07-22-2020 11:47 PM - edited 07-05-2021 12:19 PM
Hi all! I have an Cisco AP, model AIR-CAP1602I-E-K9. I have it set up as an autonomous ap and it's all working fine. However, I'm only able to achieve 54 mbit/s. I believe something is wrong with my configuration?
#show running-config Building configuration... Current configuration : 3258 bytes ! ! Last configuration change at 14:52:12 CET Mon Mar 1 1993 by cisco version 15.3 no service pad service timestamps debug datetime msec service timestamps log datetime msec service password-encryption service sequence-numbers ! hostname AP02 ! ! logging rate-limit console 9 enable secret 5 ************* ! no aaa new-model clock timezone CET 1 0 no ip source-route no ip cef ! ! ! ! dot11 syslog ! dot11 ssid ssid01_24 authentication open authentication key-management wpa version 2 wpa-psk ascii 7 141B411F01573D7A227962 ! dot11 ssid ssid02_5G authentication open authentication key-management wpa version 2 guest-mode wpa-psk ascii 7 0457581202725B1F0F48 ! ! ! ! ! username CISCO password 7 ********* ! ! bridge irb ! ! ! interface Dot11Radio0 no ip address ! encryption mode ciphers aes-ccm tkip ! ssid ssid01_24 ! antenna gain 0 stbc beamform ofdm speed basic-1.0 2.0 5.5 11.0 6.0 9.0 12.0 18.0 24.0 36.0 48.0 54.0 m0. m1. m2. m3. m4. m5. m6. m7. m8. m9. m10. m11. m12. m13. m14. m15. station-role root bridge-group 1 bridge-group 1 subscriber-loop-control bridge-group 1 spanning-disabled bridge-group 1 block-unknown-source no bridge-group 1 source-learning no bridge-group 1 unicast-flooding ! interface Dot11Radio1 no ip address ! encryption mode ciphers aes-ccm tkip ! ssid ssid02_5G ! antenna gain 0 peakdetect no dfs band block stbc beamform ofdm speed basic-6.0 basic-9.0 basic-12.0 basic-18.0 basic-24.0 basic-36.0 basic-48.0 basic-54.0 m0. m1. m2. m3. m4. m5. m6. m7. m8. m9. m10. m11. m12. m13. m14. m15. channel width 40-above channel 5700 station-role root access-point bridge-group 1 bridge-group 1 subscriber-loop-control bridge-group 1 spanning-disabled bridge-group 1 block-unknown-source no bridge-group 1 source-learning no bridge-group 1 unicast-flooding ! interface GigabitEthernet0 no ip address duplex auto speed auto bridge-group 1 bridge-group 1 spanning-disabled no bridge-group 1 source-learning ! interface BVI1 mac-address 6c41.6aba.f5c1 ip address dhcp client-id GigabitEthernet0 ipv6 address dhcp ipv6 address autoconfig ! ip forward-protocol nd ip http server no ip http secure-server ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag ! ! snmp-server view dot11view ieee802dot11 included snmp-server community public RO snmp-server chassis-id AP02 snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart snmp-server enable traps tty snmp-server enable traps entity snmp-server enable traps disassociate snmp-server enable traps deauthenticate snmp-server enable traps authenticate-fail snmp-server enable traps dot11-qos snmp-server enable traps switch-over snmp-server enable traps rogue-ap snmp-server enable traps wlan-wep snmp-server enable traps config-copy snmp-server enable traps config snmp-server enable traps config-ctid snmp-server enable traps syslog snmp-server enable traps cpu threshold snmp-server enable traps aaa_server snmp-server enable traps vrfmib vrf-up vrf-down vnet-trunk-up vnet-trunk-down snmp-server host 10.1.1.10 public bridge 1 route ip ! ! ! line con 0 line vty 0 4 login local transport input all ! end
Here's my show version.
