01-13-2021 08:48 AM - edited 07-05-2021 01:00 PM
So I have one member who has an iPhone and is having problems connecting to our enterprise Wi-Fi.
Android users are not having problems connecting to, other iPhone users does not have any problems to.
So as far the troubleshooting goes we found something about iPhone on IOS14 - Private Addressing feature which hides their mac address when joining the Wi-Fi.
Upon turning it off the member was able to connect now. Since we have different sites and this is happening only on one site, on the other site the same member can connect to the wifi with the private addressing feature on.
So anyone can assist on how to fix the settings, for the user to use private addressing feature and still manage to connect to the wifi?
our WLC is Cisco 4402 model
01-13-2021 09:33 AM
- Should work, I guess, check the logs or debug the particular mac address with the controller debugging features. Also make sure the WLC is on a recent or advisory controller release , especially if the current release is outdated.
M.
01-13-2021 09:37 AM
- You may also find this thread related :
M.
01-13-2021 10:29 AM
Maybe you should start by looking at your radius logs. I'm assuming you are using PEAP or EAP-TLS since you mentioned enterprise WiFi? In iOS 14, private address was enabled by default and devices are entered into system using the mac address. So if for some reason you see that mac address failed, then the radius server is where I would start looking for answers. If the controller is managing multiple sites, and the issue doesn't happen in other sites, I don't think its a wireless issue. However, the 4402 is very old and sooner or later, devices will have issue connecting when the manufacture start making small changes to the NIC or firmware. The code you are running is no longer supported and you risk having issues in the future.
Also you mentioned other iPhones are working, so it points to the device or how that device is connecting. Maybe reset the network setting on the phone and create it again. The user will have to re-enter their other ssid's when you reset the network on the iPhone.
01-13-2021 10:41 AM
hi all,
I did a debug (debug mac, aaa, dhcp,dns, etc) before the user connected to the wireless but this is all I can see that might help.
Client #1 has MAC Address x:xx:xx:xx:xx
---------------------------------------------------------
Jan 12 13:23:32.929 Client has Received Idle-Timeout from AP
Jan 12 13:23:33.731 Client session has timed out
Jan 12 13:23:33.731 Client has been deauthenticated
Jan 12 13:23:33.731 Client session has timed out
I don't see any blocking on the logs. Its just isolated to users with Iphone and Private addressing feature on their mobile is turned on.
I'll look into the links provided. Thanks
01-13-2021 10:54 AM
You don't see anything on the radius logs?
01-13-2021 01:44 PM
on the show debug command? no I did not see any. I am looking through some other logs on the web gui not sure if its radius but I don't see anything related to the mac address record I am having problems with.
01-13-2021 08:57 PM
01-13-2021 02:01 PM
Run a debug with both the feature turned off and on and then post the output here.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide