cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
24014
Views
0
Helpful
32
Replies

C2700 AP Not Joinining vWLC

NETAD
Level 4
Level 4

Hello I'm trying to get my AP to join my vWLC and it's not working. I've tried multiple versions of the vWLC with the same behavior. Something is wrong with my AP. It joins for a brief moment then it drops. Can you assist please. I've tried resetting through the mode button but that didn't do it. I'm using 8.3.102 for the controller version

 

I got some messages from the AP while joining.

 

Thanks

32 Replies 32

I did configure NTP but the AP is still not joining.

 

(Cisco Controller) >show time

Time............................................. Tue Jan 30 22:18:45 2018

Timezone delta................................... 0:0
Timezone location................................

NTP Servers
    NTP Polling Interval.........................     600

     Index     NTP Key Index                  NTP Server                Status          NTP Msg Auth Status
    -------  ----------------------------------------------------------------------------------------------
       1              0                                66.228.48.38     In Sync              AUTH DISABLED

 

Time on wlc looks incorrect. 

 

 

 

 

 

 

-If I helped you somehow, please, rate it as useful.-

Should I use a different NTP server? Do you recommend one?

Set it manually for now. But it is important to have it accurate as wlc and AP use certificate which is very time sensitive.

 

 

 

-If I helped you somehow, please, rate it as useful.-

(Cisco Controller) >show time

Time............................................. Tue Jan 30 05:48:54 2018

Timezone delta................................... 0:0
Timezone location................................

NTP Servers
NTP Polling Interval......................... 600

Index NTP Key Index NTP Server Status NTP Msg Auth Status
------- ----------------------------------------------------------------------------------------------


unfortuanetly that didn't do it.

%Error opening flash:/capwap-saved-config (No such file or directory)
%Error opening flash:/capwap-saved-config-bak (No such file or directory)


*Mar 3 20:43:04.095: %CAPWAP-5-DHCP_OPTION_43: Controller address 10.30.30.77 obtained through DHCP
Not in Bound state.
*Mar 3 20:43:49.599: %CAPWAP-3-DHCP_RENEW: Could not discover WLC. Either IP address is not assigned or assigned IP is wrong. Renewing DHCP IP.


Still, didn't join.
(Cisco Controller) >show time

Time............................................. Tue Jan 30 05:48:54 2018


*Mar 3 20:46:45.655: %CAPWAP-5-DHCP_OPTION_43: Controller address 10.30.30.77 obtained through DHCP
Not in Bound state.
*Mar 3 20:47:31.159: %CAPWAP-3-DHCP_RENEW: Could not discover WLC. Either IP address is not assigned or assigned IP is wrong. Renewing DHCP IP.


%Error opening flash:/capwap-saved-config (No such file or directory)
%Error opening flash:/capwap-saved-config-bak (No such file or directory)



Timezone delta................................... 0:0
Timezone location................................

NTP Servers
NTP Polling Interval......................... 600

Index NTP Key Index NTP Server Status NTP Msg Auth Status

Console into the AP and reboot the AP.
We want to see what the AP is doing (or attempting to do).

I see the following now. The latest in 8.3 didn't work either.


*Jan 30 07:07:08.000: %CAPWAP-5-DTLSREQSEND: DTLS connection request sent peer_ip: 10.30.30.77 peer_port: 5246
*Jan 30 07:07:08.027: %PKI-3-CERTIFICATE_INVALID_NOT_YET_VALID: Certificate chain validation has failed. The certificate (SN: 1000) is not yet valid Validity period starts on 18:46:18 UTC Jan 30 2018Peer certificate verification failed 001A

*Jan 30 07:07:08.027: DTLS_CLIENT_ERROR: ../capwap/base_capwap/capwap/base_capwap_wtp_dtls.c:496 Certificate verified failed!
*Jan 30 07:07:08.027: %DTLS-5-SEND_ALERT: Send FATAL : Bad certificate Alert to 10.30.30.77:5246
*Jan 30 07:07:08.027: %DTLS-5-SEND_ALERT: Send FATAL : Close notify Alert to 10.30.30.77:5246


I will log my session to the AP and show you.

I noticed this.

 

LWAPP image version 8.0.115.0

 

 

Can the AP ping the controller IP address of 10.30.30.77?

Yes. I see it trying to join when I debug the wlc. At this point I think something is wrong with my AP. Can you telk me how can I re-image it please?

There is nothing wrong with the AP. The AP is loading the RCV image.
If the controller is (still) running 8.3.102.0, I'd recommend upgrading the firmware to something more recent.

In addition to Flavio's post, I'd upgrade the firmware of the controller.

The only time this AP joins is when I hold the reset button for 30 secs. It joins for a little then reboots don't join at all. This time it extracted the software. This is a vWLC. I've tried multiple versions already with the same problem. Can I do anything to the AP to restore it completely?

The attachment only shows me the AP downloading the firmware.
Let me just say that I've used 8.3.102.0 with a 3700 and all I can say is, daily, I have to go hunt around for APs that would "disappear". It's a known bug and was only fixed in later versions.
Review Cisco Networking for a $25 gift card