12-06-2023 12:55 AM
Hi, I am planning to migrate some 1832i AP 8.5.171 to 9800 17.12.2, can we point the AP to the new WLC, will it upgrade itself? Is any code conversion required prior?
Both are in HA and ISE with Mac authentication for clients, what's the preferred way?
I would like to set up 9800 HA first, connect with ISE then point AP. Any suggestions?
12-06-2023 02:21 AM - edited 12-06-2023 02:25 AM
set the 9800 HA first with current recommended version, add to ISE as NAD, join one AP manually to 9800 with “capwap ap primary-base” command and test everything.
if you have prime or dnac, change AP primary controller to 9800 new VIP.
if you don't have any then, update option 43 on dhcp server or your CISCO-CAPWAP-CONTROLLER dns entry with 9800 VIP (do this later even if you use prime or dnac to move AP), whatever mechanism you use, if the AP keep falling back to 2504 then shutdown the uplink port on switch to 2504.
12-06-2023 05:43 AM
Hai so if the primary controller Ip is pointed will it upgrade directly to the latest image on 9800 as the old ap image is aos. 8.5,i read before need to convert t o an intermediate version then to the latest
12-06-2023 07:36 AM
>.... will it upgrade directly to the latest image on 9800
Yes,
M;
12-06-2023 02:36 AM
- For AP and controller compatibility check : https://www.cisco.com/c/en/us/td/docs/wireless/compatibility/matrix/compatibility-matrix.html
- For integration with ISE : https://community.cisco.com/t5/security-knowledge-base/ise-and-catalyst-9800-series-integration-guide/ta-p/3753060
Last but not least : when you are preparing (and or using) the 9800 HA platform ; you can always have a sanity check of the intended configuration with the CLI command show tech wireless ; feed the output into : Wireless Config Analyzer
Don't hesitate on doing this : -> This is so good
M.
12-06-2023 11:55 AM
Despite what the others have said I would recommend upgrading the 2504 (and all the APs) to 8.5.182.11 (link below) before you start the migration because there are changes to the CAPWAP protocol which may cause problems when the APs try to join 17.12.2.
See https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvx98176
12-28-2023 02:19 AM
Hai Rich
I started the migration ,9800 LF controller, upgraded the firmware to 17.12.2, 2504 controller to 8.5.182.11
But i am getting dtls error, on console of 1832i AP i see message no suitable ap manager found ,i changed dtls to version all in cli.
Still no AP join, do i need to generate certificate for physical controller like virtual ones?How can i fix dtls error.
01-04-2024 06:10 AM
@Kevin100 need to see the exact error(s) - ideally the full log (attach as .txt file)
What version of software was the AP running at the time?
What version of WLC software was it trying to join?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide