3850 and AP 2602i-E-K9 - AP won't stay joined?

Answered Question
Dec 4th, 2013

I have a  WS-C3850-48P and a single AP directly connected - this is a green field confg and I, as of yet, habe not gotten it to work. Both the 3850 and AP are physically located in Italy, I am in the US.

When I no shut the AP interface and it boots - it gets a DHCP load - seems to join but the fails and cycles thru another DHCP load (i.e. it takes a new IP address) seems to join and then fails again.

Any suggections would be appreciated.

Here are some of the relevant configs

ip dhcp excluded-address 192.168.11.1 192.168.11.50

ip dhcp excluded-address 192.168.11.200 192.168.11.254

!

ip dhcp pool Clients

network 192.168.11.0 255.255.255.0

default-router 192.168.11.1

dns-server 8.8.8.8

option 60 ascii "Cisco AP c2600"

option 43 hex f104.c0a8.0b02

!

wireless mobility controller

wireless management interface Vlan666

wlan Wireless 10 PisaIII-test

client vlan 666

no security wpa akm dot1x

security wpa akm psk set-key ascii 0 10nT5@d1n6

no shutdown

ap country IT

ap dot11 24ghz rrm channel dca 1

ap dot11 24ghz rrm channel dca 6

ap dot11 24ghz rrm channel dca 11

ap dot11 5ghz rrm channel dca 36

ap dot11 5ghz rrm channel dca 40

ap dot11 5ghz rrm channel dca 44

ap dot11 5ghz rrm channel dca 48

ap dot11 5ghz rrm channel dca 52

ap dot11 5ghz rrm channel dca 56

ap dot11 5ghz rrm channel dca 60

ap dot11 5ghz rrm channel dca 64

ap dot11 5ghz rrm channel dca 149

ap dot11 5ghz rrm channel dca 153

ap dot11 5ghz rrm channel dca 157

ap dot11 5ghz rrm channel dca 161

ap group default-group

end

!

interface Vlan666

description ### Wireless Controller ####

ip address 192.168.11.2 255.255.255.0

!

!

Some other details:

ion.pisa3-grdflr-c1#sho cdp nei  | inc AIR

AP7c69.f604.9775 Gig 1/0/6         122              R T   AIR-CAP26 Gig 0.1

interface GigabitEthernet1/0/6

description ### Connection to AP#1 for Wireless Controller ###

switchport access vlan 666

ion.pisa3-grdflr-c1#show ap conf general

Cisco AP Name   : AP7c69.f604.9775

=================================================

Cisco AP Identifier                             : 35

Country Code                                    : IT  - Italy

Regulatory Domain Allowed by Country            : 802.11bg:-E     802.11a:-E

AP Country Code                                 : IT  - Italy

AP Regulatory Domain                            : Unconfigured

Switch Port Number                              :

MAC Address                                     : 7c69.f604.9775

IP Address Configuration                        : DHCP

IP Address                                      : 192.168.11.116

IP Netmask                                      : 255.255.255.0

Gateway IP Address                              : 192.168.11.1

CAPWAP Path MTU                                 : 1500

Telnet State                                    : Disabled

SSH State                                       : Disabled

Cisco AP Location                               : default location

Cisco AP Group Name                             : default-group

Administrative State                            : Enabled

Operation State                                 : Registered

AP Mode                                         : Local

AP Submode                                      : Not Configured

Remote AP Debug                                 : Disabled

Logging Trap Severity Level                     : informational

Software Version                                : 10.0.111.0

Boot Version                                    : 15.2.2.4

Stats Reporting Period                          : 180

LED State                                       : Enabled

PoE Pre-Standard Switch                         : Disabled

PoE Power Injector MAC Address                  : Disabled

Power Type/Mode                                 : Power Injector/Normal Mode

Number of Slots                                 : 2

AP Model                                        : 2602I

AP Image                                        : C2600-K9W8-M

IOS Version                                     : 15.2(2)JN1$

Reset Button                                    : Enabled

AP Serial Number                                : FCZ1730D0R7

AP Certificate Type                             : Manufacture Installed

Management Frame Protection Validation          : Disabled

AP User Mode                                    : Automatic

AP User Name                                    : Not Configured

AP 802.1X User Mode                             : Not Configured

AP 802.1X User Name                             : Not Configured

Cisco AP System Logging Host                    : 255.255.255.255

AP Up Time                                      : 24 minutes 2 seconds

AP CAPWAP Up Time                               : 38 seconds

Join Date and Time                              : 12/04/2013 15:08:05

Join Taken Time                                 : 1 minute 37 seconds

Ethernet Port Duplex                            : Auto

Ethernet Port Speed                             : Auto

AP Link Latency                                 : Disabled

Rogue Detection                                 : Enabled

AP TCP MSS Adjust                               : Disabled

AP TCP MSS Size                                 : 0

Base MAC        Ethernet MAC    AP Name               IP Address       Status     

---------------------------------------------------------------------------------

f84f.57ca.6ab0  7c69.f604.9775  AP7c69.f604.9775      192.168.11.111   Joined     

Base MAC        Ethernet MAC    AP Name               IP Address       Status     

---------------------------------------------------------------------------------

f84f.57ca.6ab0  7c69.f604.9775  AP7c69.f604.9775      192.168.11.117   Joined     

Turned on some debugging

ion.pisa3-grdflr-c1#show deb

Nova Platform:

        capwap/ap/error debugging is on

        dtls/ap/event debugging is on

        capwap/ap/events debugging is on

The log after 'no shutting' the AP interface:

Log Buffer (10000 bytes):

809

*Dec  4 15:21:10.958 GMT:  Updating state for wtp f84f.57ca.6ab0 ip 192.168.11.121 1 wcm: 1.2:5246 / 192.168.11.121:18809

*Dec  4 15:21:10.958 GMT: CAPWAP-DTLS switching over to use DTLS Engine. 1 wcm: 68.11.121

*Dec  4 15:21:11.104 GMT: F84F.57CA.6AB0 Configuration Status from 192.168.11.121: 1 wcm: 18809

*Dec  4 15:21:11.104 GMT: F84F.57CA.6AB0 New unsupported Payload 254 in message from AP F84F.57CA.6AB0, Return SUCCESS 1 wcm: t recei

*Dec  4 15:21:11.104 GMT: F84F.57CA.6AB0 Decoding new unsupported Payload 254 in message from AP F84F.57CA.6AB0, Return SUCCESS 1 wcm:

*Dec  4 15:21:11.104 GMT: Invalid channel 1 spacified for the AP AP7c69.f604.9775, slotId = 0

1 wcm: P F84F.57CA.6AB0, Return SUCCESS

*Dec  4 15:21:11.104 GMT: Invalid channel 48 spacified for the AP AP7c69.f604.9775, slotId = 1

1 wcm:  F84F.57CA.6AB0, Return SUCCESS

*Dec  4 15:21:11.104 GMT: F84F.57CA.6AB0 Updating IP info for AP  F84F.57CA.6AB0  -- static 0, 192.168.11.121/255.255.255.0, gtw 192.168.11.1 1 wcm:

*Dec  4 15:21:11.104 GMT: F84F.57CA.6AB0 Updating IP 192.168.11.121 ===> 192.168.11.121 for AP  F84F.57CA.6AB0  1 wcm: 5.255.255.0, gtw 192.168.11.1

*Dec  4 15:21:11.105 GMT: F84F.57CA.6AB0 Ignoring unsupported vendor-specific message 0x00409600-007b-AP Trunk Vlan Id Payload from AP F84F.57CA.6AB0

1 wcm:

*Dec  4 15:21:11.105 GMT: F84F.57CA.6AB0 Ignoring unsupported vendor-specific message 0x00409600-007b-AP Trunk Vlan Id Payload from AP F84F.57CA.6AB0

1 wcm:

*Dec  4 15:21:11.105 GMT: F84F.57CA.6AB0 Received Unsupported vendor specific payload: 1 wcm:  123

*Dec  4 15:21:11.105 GMT: F84F.57CA.6AB0 AP  F84F.57CA.6AB0 : 1 wcm:  Invalid country code ().

*Dec  4 15:21:11.105 GMT: F84F.57CA.6AB0  F84F.57CA.6AB0  AP Country changed from: 1 wcm: () to (IT ).

