cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1694
Views
11
Helpful
21
Replies

Error air-AP2802l-H-K9 device.

SOM
Level 1
Level 1

I have reset the device and i able login to Mobile Express Web UI but i dont access point.It say zero.I have i have ceck ap in cli .My connected ap shows zeroI I am assuming the it show have ap also .So it act Controller as well as AP .but ibn cli its showing zero.I have went through tutrial and google ..No luck.

 

PLease hlep with any clue or make me understnd this technology.

Thank you in adv .

Following are myn running config

(Cisco Controller) >show run?
run-config running-config
(Cisco Controller) >show run-config


commands Display list of configured commands on WLC.

startup-commands Display list of configured startup commands on WLC.

no-ap Display running configuration of controller without AP configuration.
<cr> Display running configuration of controller.

(Cisco Controller) >show run-config

Press Enter to continue...

System Inventory
NAME: "Mobility Express" , DESCR: "Cisco Aironet 2800 Series Mobility Express"
PID: AIR-AP2802I-H-K9, VID: V03, SN: FGL2329L5EU

Burned-in MAC Address............................ 08:4F:A9:1F:5B:40
Maximum number of APs supported.................. 100
Press Enter to continue or <ctrl-z> to abort


System Information
Manufacturer's Name.............................. Cisco Systems Inc.
Product Name..................................... Cisco Controller
Product Version.................................. 8.10.142.0
OUI File Last Update Time........................ N/A

System Name...................................... jan
System Location..................................
System Contact...................................
System ObjectID.................................. 1.3.6.1.4.1.9.1.2370
IP Address....................................... 172.17.30.253
Last Reset....................................... 1: reload command

System Up Time................................... 0 days 0 hrs 12 mins 13 secs
System Timezone Location.........................
System Stats Realtime Interval................... 5
System Stats Normal Interval..................... 180

Configured Country............................... IN - India

State of 802.11b Network......................... Enabled
State of 802.11a Network......................... Enabled
Number of WLANs.................................. 1

--More or (q)uit current module or <ctrl-z> to abort
Number of Active Clients......................... 0

OUI Classification Failure Count................. 0

Memory Current Usage............................. 77
Memory Average Usage............................. 77
CPU Current Usage................................ 1
CPU Average Usage................................ 3

Flash Type....................................... Compact Flash Card
Flash Size....................................... 1073741824

Burned-in MAC Address............................ 08:4F:A9:1F:5B:40
Maximum number of APs supported.................. 100
System Nas-Id....................................
WLC MIC Certificate Types........................ SHA1/SHA2
Press Enter to continue or <ctrl-z> to abort


Backup Controller Configuration

AP primary Backup Controller ....................
AP secondary Backup Controller ..................
Press Enter to continue or <ctrl-z> to abort


System Time Information:

Time............................................. Thu Jul 18 02:31:49 2019

Timezone delta................................... 0:0
Timezone location................................

NTP Servers
NTP Version.................................. 3
NTP Polling Interval......................... 86400

Index NTP Key Index NTP Server Status NTP Msg Auth Status
---------------------------------------------------------------------------------------------------------------------
1 0 0.ciscome.pool.ntp.org Not Synched AUTH DISABLED
2 0 1.ciscome.pool.ntp.org Not Synched AUTH DISABLED
3 0 2.ciscome.pool.ntp.org Not Synched AUTH DISABLED


Press Enter to continue or <ctrl-z> to abort


Redundancy Information
Press Enter to continue or <ctrl-z> to abort


AP Bundle Information not supported.
Press Enter to continue or <ctrl-z> to abort


Switch Configuration
802.3x Flow Control Mode......................... Disable
FIPS prerequisite features....................... Disabled
WLANCC prerequisite features..................... Disabled
UCAPL prerequisite features...................... Disabled
Last login information display................... Disabled
Last login information display duration.......... 0
DTLS WLC MIC .................................... SHA2
secret obfuscation............................... Enabled
Master key....................................... Not-Configured
password encryption.............................. Disabled
Strong Password Check Features
case-check.................................... Enabled
consecutive-check............................. Enabled
default-check................................. Enabled
username-check................................ Enabled
position-check................................ Enabled
case-digit-check.............................. Enabled
Min. Password length.......................... 8
Min. Upper case chars......................... 0
Min. Lower case chars......................... 0
Min. Digits chars............................. 0

--More or (q)uit current module or <ctrl-z> to abort
Min. Special chars............................ 0
Mgmt User
Password Lifetime [days]...................... 0
Password Lockout.............................. Disabled
Lockout Attempts.............................. 3
Lockout Timeout [mins]........................ 5
Restore-Password.............................. Enabled
SNMPv3 User
Password Lifetime [days]...................... 0
Password Lockout.............................. Disabled
Lockout Attempts.............................. 3
Lockout Timeout [mins]........................ 5
Press Enter to continue or <ctrl-z> to abort


Network Information
RF-Network Name............................. jan
DNS Server IP1.............................. 208.67.222.222
DNS Server IP2.............................. 208.67.220.220
Web Mode.................................... Disable
Secure Web Mode............................. Enable
Secure Web Mode Cipher-Option High.......... Enable
Secure Web Mode SSL Protocol................ Disable
OCSP........................................ Disabled
OCSP responder URL..........................
Network 2-factor-authentcation.............. Disable
2FA Username field ..................... Common Name
Secure Shell (ssh).......................... Enable
Secure Shell (ssh) Cipher-Option High....... Enable
Telnet...................................... Disable
Ethernet Multicast Forwarding............... Disable
Ethernet Broadcast Forwarding............... Disable
IPv4 AP Multicast/Broadcast Mode............ Multicast Address : 0.0.0.0
IPv6 AP Multicast/Broadcast Mode............ Multicast Address : ::
IGMP snooping............................... Disabled
MLD snooping................................ DisabledMLD time
IGMP timeout................................ 60 seconds
IGMP Query Interval......................... 20 seconds
.......................... 300 seconds
Cisco AP Default Master..................... Disable
AP Join Priority............................ Disable
Mgmt Via Wireless Interface........out................................. 60 secondsMLD query interval.......................... 20 secondsUser Idle Timeout........................... 300 secondsARP Idle Timeout..
......... En
able
Mgmt Via Dynamic Inte
rface.................. Disa
ble
Bridge MAC filter Conf
ig.................... Enabl
e
Bridge Security Mode....
............
........ EAP
Mesh Full Sector DFS.........
............
... Enable
Mesh Backhaul R
RM..........................
. Disable
AP Fallback ....
............................
Enable
AP EasyAdmin .....
.......................... D
isable
AP Virtual IP .....
......................... 10
.1.0.6
Web Auth CMCC Suppo
rt ...................... Di
sabled
Web Auth Redirect P
orts .................... 80

Web Auth Proxy Redirect
................... Disable

Web Auth Captive-Bypass
.................. Disable

Web Auth Secure Web ......
................. Enable
W
eb Auth Secure Web Cipher Op
tion ......... Disable
We
b Auth Secure Web Sslv3 ...
.............. Disable
Web
Auth Secure Redirection ..
............. Enable
Web A
uth AP Ethernet MAC in Redir
ection .... Disable
Fast S
SID Change ........................... Enabled
Max WLAN Supported ......................... 512
IP/MAC Addr Binding Check .................. Enabled
Link Local Bridging Status ................. Disabled
CCX-lite status ............................ Disable
oeap-600 dual-rlan-ports ................... Disable
oeap local-network ......................... Enable
oeap-600 Split Tunneling (Printers)......... Disable
mDNS snooping............................... Disabled
mDNS Query Interval......................... 15 minutes
Web Color Theme............................. Default
Capwap Prefer Mode.......................... IPv4
Network Profile............................. Disabled
Client ip conflict detection (DHCP) ........ Disabled
Mesh BH RRM ................................ Disable
Mesh Aggressive DCA......................... Disable
Mesh Auto RF................................ Disable
HTTP Profiling Port......................... 80
HTTP-Proxy Ip Address....................... 0.0.0.0
HTTP-Proxy Port............................. 80
WGB Client Forced L2 Roam................... Disabled
DHCP Timeout (seconds)...................... 120
Press Enter to continue or <ctrl-z> to abort

--More or (q)uit current module or <ctrl-z> to abort

Port Summary
STP Admin Physical Physical Link Link
Pr Type Stat Mode Mode Status Status Trap POE
-- ------- ---- ------- ---------- ---------- ------ ------- ---------
1 Normal Forw Enable Auto 1000 Full Up Enable N/A
Press Enter to continue or <ctrl-z> to abort

AP Summary
Number of APs.................................... 0
Global AP User Name.............................. janGlobal AP Dot1x User Name........................ Not ConfiguredGlobal AP Dot1x EAP Method....................... EAP-FA* prefix indicates Cisco Internal AAP Tcp-Mss-Adjust InfoAP Name TCP State MSS Size------------------ -------- AP LocationTotal Number of AP Groups........................ 1 Site Name........................................ default-groupSite Description................................. <none>NAS-identifier................................... noneClient Traffic QinQ Enable....................... FALSEDHCPv4 QinQ Enable............................... FALSEAP Operating Class............................... Not-configuredCapwap Prefer Mode............................... Not-configuredAP broken antenna detection - Status............. DisabledCustomWeb Global Status.......................... EnabledExternal Web Authentication URL.................. <None>Lan Fast Switching Status........................ DisableRF Profile----------2.4 GHz band..................................... <none>5 GHz band....................................... <noneWLAN ID Interface Network Admission Control Radio Policy OpenDnsProfile------- ----------- ------------------ 1 management Disabled None None*AP3600 with 802.11ac Module will only advertise first 8 WLANs on 5GHz radio Lan Port configs ---------------LAN Status POE Power Level RLAN--- ------- ---- ---------- ----- 1 Disabled Disabled None None
NAT Configura 2 Disabled Disabled None None 3 Disabled None 4 Disabled Disabled None External Module configs ----------------------------LAN Status POE RLAN--- ------- ---- ----- 1 Disabled -----------------------------USB Module Status................................ EnableAP Name Slots AP Model Ethernet MAC Location Port Country Priority------------------ ----- ------------------- ----------------- ---------------- ---- ------- --------Fabric Flex Acl Template Name ................... Not ConfiguredPress Enter to continue or <ctrl-z> to abortRF ProfileNumber of RF Profiles............................ 6Out Of Box State................................. DisableOut Of Box Persistence........................... DisableRF Profile Name Band Description 11n-client-only Applied --------------------------------- ------- ----------------------------------- ------------------ ----------High-Client-Density-802.11a 5 GHz <none> disable No High-Client-Density-802.11bg 2.4 GHz <none> disable No Low-Client-Density-802.11a 5 GHz <none> disable No Low-Client-Density-802.11bg 2.4 GHz <none> disable No Typical-Client-Density-802.11a 5 GHz <none> Typical-Client-Density-802.11bg 2.4 GHz <none> disable No RF Profile name................................ High-Client-Density-802.11aDescription...................................... <none>AP Group Name.................................... <none>Radio policy..................................... 5 GHz11n-client-only.................................. disabledTransmit Power Threshold v1...................... -65 dBmTransmWLAN ID Thresho Max ClientVoice AC:Video AC: AQ = Air Quality OptimizedRoaming Additional Clean Air Settings:AQ = Air Quality RF Client Steering ConfigurationsPtion Info

ress Enter to continue or <ctrl-z> to abort IP Address Hash Key Mobility Data DTLS ConfigurationAdvanced Hotspot CommandAdvanced BLE ConfiguratiomDNS Profile Name....................
** DHCP Configuration **No scopes defined


** WLAN Configuration **
ID SSID Status Scope Name Nat Status P2PBlocking VLAN
1 som Disabled none Disabled Disabled 0


Press Enter to continue or <ctrl-z> to abort

Exclusion List ConfigurationUnable to retrieve exclusion-list entry

Press Enter to continue or <ctrl-z> to abort

CDP Configuration
cdp version v2
Press Enter to continue or <ctrl-z> to abort

Country Channels Configuration

Configured Country............................. IN - India
KEY: * = Channel is legal in this country and may be configured manually.
A = Channel is the Auto-RF default in this country.
. = Channel is not legal in this country.
C = Channel has been configured for use by Auto-RF.
x = Channel is available to be configured for use by Auto-RF.
(-,-) = (indoor, outdoor) regulatory domain allowed by this country.
-----------------:+-+-+-+-+-+-+-+-+-+-+-+-+-+-
802.11bg :
Channels : 1 1 1 1 1
: 1 2 3 4 5 6 7 8 9 0 1 2 3 4
-----------------:+-+-+-+-+-+-+-+-+-+-+-+-+-+-
IN (-A ,-AN A * * * * A * * * * A . . .
-----------------:+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-
802.11a : 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1 1
Channels : 3 3 3 4 4 4 4 4 5 5 6 6 0 0 0 1 1 2 2 2 3 3 4 4 4 5 5 6 6 6 7
: 4 6 8 0 2 4 6 8 2 6 0 4 0 4 8 2 6 0 4 8 2 6 0 4 9 3 7 1 5 9 3
-----------------:+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-+-
IN (-DN ,-DN . A . A . A . A A A A A A A A A A A A A A A A A A A A A * * *
Press Enter to continue or <ctrl-z> to abort

WPS Configuration Summary

............ UnconfiguredWLAN ConfigurationNetwork Admission ControlQuality of Service............................... SilverRadius ServersSecurity Static WEP Keys............................... Disabled FlexConnect Learn IP Address.................. EnabledDMS DB is empty Mobility Anchor ListLocal Policy---------------- Fabric StatusPolicy ConfigurationL2ACL ConfigurationRADIUS ConfigurationFallback Test:Authentication ServerAccounting ServerTACACS ConfiguratiAccounting ServersLDAP ConfigurationTimer: EAP-FAST:Dns ConfigurationFallback Radio Shut: DisabledFlexConnect Group DetailGroup Radius Servers Settings:PAC Timeout.................-------------------------------- -------Qos Profile InfoBurst Realtime Data Rate......................... 0 0dot1p............................................ 0Press Enter to continue or <ctrl-z> to abort 6 1 10 2 12 2 14 2Mac Filter InfoAuthorization LisStatistics (client-count basedDHCP Opt-82 Format: binary
--More-- or (q)uit
Auto-Immune
Auto-Immune.................................... Disabled
Auto-Immune by aWIPS Prevention................ Disabled

Client Exclusion Policy
Excessive 802.11-association failures.......... Enabled
Excessive 802.11-authentication failures....... Enabled
Excessive 802.1x-authentication................ Enabled
IP-theft....................................... Enabled
Excessive Web authentication failure........... Enabled
Maximum 802.1x-AAA failure attempts............ 3

Signature Policy
Signature Processing........................... Enabled


Management Frame Protection
Global Infrastructure MFP state................ DISABLED (*all infrastructure settings are overridden)
AP Impersonation detection..................... Disabled
Controller Time Source Valid................... False

WLAN Client
WLAN ID WLAN Name Status Protection

--More-- or (q)uit
------- ------------------------- --------- ----------
1 som Disabled Optional


Press Enter to continue or <ctrl-z> to abort

Press Enter to continue or <ctrl-z> to abort

Press Enter to continue or <ctrl-z> to abort

Custom Web Configuration

Radius Authentication Method..................... PAP
Cisco Logo....................................... Enabled
CustomLogo....................................... None
Custom Title..................................... None
Custom Message................................... None
Custom Redirect URL.............................. None
Web Authentication Login Success Page Mode....... Default
Web Authentication Type.......................... Internal Default
Logout-popup..................................... Enabled
External Web Authentication URL.................. None
QR Code Scanning Bypass Timer.................... 0

--More-- or (q)uit
QR Code Scanning Bypass Count.................... 0

Configuration Per Profile:

Press Enter to continue or <ctrl-z> to abort

Core dump Configuration

Core Dump upload is disabled

Core Dump file on flash:

 

Press Enter to continue or <ctrl-z> to abort

Press Enter to continue or <ctrl-z> to abort

Rogue AP Configuration

Rogue Detection Security Level................... high
Rogue Pending Time............................... 60 secs
Rogue on wire Auto-Contain....................... Disabled

--More-- or (q)uit
Rogue using our SSID Auto-Contain................ Disabled
Valid client on rogue AP Auto-Contain............ Disabled
Rogue AP timeout................................. 1200
Rogue Detection Report Interval.................. 30
Rogue Detection Min Rssi......................... -80
Rogue Detection Transient Interval............... 300
Rogue Detection Client Num Threshold............. 0
Validate rogue AP against AAA.................... Disabled
Rogue AP AAA validation interval................. 0 secs
Total Rogues(AP+Ad-hoc) supported................ 200
Total Rogues classified.......................... 0

MAC Address Class State #Det #Rogue #Highest RSSI #RSSI #Channel #Second Highest #RSSI #Channel
Aps Clients det-Ap RSSI Det-Ap
----------------- ------------ -------------------- ---- ------- ----------------- ------ --------------- ----------------- ------ ---------------

Rogue AP RLDP Configuration

Rogue Location Discovery Protocol................ Enabled & Monitor-Only
RLDP Schedule Config............................. Disabled
RLDP Scheduling Operation........................ Disabled
RLDP Retry....................................... 1


--More-- or (q)uit
RLDP Start Time RLDP End Time Day
--------------- ------------- ---

Rogue Auto Contain Configuration

Containment Level................................ 0(auto)
monitor_ap_only.................................. false

Adhoc Rogue Configuration

Detect and report Ad-Hoc Networks................ Enabled
Auto-Contain Ad-Hoc Networks..................... Disabled
Total Rogues(Ad-Hoc+AP) supported ............... 200
Total Ad-Hoc entries ............................ 0

Client MAC Address Adhoc BSSID State # APs Last Heard
------------------ ------------------ ----------------- ------ -----------------------

Rogue Client Configuration

Validate rogue clients against AAA............... DisabledValidate rogue clients against MSE............... EnabledTotal Rogue Clients supported......Total Rogue Clients present...................... 0MAC Address State # APs Last Heard ----------------- ------------------ ----- -----------------------Ignore List ConfigurationMAC Address ----------------- Rogue Rule ConfigurationPriority Rule Name Rule state Class Type Notify State Match Hit Count-------- -------------------------------- ----------- ----------- -------- -------- ------ ---------Rogue Rule Detailed ConfigurationRogue containment ConfigurationRogue containment flexconnect.................... disabledRogue containment auto-rate...................... enabledPress Enter to continue orMedia-Stream ConfigurationMulticast-direct State........................... disableAllowed WLANs.................................... Stream Name Start IP End IP Operation Status------------- --------------------------------------- --------------------------------------- ----------------URL.............................................. E-mail........................................... Phone............................................ Note............................................. State............................................ disable2.4G Band Media-Stream Confi

 

21 Replies 21

Rich R
VIP
VIP

It is not possible to change the regulatory domain of an AP.  This is fixed at manufacture time.
Legally you can only use that AP in the domain it is licensed for and with the correct corresponding country code.
Using the wrong country code could result in you using channels or power levels which are illegal in your own regulatory domain and therefore risk prosecution.

You need to look at the detailed join stats which show reasons for not joining etc.

I have found any good flage to troubleshoot also

This is the state message:

(Cisco Controller) >show ap join stats detailed 10:06:ed:6b:83:c0

Sync phase statistics
- Time at sync request received............................ Not applicable
- Time at sync completed................................... Not applicable

Discovery phase statistics
- Discovery requests received.............................. 15
- Successful discovery responses sent...................... 15
- Unsuccessful discovery request processing................ 0
- Reason for last unsuccessful discovery attempt........... Not applicable
- Time at last successful discovery attempt................ Jul 18 00:36:39.695
- Time at last unsuccessful discovery attempt.............. Not applicable

Join phase statistics
- Join requests received................................... 0
- Successful join responses sent........................... 0
- Unsuccessful join request processing..................... 0
- Reason for last unsuccessful join attempt................ Not applicable
- Time at last successful join attempt..................... Not applicable
- Time at last unsuccessful join attempt................... Not applicable

Configuration phase statistics

--More-- or (q)uit
- Configuration requests received.......................... 0
- Successful configuration responses sent.................. 0
- Unsuccessful configuration request processing............ 0
- Reason for last unsuccessful configuration attempt....... Not applicable
- Time at last successful configuration attempt............ Not applicable
- Time at last unsuccessful configuration attempt.......... Not applicable

Last AP message decryption failure details
- Reason for last message decryption failure............... Not applicable

Last AP disconnect details
- Reason for last AP connection failure.................... Not applicable
- Last AP disconnect reason................................ Not applicable

Last join error summary
- Type of error that occurred last......................... None
- Reason for error that occurred last...................... Not applicable
- Time at which the last join error occurred............... Not applicable

AP disconnect details
- Reason for last AP connection failure.................... Not applicable
Ethernet Mac : 00:00:00:00:00:00 Ip Address : 172.17.30.12

That doesn't tell much.  Look at the output from the ap console and see what that shows.

-Scott
*** Please rate helpful posts ***

This message the ap is discarding sir.Please help me with your suggestion .

