cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1136
Views
3
Helpful
10
Replies

AP not join Controller after upgrade

ntlong3
Level 1
Level 1

I have C9800-L-C

Access Point 1832 2802 9115

After Upgrade Controller from 17.3.4 to 17.9.5, AP not join Controller and version AP is 17.8.0

I downgraded to 17.6.6 but AP still won't join.

Last disconnect reason in 9800 is AP auth Failure

Console AP show no valid user found, please config from controller

I created a user on the controller, but in 17.3.4 I left it blank.

 

Please help me

 

10 Replies 10

marce1000
Hall of Fame
Hall of Fame

 

  - Have a checkup of the controller's configuration using the CLI command show tech wireless
     and feed the output from that into Wireless Config Analyzer

 - Debug the AP join process on  using https://logadvisor.cisco.com/logadvisor/wireless/9800/9800APJoin

 - Post the complete boot process of one of these APs

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

Leo Laohoo
Hall of Fame
Hall of Fame

Console into the AP and reboot. 

Post the entire boot-up process of the AP.

ntlong3
Level 1
Level 1

Hi Leo,

I send log 2802

 

                        >... AP boot log provided

    + Check if the wireless controller has a valid NTP server configured (and usable = show ntp assoc)
    + Check if the wireless controller has (still) sufficient licenses to accommodate all APs

    + On the AP execute this command : show version
                                                             show ip int brief

   + Check wired connection on a problematic AP on a particular switch (port-connection) ; 
      issue the command  : show cdp neighbors detail
                                        verify duplex and speed (acquired) settings 

  M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

 

        - Another thing I am observing from the boot log (2802.txt) is that there seems to be an ongoing cycle to find a controller; is the
  intended DNS entry for CISCO-CAPWAP-CONTROLLER.xangdau.petrolimex.com.vn still correct , I also see Discovery Response from a 10.x address which is different apparently , are there some NAT solution implemented in the networking ?

 M.



-- Each morning when I wake up and look into the mirror I always say ' Why am I so brilliant ? '
    When the mirror will then always repond to me with ' The only thing that exceeds your brilliance is your beauty! '

And what firmware is the 2800 on?

Rasika Nayanajith
VIP Alumni
VIP Alumni

Do you have a back up of your WLC configuration prior to upgrade ? Then I would check any configurations have been changed since upgrde.

Are these Mesh mode or Local mode  APs? If mesh mode please check those AP Ethernet MAC addresses added to WLC (Configuration > AAA > AAA Advanced > Device Authentication)

HTH
Rasika
*** Pls rate all useful responses ***

 

debug capwap packet <<- share this from WLC 9800

MHM

Rich R
VIP
VIP

@ntlong3 check your WLC config using the Config Analyzer (link below) as Marce has already advised.

Use "sh wireless stats ap join summary" on the WLC to see what reason the WLC is giving for the join failure?

What is the correct IP address for the WLC? (123.30.16.153, 10.0.11.200 or 10.0.11.10?)

version AP is 17.8.0
Not according to the log you provided which says "Active version: 17.3.4.40" which is probably the version they were running before you did the upgrade.

Have you tried doing a factory default reset on the APs?

Also take note of Field Notice: FN74109 - Access Point Image Corruption During CAPWAP Upgrade May Result in Boot Failure - Software Upgrade Recommended - Cisco and Recover from a Boot Loop Caused by Image Corruption on Wave 2 and 11ax Access Points (CSCvx32806) - Cisco

ntlong3
Level 1
Level 1

Hello, thanks for everyone's help.

I resolved the issue by disable Authorize AP against in AP Policy.

Once again, thank you for everyone's help.

Review Cisco Networking for a $25 gift card