07-12-2024 11:03 PM
I have C9800-L-C
Access Point 1832 2802 9115
After Upgrade Controller from 17.3.4 to 17.9.5, AP not join Controller and version AP is 17.8.0
I downgraded to 17.6.6 but AP still won't join.
Last disconnect reason in 9800 is AP auth Failure
Console AP show no valid user found, please config from controller
I created a user on the controller, but in 17.3.4 I left it blank.
Please help me
07-12-2024 11:20 PM
- Have a checkup of the controller's configuration using the CLI command show tech wireless
and feed the output from that into Wireless Config Analyzer
- Debug the AP join process on using https://logadvisor.cisco.com/logadvisor/wireless/9800/9800APJoin
- Post the complete boot process of one of these APs
M.
07-13-2024 01:54 AM
Console into the AP and reboot.
Post the entire boot-up process of the AP.
07-13-2024 02:56 AM
07-13-2024 03:32 AM
>... AP boot log provided
+ Check if the wireless controller has a valid NTP server configured (and usable = show ntp assoc)
+ Check if the wireless controller has (still) sufficient licenses to accommodate all APs
+ On the AP execute this command : show version
show ip int brief
+ Check wired connection on a problematic AP on a particular switch (port-connection) ;
issue the command : show cdp neighbors detail
verify duplex and speed (acquired) settings
M.
07-13-2024 03:55 AM
- Another thing I am observing from the boot log (2802.txt) is that there seems to be an ongoing cycle to find a controller; is the
intended DNS entry for CISCO-CAPWAP-CONTROLLER.xangdau.petrolimex.com.vn still correct , I also see Discovery Response from a 10.x address which is different apparently , are there some NAT solution implemented in the networking ?
M.
07-13-2024 05:26 AM
And what firmware is the 2800 on?
07-13-2024 03:48 AM
Do you have a back up of your WLC configuration prior to upgrade ? Then I would check any configurations have been changed since upgrde.
Are these Mesh mode or Local mode APs? If mesh mode please check those AP Ethernet MAC addresses added to WLC (Configuration > AAA > AAA Advanced > Device Authentication)
HTH
Rasika
*** Pls rate all useful responses ***
07-14-2024 03:52 AM
debug capwap packet <<- share this from WLC 9800
MHM
07-15-2024 03:37 AM
@ntlong3 check your WLC config using the Config Analyzer (link below) as Marce has already advised.
Use "sh wireless stats ap join summary" on the WLC to see what reason the WLC is giving for the join failure?
What is the correct IP address for the WLC? (123.30.16.153, 10.0.11.200 or 10.0.11.10?)
> version AP is 17.8.0
Not according to the log you provided which says "Active version: 17.3.4.40" which is probably the version they were running before you did the upgrade.
Have you tried doing a factory default reset on the APs?
Also take note of Field Notice: FN74109 - Access Point Image Corruption During CAPWAP Upgrade May Result in Boot Failure - Software Upgrade Recommended - Cisco and Recover from a Boot Loop Caused by Image Corruption on Wave 2 and 11ax Access Points (CSCvx32806) - Cisco
07-15-2024 07:12 AM
Hello, thanks for everyone's help.
I resolved the issue by disable Authorize AP against in AP Policy.
Once again, thank you for everyone's help.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide