cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1572
Views
25
Helpful
3
Replies

Reboot WLC 3504 HA Pair without wifi service outage

santa
Level 1
Level 1

Hi,

 

we have a pair of WLC 3504 and we need to reboot them in order to install a new certificate just uploaded. 

Is there any chance for reboot one device per time in order to don't interrupt the wireless service? 

 

We see the cli command: reset system self.

 

It will help us?

 

Thank you

1 Accepted Solution

Accepted Solutions

As per WLC HA SSO deployment guide, certificates are not replicated from primary to secondary controller in a HA SSO scenario.

 

So,

  • You first need to install the certificates on your active controller.
  • Then issue a "redundancy force-switchover" command on your active WLC which will make your standby become active.
  • Now install the certificate on the new active controller (original Standby).
  • Once the pair is in sync, issue another "redundancy force-switchover" and bring up you original primary to be active.

This method will not cause any downtime.

 

Make sure to verify HA status before, during and after installing the certificates. 

 

CJ

 

/** Please rate useful responses **/

View solution in original post

3 Replies 3

As per WLC HA SSO deployment guide, certificates are not replicated from primary to secondary controller in a HA SSO scenario.

 

So,

  • You first need to install the certificates on your active controller.
  • Then issue a "redundancy force-switchover" command on your active WLC which will make your standby become active.
  • Now install the certificate on the new active controller (original Standby).
  • Once the pair is in sync, issue another "redundancy force-switchover" and bring up you original primary to be active.

This method will not cause any downtime.

 

Make sure to verify HA status before, during and after installing the certificates. 

 

CJ

 

/** Please rate useful responses **/

@jagan.chowdam is 100% correct.  This is exactly how it's done "for anything that does not sync" between the pairs.

-Scott
*** Please rate helpful posts ***

To add one little detail. When you redundancy force-switchover the previously active WLC will actually reboot and thus activate the new certificate. 

Review Cisco Networking for a $25 gift card