Not able to configure WPA2 on AP 1231 with latest ios

Unanswered Question
Aug 13th, 2010

Hi All,
I am facing issue configuring wpa2 on the AP. My AP is 1231G with AIR-MP21G Radio.
When i try to configure I get the error as Invalid input detected.

1231GAP(Config-ssid)#authentication key-management wpa2
% Invalid input detected at '^' marker.

I am running latest IOS 12.3(8)JA2 on the AP.

Kindly let me know why am I not able to configure.

Any help on this would be appriciated.



I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
alexc2010 Tue, 08/17/2010 - 12:40

No this is not working. Could you please refer me to the cisco site which says to configu

re like this?

Tiago Antunes Tue, 12/28/2010 - 02:38

Hi Alex,

Like Stephen wrote, the correct sintaxe is

authentication key-management {[wpa version] [cckm]} [optional]


"authentication key-management wpa version 2"

You can check it on the command reference guide:




If  this helps you and/or answers your question please mark the question as  "answered" and/or rate it, so other users can easily find it.

jamesmala Mon, 12/27/2010 - 18:41

Hello, I am having the same problem. I came accross the following link that will explain

why you can not connect to the AP point with the 2.4 Ghz system. You will need to upgrade to the

5 Ghz system. I have tried a lot of different settings on the AP points to try and make them work

and all without success to get them to work.

Look at the link and check it out.

Surendra BG Tue, 12/28/2010 - 20:54


I guess the command "authentication key-management version 2" doesnt exist on 12.3(8)J release.. the catch here is.. when we configure the AES CCM as the encryption under the radio interface, the WPA 2 will be used.. i mean the command will be..

dot11 ssis WPA

auth open

auth key-man wpa

wpa-psk ascii


int dot11 0

encryption mode ciphers aes tkip

With the above configuration, the AP will support WPA2+AES (but never WPA+AES), WPA+TKIP and WPA2+TKIP.

From the 12.4 onwards we have the option of selecting the version 2 that is..

auth key-man wpa version 2 (12.4()J onwards)

lemme know if this answered your question..

Please dont forget to rate the posts which answered your question and mark it as answered or was helpfull


This Discussion



Trending Topics - Security & Network