Cisco IOS Software, C1600 Software (AP1G2-K9W7-M), Version 15.3(3)JAB, RELEASE SOFTWARE (fc1) Technical Support: http://www.cisco.com/techsupport Copyright (c) 1986-2014 by Cisco Systems, Inc. Compiled Tue 02-Sep-14 20:36 by prod_rel_team ROM: Bootstrap program is C1600 boot loader BOOTLDR: C1600 Boot Loader (AP1G2-BOOT-M) LoaderVersion 15.2(2)JAX, RELEASE SOFTWARE (fc1) AP02 uptime is 13 hours, 44 minutes System returned to ROM by power-on System image file is "flash:/ap1g2-k9w7-mx.153-3.JAB/ap1g2-k9w7-xx.153-3.JAB" Last reload reason: This product contains cryptographic features and is subject to United States and local country laws governing import, export, transfer and use. Delivery of Cisco cryptographic products does not imply third-party authority to import, export, distribute or use encryption. Importers, exporters, distributors and users are responsible for compliance with U.S. and local country laws. By using this product you agree to comply with applicable laws and regulations. If you are unable to comply with U.S. and local laws, return this product immediately. A summary of U.S. laws governing Cisco cryptographic products may be found at: http://www.cisco.com/wwl/export/crypto/tool/stqrg.html If you require further assistance please contact us by sending email to export@cisco.com. cisco AIR-SAP1602I-E-K9 (PowerPC) processor (revision B0) with 187382K/74672K bytes of memory. Processor board ID ***** PowerPC CPU at 533Mhz, revision number 0x2151 Last reset from power-on 1 Gigabit Ethernet interface 2 802.11 Radios 32K bytes of flash-simulated non-volatile configuration memory. Base ethernet MAC Address: ***** Part Number : 73-14671-04 PCA Assembly Number : 000-00000-00 PCA Revision Number : PCB Serial Number : ***** Top Assembly Part Number : ***** Top Assembly Serial Number : ***** Top Revision Number : A0 Product/Model Number : AIR-CAP1602I-E-K9 Configuration register is 0xF
07-23-2020 11:33 AM
Remove TKIP in encryption support under radio interfaces
encryption mode ciphers aes-ccmtkip
Once remove TKIP, let client associate and provide below output
sh dot11 associations <client_mac_address>
HTH
Rasika
07-23-2020 01:09 PM
Thank you for your answers.
I have removed tkip from encryption now. However, seems like I'm still getting around 50mbit/s. How come?
Here's my output for a client.
AP02#show dot11 associations 84c5.a6f0.baab Address : 84c5.a6f0.baab Name : AP02 IP Address : 10.1.1.231 IPv6 Address : :: Gateway Address : 0.0.0.0 Netmask Address : 0.0.0.0 Interface : Dot11Radio 1 Bridge-group : 1 reap_flags_1 : 0x0 ip_learn_type : 0x0 transient_static_ip : 0x0 Device : ccx-client Software Version : NONE CCX Version : 4 Client MFP : Off State : Assoc Parent : self SSID : ssid02_5G VLAN : 0 Hops to Infra : 1 Association Id : 4 Clients Associated: 0 Repeaters associated: 0 Tunnel Address : 0.0.0.0 Key Mgmt type : WPAv2 PSK Encryption : AES-CCMP Current Rate : m15b Capability : WMM 11h Supported Rates : 6.0 9.0 12.0 18.0 24.0 36.0 48.0 54.0 m0-2 m1-2 m2-2 m3-2 m4-2 m5-2 m6-2 m7-2 m8-2 m9-2 m10-2 m11-2 m12-2 m13-2 m14-2 m15-2 Voice Rates : disabled Bandwidth : 20 MHz Signal Strength : -56 dBm Connected for : 143 seconds Signal to Noise : 42 dB Activity Timeout : 50 seconds Power-save : Off Last Activity : 0 seconds ago Apsd DE AC(s) : NONE Packets Input : 25664 Packets Output : 120494 Bytes Input : 9986020 Bytes Output : 176163292 Duplicates Rcvd : 2 Data Retries : 6529 Decrypt Failed : 0 RTS Retries : 0 MIC Failed : 0 MIC Missing : 0 Packets Redirected: 0 Redirect Filtered: 0 IP source guard failed : 0 PPPoE passthrough failed : 0 DAI failed : IP mismatch : 0 src MAC mismatch : 0 target MAC mismatch : 0 Existing IP failed : 0 New IP failed : 0 11w Status : On Session timeout : 0 seconds Reauthenticate in : never
07-23-2020 01:53 PM
Current Rate : m15b Bandwidth : 20 MHz
As per that client is connected MCS15 & on 20MHz channel width and the data rate is 130/144Mbps depend on the guard interval configured. Since WiFi is half-duplex and lot of overhead of mgt/ctl frames achieving 50Mbps in a given condition is reasonably good. See below from mcsindex.com
what type of client is this? Does it support 40MHz channel bonding? if so, you should be able to achieve higher rates (270/300Mbps).
If you want to achieve higher throughput please use 40MHz capable client. You can use below site to check client capabilty
https://clients.mikealbano.com/
HTH
Rasika
*** Pls rate all useful responses ***
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide