER.XXXX.XXXX.dk
[*08/29/2017 09:04:03.3293] DOT11_DRV[0]: set_channel Channel set to 4
[*08/29/2017 09:04:03.5923] DOT11_DRV[1]: set_channel Channel set to 112
[*08/29/2017 09:04:05.5272] DOT11_DRV[0]: set_channel Channel set to 5
[*08/29/2017 09:04:05.7945] DOT11_DRV[1]: set_channel Channel set to 116
[*08/29/2017 09:04:07.7255] DOT11_DRV[0]: set_channel Channel set to 6
[*08/29/2017 09:04:07.9797] DOT11_DRV[1]: set_channel Channel set to 132
[*08/29/2017 09:04:09.9126] DOT11_DRV[0]: set_channel Channel set to 7
[*08/29/2017 09:04:10.1709] DOT11_DRV[1]: set_channel Channel set to 136
[*08/29/2017 09:04:12.1082] DOT11_DRV[0]: set_channel Channel set to 8
[*08/29/2017 09:04:12.3631] DOT11_DRV[1]: set_channel Channel set to 140
[*08/29/2017 09:04:14.3061] DOT11_DRV[0]: set_channel Channel set to 9
[*08/29/2017 09:04:14.5484] DOT11_DRV[1]: set_channel Channel set to 100
[*08/29/2017 09:04:16.5042] DOT11_DRV[0]: set_channel Channel set to 10
[*08/29/2017 09:04:16.7341] DOT11_DRV[1]: set_channel Channel set to 104
[*08/29/2017 09:04:16.9988] DNS resolved CISCO-CAPWAP-CONTROLLER.XXXXX.XXXXX.dk
[*08/29/2017 09:04:16.9989] DNS discover IP addr: 10.5.1.15
[*08/29/2017 09:04:17.0002] Discovery Request sent to 10.5.1.15, discovery type DNS(3)
[*08/29/2017 09:04:17.0014] Discovery Request sent to 255.255.255.255, discovery type UNKNOWN(0)
[*08/29/2017 09:04:18.7023] DOT11_DRV[0]: set_channel Channel set to 11
[*08/29/2017 09:04:18.9195] DOT11_DRV[1]: set_channel Channel set to 108
[*08/29/2017 09:04:20.9001] DOT11_DRV[0]: set_channel Channel set to 12
[*08/29/2017 09:04:21.1236] DOT11_DRV[1]: set_channel Channel set to 112
[*08/29/2017 09:04:23.0856] DOT11_DRV[0]: set_channel Channel set to 13
[*08/29/2017 09:04:23.3248] DOT11_DRV[1]: set_channel Channel set to 116
[*08/29/2017 09:04:25.2683] DOT11_DRV[0]: set_channel Channel set to 1
[*08/29/2017 09:04:25.5099] DOT11_DRV[1]: set_channel Channel set to 132

 

 

Anyone Knows what I am doing wrong!

 

Regards 

Johnni

44 Replies 44

Thanks again for your reply

Here are the results from the AP
sh ip interface brief
Interface IP-Address Method Status Protocol Speed
wired0 10.13.1.65 DHCP up up 1000
wifi0 n/a n/a up up n/a
wifi1 n/a n/a up up n/a

We do have a time server - Sorry My Copy/Paste did not get it all.

(Cisco Controller) >show time

Time............................................. Wed Aug 30 13:17:23 2017

Timezone delta................................... 0:0
Timezone location................................ (GMT +1:00) Amsterdam, Berlin, Rome, Vienna

NTP Servers
NTP Polling Interval......................... 600

Index NTP Key Index NTP Server Status NTP Msg Auth Status
------- ----------------------------------------------------------------------------------------------
1 0 217.116.227.3 In Sync AUTH DISABLED


It made no difference whit this command.
"capwap ap primary-base <CONTROLLER NAME> <CONTROLLER IP ADDRESS>"

:(

Regards
Johnni

The IP address of the AP and the WLC are on different subnets. Can the AP ping the Management IP address of the controller?

Thanks for your reply

Nice Catch.....

But yes the are abel to See eachother - We do have more subnets - But ALL the 800 AP, is located on the same net.

I did test the Switch I am trying to connect to AP to whit a 2802I (our new choice of AP) - That one goes online, and have no trouble Connecting to my WLC, and are being shown in my Prime.

 

So the problem is whit the AP1562I as I see it. 

 

Regards

 

 

Hi,

Are you sure that you add the AP mac addess on WLC?

Complete these steps:

  1. From the WLC controller GUI, click Security > AP Policies. The AP Policies page appears.
  2. Click the Add button on the right hand side of the screen.
  3. Under Add AP to Authorization List, enter the AP MAC address.

 Still fail then please paste the complete bootup process from  Cisco AP Console.

Regards

Dont forget to rate helpful posts

What "white list"?  I have 1562I/D in my network and I didn't put any white list.

I just enabled DHCP Option 43 and off they went.

Hi there ,

 

Looks like this model is still in the mesh mode and u may need to first convert it to local mode. Can u provide the output of "show capwap client config command" from the AP ?

Ideally , for the mesh mode Aps to join the WLC, you need to first configure the MAC of the AP in the auth-list in the WLC. Security >> AP policies >> auth list

However , there is also a way to convert the mesh AP to local mode from the AP cli and then make it join the WLC. I am assuming that you don't have the intentions of using this Ap in mesh mode.

 

Regards,

Manish

Hi,

 

Please can this model of AP be in standalone Mode 1562i ? please pardon my ignorance.

do i order with this = SWAP1560-LOCAL-K9

 

Please always create a new thread for new question.

 

Please can this model of AP be in standalone Mode 1562i ?

Yes it can work as standlaone (Mobility express) AP.

Here is the software for it: 

https://software.cisco.com/download/release.html?mdfid=286290657&flowid=82045&softwareid=286289839&release=8.5.120.0&relind=AVAILABLE&rellifecycle=&reltype=latest

 

 

Regards

Dont forget to rate helpful posts

I am yet to order the AP I can see I have 3 software options to choose from.




Update: you must order:

Hardware: AIR-AP1562I-x-K9 with Software option: SWAP1560-MBEXP-K9

 

Regards

Dont forget to rate helpful posts

Thanks mate

jkemper01
Level 1
Level 1

I noticed in reading the release notes for the earlier version that the AP1562I had to manually upgraded in order to connect to the controller.  I wonder if this may be the same issue for you...

 

I also came across an article that mentioned the AP booting up in Mesh mode and not connecting to the Controller...

 

I think that is about all i can think of...

 

Hope you get some help... I am curious what the answer is to this.

jkemper01
Level 1
Level 1

Last time and i'll stop guessing...

 

Where you added the MAC address is there a checkbox that says "Accept Manufactured Installed Certificate (MIC).

 

Can you check it and apply and see if that corrects your issue.

I too have this exact problem.
No, the MIC thing doesn't work.
No, adding that wlc address manually doesn't work.
It looks like I will have to manually downgrade the software on the 1562I.
Regards,
Mal.

rcaofficecx
Level 1
Level 1

My AP didn't join WLC too, untill I did two things:

1. Added AP's MAC address to the filter at Security tab

2. Installed AP BUNDLE in addition to my image

Review Cisco Networking products for a $25 gift card