CAPWAP State: DTLS Teardown
[*07/17/2019 18:51:32.2956] upgrade.sh: Script called with args:[ABORT]
[*07/17/2019 18:51:32.3902] do ABORT, part2 is active part
[*07/17/2019 18:51:32.4560] upgrade.sh: Cleanup tmp files ...
[*07/17/2019 18:51:32.5375] Discarding msg CAPWAP_WTP_EVENT_REQUEST(type 9) in CAPWAP state: DTLS Teardown(4).
[*07/17/2019 18:51:32.5377] Discarding msg CAPWAP_WTP_EVENT_REQUEST(type 9) in CAPWAP state: DTLS Teardown(4).
[*07/17/2019 18:51:36.8850] No more AP manager addresses remain..
[*07/17/2019 18:51:36.8852] No valid AP manager found for controller 'sa' (ip: 172.17.30.253)
[*07/17/2019 18:51:36.8852] Failed to join controller sa.
[*07/17/2019 18:51:36.8853] Failed to join controller.
[*07/17/2019 18:51:46.8894] WTP IP address changed from 0.0.0.0 to 172.17.30.12, restart CAPWAP.
[*07/17/2019 18:51:46.8895]
[*07/17/2019 18:51:46.8895]
[*07/17/2019 18:51:46.8895] Going to restart CAPWAP (reason : WTP IP address changed)...
[*07/17/2019 18:51:46.8896]
[*07/17/2019 18:51:46.8901] Restarting CAPWAP State Machine.
[*07/17/2019 18:51:46.8905] Discarding msg CAPWAP_WTP_EVENT_REQUEST(type 9) in CAPWAP state: DTLS Teardown(4).
[*07/17/2019 18:51:46.9575]
[*07/17/2019 18:51:46.9575] CAPWAP State: DTLS Teardown
[*07/17/2019 18:51:47.2063] upgrade.sh: Script called with args:[ABORT]
[*07/17/2019 18:51:47.3024] do ABORT, part2 is active part
[*07/17/2019 18:51:47.3659] upgrade.sh: Cleanup tmp files ...
[*07/17/2019 18:51:47.4487] Discarding msg CAPWAP_WTP_EVENT_REQUEST(type 9) in CAPWAP state: DTLS Teardown(4).
[*07/17/2019 18:51:47.4489] Discarding msg CAPWAP_WTP_EVENT_REQUEST(type 9) in CAPWAP state: DTLS Teardown(4).
[*07/17/2019 18:52:01.6612]
[*07/17/2019 18:52:01.6612] CAPWAP State: Discovery
[*07/17/2019 18:52:01.6682] Discovery Request sent to 255.255.255.255, discovery type UNKNOWN(0)
[*07/17/2019 18:52:01.6691] Discovery Response from 172.17.30.253
[*07/17/2019 18:52:10.0012]
[*07/17/2019 18:52:10.0012] CAPWAP State: DTLS Setup
[*07/17/2019 18:52:10.0655] dtls_process_packet: DTLS Error: 1046
[*07/17/2019 18:52:10.0656] dtls_process_packet: The controller shut down the DTLS connection.
[*07/17/2019 18:52:10.0656] dtls_process_packet: Please verify that the AP certificate is valid and has not expired.
[*07/17/2019 18:53:07.0792]
[*07/17/2019 18:53:07.0792] CAPWAP State: DTLS Teardown
[*07/17/2019 18:53:07.2842] upgrade.sh: Script called with args:[ABORT]
[*07/17/2019 18:53:07.3814] do ABORT, part2 is active part
[*07/17/2019 18:53:07.4447] upgrade.sh: Cleanup tmp files ...
[*07/17/2019 18:53:07.5253] Discarding msg CAPWAP_WTP_EVENT_REQUEST(type 9) in CAPWAP state: DTLS Teardown(4).
[*07/17/2019 18:53:07.5255] Discarding msg CAPWAP_WTP_EVENT_REQUEST(type 9) in CAPWAP state: DTLS Teardown(4).
[*07/17/2019 18:53:11.8289] No more AP manager addresses remain..
[*07/17/2019 18:53:11.8290] No valid AP manager found for controller 'sa' (ip: 172.17.30.253)
[*07/17/2019 18:53:11.8291] Failed to join controller sa.
[*07/17/2019 18:53:11.8291] Failed to join controller.
[*07/17/2019 18:53:31.8369]
[*07/17/2019 18:53:31.8370] CAPWAP State: Discovery
[*07/17/2019 18:53:31.8473] Discovery Request sent to 255.255.255.255, discovery type UNKNOWN(0)
[*07/17/2019 18:53:31.8595] Discovery Response from 172.17.30.253
[*07/17/2019 18:53:42.0012]
[*07/17/2019 18:53:42.0012] CAPWAP State: DTLS Setup
[*07/17/2019 18:53:42.0675] dtls_process_packet: DTLS Error: 1046
[*07/17/2019 18:53:42.0676] dtls_process_packet: The controller shut down the DTLS connection.
[*07/17/2019 18:53:42.0676] dtls_process_packet: Please verify that the AP certificate is valid and has not expired.

 

Have you tried to Google some of the errors you see in the log?  You should look into this: No more AP manager addresses remain.  Search the forums also, some mention certs or NTP issues.

https://www.cisco.com/c/en/us/support/docs/wireless/5500-series-wireless-controllers/119286-lap-notjoin-wlc-tshoot.html

-Scott
*** Please rate helpful posts ***

Yea i did googling sir.I tried possibel way which was suggested in internet sir

I don't know what to tell you.  If you are having a lot of issues, then maybe start all over by factory resetting the ap and doing it all over again.  Like I mentioned, take a look at some blogs or videos and make sure you follow the steps.  If it doesn't work, then maybe there is an issue with your ap.  If you have another one, try it on that one too.

-Scott
*** Please rate helpful posts ***
Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card