*Dec  4 15:21:11.105 GMT: F84F.57CA.6AB0 PHY_TX_POWER_PAYLOAD: 1 wcm:  Invalid Tx Power Level 0

*Dec  4 15:21:11.105 GMT: F84F.57CA.6AB0 Ignoring unsupported vendor-specific message 0x00409600-006f-Rad Ext Config Payload from AP F84F.57CA.6AB0

1 wcm: 

*Dec  4 15:21:11.105 GMT: F84F.57CA.6AB0 Ignoring unsupported vendor-specific message 0x00409600-006f-Rad Ext Config Payload from AP F84F.57CA.6AB0

1 wcm: 

002694: *Dec  4 15:21:11.105 GMT: *spamApTask0: 1 wcm:  %LOG-3-Q_IND: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination 

*Dec  4 15:21:11.105 GMT: F84F.57CA.6AB0 Received Unsupported vendor specific payload: 1 wcm:  111

002695: *Dec  4 15:21:11.105 GMT: *spamApTask0: 1 wcm:  %LWAPP-3-RD_ERR7: Invalid country code () for AP f8:4f:57:ca:6a:b0 

002696: *Dec  4 15:21:11.105 GMT: *spamApTask0: 1 wcm:  %LWAPP-3-RD_ERR9: APs f8:4f:57:ca:6a:b0 country code changed from () to (IT ) 

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0 [Slot 0] Corrected infeasible channel (13,0,20) -> (11,0,20) 1 wcm: rom () to (IT ) 

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0 AP  F84F.57CA.6AB0 : 1 wcm:  Invalid country code ().

002697: *Dec  4 15:21:11.106 GMT: *spamApTask0: 1 wcm:  %LWAPP-3-RD_ERR7: Invalid country code () for AP f8:4f:57:ca:6a:b0 

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0  F84F.57CA.6AB0  AP Country changed from: 1 wcm: () to (IT ).

002698: *Dec  4 15:21:11.106 GMT: *spamApTask0: 1 wcm:  %LWAPP-3-RD_ERR9: APs f8:4f:57:ca:6a:b0 country code changed from () to (IT ) 

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0 PHY_TX_POWER_PAYLOAD: 1 wcm:  Invalid Tx Power Level 0

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0 Ignoring unsupported vendor-specific message 0x00409600-006f-Rad Ext Config Payload from AP F84F.57CA.6AB0

1 wcm: 

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0 Ignoring unsupported vendor-specific message 0x00409600-006f-Rad Ext Config Payload from AP F84F.57CA.6AB0

1 wcm: 

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0 Received Unsupported vendor specific payload: 1 wcm:  111

002699: *Dec  4 15:21:11.113 GMT: %CAPWAP-3-AP_PORT_CFG: AP connected port Gi1/0/6 is not an access port.

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0 [Slot 1] Corrected infeasible channel (140,0,20) -> (44,0,20) 1 wcm: ad Ext Config Payload from AP F84F.57CA.6AB0

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0 Received ROGUE_CONFIG_PAYLOAD: 1 wcm:  Enable, Reporting Interval 0xa

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0 Platform not Supported, exiting Load Balancer function 1 wcm: al 0xa

*Dec  4 15:21:11.106 GMT: load balancer rc=4 for AP 192.168.11.121, IIF ID: 1 wcm: 0x00d71c800000005d

*Dec  4 15:21:11.107 GMT: F84F.57CA.6AB0 Data Tunnel Create timer started for 240 seconds timeout 1 wcm:  0xa

*Dec  4 15:21:11.107 GMT: F84F.57CA.6AB0 Data Tunnel created -     tunnel type NON_CRYPTO, load balancer support Not supported, tunnel mtu 1464,

    anc_sw_id 0, anc_asic_id 0, res_sw_id 0, res_asic_id 0

    anc_wp_iif_id 0x0000000000000000, res_wp_iif_id 0x0000000000000000

1 wcm: _`^PJ_`^PJ_`^PJ_`^PJ_q^PJ_^PJ_`^PJ_

*Dec  4 15:21:11.107 GMT: F84F.57CA.6AB0 Not ready to send Config Status Response to AP 192.168.11.121 as SPI ACK is not received  1 wcm: nel mtu 1464,     anc_sw_id 0, anc_asic_id 0, res_sw_id 0, res_asic_id 0     anc_wp_iif_id 0x0000000000000000, res_wp_iif_id 0x0000000000000000

*Dec  4 15:21:11.107 GMT: F84F.57CA.6AB0 AP f84f.57ca.6ab0 associated. Last AP failure was due to Link Failure,reason: 1 wcm:      HANDOFF_REQUEST

*Dec  4 15:21:11.114 GMT:

Received CAPWAP Tunnel SPI update 1 wcm: sociated. Last AP failure was due to Link Failure,reason:     HANDOFF_REQUEST

*Dec  4 15:21:11.114 GMT: ------SPI Delete ACK: 1 wcm:  Capwap Data Tunnel Down / Create Failed for IifId: 0x00d71c800000005d AP: 192.168.11.121

*Dec  4 15:21:11.114 GMT: F84F.57CA.6AB0 SPI NACK : 1 wcm:  Capwap Data Tunnel create Failed for iifid:0x00d71c800000005d AP:192.168.11.121 rv: CAPWAP_DATA_TUNNEL_CREATE_FAILED

*Dec  4 15:21:11.114 GMT: F84F.57CA.6AB0 Capwap Data Tunnel create retry exceeded max retry count 1 for iifid: 1 wcm: 0x00d71c800000005d AP:192.168.11.121

*Dec  4 15:21:11.114 GMT: F84F.57CA.6AB0 Called Load balancer to free data tunnel resource: 1 wcm:  rc 4

*Dec  4 15:21:11.115 GMT: F84F.57CA.6AB0 Failure in DATA TUNNEL Creation: 1 wcm:  SPI NACK: Capwap Data Tunnel create Failed for iifid:0x00d71c800000005d AP:192.168.11.121 rv: CAPWAP_DATA_TUNNEL_CREATE

*Dec  4 15:21:11.115 GMT: F84F.57CA.6AB0 Finding DTLS connection to delete for AP (192: 1 wcm: 168:11:121/18809)

*Dec  4 15:21:11.115 GMT: F84F.57CA.6AB0 Disconnecting DTLS Capwap-Ctrl session 0x12c8ef28 for AP (192: 1 wcm: 168:11:121/18809)

*Dec  4 15:21:11.115 GMT: F84F.57CA.6AB0  Requested by acDtlsCleanup 1 wcm: rl session 0x12c8ef28 for AP (192:168:11:121/18809)

*Dec  4 15:21:11.115 GMT: Deleting hash for Local 192.168.11.2: 1 wcm: 5246  Peer 192.168.11.121:18809

*Dec  4 15:21:11.115 GMT: acDtlsCallback: 1 wcm:  entering...

*Dec  4 15:21:11.115 GMT: acDtlsCallback: 1 wcm:  cb->code 1

*Dec  4 15:21:11.115 GMT: F84F.57CA.6AB0 DTLS Connection 0x12c8ef28 closed by controlleron local port to peer 192.168.11.121: 1 wcm: 18809

*Dec  4 15:21:11.115 GMT: Remove CAPWAP control DTLS engine session 192.168.11.2: 1 wcm: 5246 <-> 192.168.11.121:18809.

*Dec  4 15:21:11.115 GMT: Unplumbed DTLS keys for local_ip 192.168.11.2, local_port 5246, peer_ip 192.168.11.121, peer_port 18809  1 wcm: d71c800000005d AP:192.168.11.121 rv: CAPWAP_DATA_TUNNEL_CREATE

*Dec  4 15:21:11.115 GMT: Called Load balancer to free control tunnel resource for peer 192.168.11.121: 1 wcm:  rc 0

002700: *Dec  4 15:21:11.116 GMT: *spamApTask0: 1 wcm:  %CAPWAP-3-DATA_TUNNEL_CREATE_ERR2: Failed to create CAPWAP data tunnel with interface id: 0xd71c800000005d for AP: f84f.57ca.6ab0 Error Reason: Capwap Data Tunnel create retry exceeded max retry count. 

*Dec  4 15:21:11.116 GMT: Starting DTLS session delete timer for AP f84f.57ca.6ab0 1 wcm: o create CAPWAP data tunnel with interface id: 0xd71c800000005d for AP: f84f.57ca.6

*Dec  4 15:21:11.116 GMT: F84F.57CA.6AB0 DTLS connection closed event receivedserver (192: 1 wcm: 168:11:2/5246) client (192:168:11:121/18809)

*Dec  4 15:21:11.117 GMT: Connection not found in hash table - Table empty. 1 wcm: edserver (192:168:11:2/5246) client (192:168:11:121/18809)

*Dec  4 15:21:11.117 GMT: F84F.57CA.6AB0 Entry exists for AP (192: 1 wcm: 168:11:121/18809)

*Dec  4 15:21:11.117 GMT: F84F.57CA.6AB0 apfSpamProcessStateChangeInSpamContext: 1 wcm:  Deregister LWAPP event for AP  F84F.57CA.6AB0  slot 0

*Dec  4 15:21:11.117 GMT: F84F.57CA.6AB0 Deregister LWAPP event for AP  F84F.57CA.6AB0  slot 0 1 wcm: PP event for AP  F84F.57CA.6AB0  slot 0

*Dec  4 15:21:11.117 GMT: F84F.57CA.6AB0 apfSpamProcessStateChangeInSpamContext: 1 wcm:  Deregister LWAPP event for AP  F84F.57CA.6AB0  slot 1

*Dec  4 15:21:11.117 GMT: F84F.57CA.6AB0 Deregister LWAPP event for AP  F84F.57CA.6AB0  slot 1 1 wcm: PP event for AP  F84F.57CA.6AB0  slot 1

*Dec  4 15:21:11.125 GMT: F84F.57CA.6AB0 Called Load balancer to free data tunnel resource: 1 wcm:  rc 4

*Dec  4 15:21:11.125 GMT: Updated AVL entry for phyIifid: 1 wcm:  0x0108cac000000017 macAddr:f8:4f:57:ca:6a:b0, phyIfName: gigabitethernet1/0/6 Decremented the number of APs on this Phy interface = 0

*Dec  4 15:21:11.125 GMT: SUCCESS: 1 wcm:  Able to delete entry for PhyIifId: 0x108cac000000017 from AVL Tree

*Dec  4 15:21:11.125 GMT: F84F.57CA.6AB0 No AP entry exist in temporary database for 192.168.11.121: 1 wcm: 18809

*Dec  4 15:21:11.130 GMT: Received DTLS engine action feedback for CAPWAP connection 1 wcm: 192.168.11.121:18809

*Dec  4 15:21:11.130 GMT: DTLS Engine Delete Success received for connection 192.168.11.2: 1 wcm: 5246 / 192.168.11.121:18809

*Dec  4 15:21:25.951 GMT: F84F.57CA.6AB0 Values for AP f8: 1 wcm: 4f:57:ca:6a:b0, Timer-Retry-Count 0, Tunnel-Delete-Retry-Count 0, Num of Client 0

*Dec  4 15:21:25.951 GMT: F84F.57CA.6AB0 Starting data-tunnel-delete process, no (0) client associated to AP f8: 1 wcm: 4f:57:ca:6a:b0 or accumulated timer limit reached

*Dec  4 15:21:25.952 GMT: Capwap tunnel delete called for iif id 0xd71c800000005d in timer delete callback 1 wcm: P f8:4f:57:ca:6a:b0 or accumulated timer limit reached

ion.pisa3-grdflr-c1#

I have this problem too.
0 votes
Correct Answer by Manannalage ras... about 1 year 5 months ago

Hi Jerry,

Does this work for you now ?

If all ok, pls rate this thread as answered & rate all useful responses. That will help others

Rasika

Correct Answer by Leo Laohoo about 1 year 5 months ago

Wait a second .... What port is the AP connected to?

Can you post the output to the command "sh cdp neighbor detail"?

000190: *Dec  4 19:21:54.429 GMT: %CAPWAP-3-AP_PORT_CFG: AP connected port Gi1/0/6 is not an access port.

Is the AP port configured as an access port?  It should be.

Correct Answer by Manannalage ras... about 1 year 5 months ago

Hi Jerry,

Yes, your 3850 needs to be configured as MC since you do not have any other controllers.

I would check the 3850 image (ipbase or ipservice need to MC functionality) & country configured on your 3850. Post the following two output of your 3850

1. show wireless country configured

2. show license right-to-use summary

Also make sure AP connected port is configured as access port (sw mode acc & sw ac vlan 666) , below error msg say it is NOT

002699: *Dec  4 15:21:11.113 GMT: %CAPWAP-3-AP_PORT_CFG: AP connected port Gi1/0/6 is not an access port.

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0 [Slot 1] Corrected infeasible channel (140,0,20) -> (44,0,20) 1 wcm: ad Ext Config Payload from AP F84F.57CA.6AB0

Please refere these two post, as it describe in detail AP registration & WLAN config with this 3850 setup.

1. http://mrncciew.com/2013/09/29/getting-started-with-3850/

2. http://mrncciew.com/2013/12/04/wlan-config-in-3850-part-1/

HTH

Rasika

**** Pls rate all useful response ****

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (4 ratings)
Leo Laohoo Wed, 12/04/2013 - 14:36
wireless mobility controller

Is there a way for you to change this to mobility access?

Jerry McConnell Wed, 12/04/2013 - 15:49

On the 3850 I believe the command is

No wireless mobility controller

I will give that a try as soon as I get home...but may I ask why...?

Leo Laohoo Wed, 12/04/2013 - 16:01
I will give that a try as soon as I get home...but may I ask why...?

Because your 3850 has to be in mobility access mode.

Correct Answer
Manannalage ras... Wed, 12/04/2013 - 18:02

Hi Jerry,

Yes, your 3850 needs to be configured as MC since you do not have any other controllers.

I would check the 3850 image (ipbase or ipservice need to MC functionality) & country configured on your 3850. Post the following two output of your 3850

1. show wireless country configured

2. show license right-to-use summary

Also make sure AP connected port is configured as access port (sw mode acc & sw ac vlan 666) , below error msg say it is NOT

002699: *Dec  4 15:21:11.113 GMT: %CAPWAP-3-AP_PORT_CFG: AP connected port Gi1/0/6 is not an access port.

*Dec  4 15:21:11.106 GMT: F84F.57CA.6AB0 [Slot 1] Corrected infeasible channel (140,0,20) -> (44,0,20) 1 wcm: ad Ext Config Payload from AP F84F.57CA.6AB0

Please refere these two post, as it describe in detail AP registration & WLAN config with this 3850 setup.

1. http://mrncciew.com/2013/09/29/getting-started-with-3850/

2. http://mrncciew.com/2013/12/04/wlan-config-in-3850-part-1/

HTH

Rasika

**** Pls rate all useful response ****

Jerry McConnell Wed, 12/04/2013 - 18:30

Thank You both for your responses.

1) I did the 'no wireless mobility controller' - which requires a reload - and I got similar results (log is below)

2) I may be confusing Mobility Access and Mobility Controller - given the command in #1 above am I in MA or MC mode now - I would have thought MA?

3) I will now read those posts and see if I can;t figure this out - thank you again - I will let you know how I get on.

Log Buffer (10000 bytes):

000178: *Dec  4 19:19:21.132 GMT: %ILPOWER-7-DETECT: Interface Gi1/0/6: Power Device detected: IEEE PD

000179: *Dec  4 19:19:21.360 GMT: %ILPOWER-5-POWER_GRANTED: Interface Gi1/0/6: Power granted

000180: *Dec  4 19:19:21.911 GMT: %LINK-3-UPDOWN: Interface GigabitEthernet1/0/6, changed state to down

000181: *Dec  4 19:19:22.047 GMT: %SYS-5-CONFIG_I: Configured from console by root on vty0 (10.100.19.70)

000182: *Dec  4 19:19:26.065 GMT: %LINK-3-UPDOWN: Interface GigabitEthernet1/0/6, changed state to up

000183: *Dec  4 19:19:27.065 GMT: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet1/0/6, changed state to up

000184: *Dec  4 19:21:54.262 GMT: *sshpmSvcRcvTask: 1 wcm:  %LOG-3-Q_IND: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination 

000185: *Dec  4 19:21:54.262 GMT: *sshpmSvcRcvTask: 1 wcm:  %CAPWAP-3-INVALID_RET_CODE: Invalid result code 3. Failed to Process DTLS packet 

000186: *Dec  4 19:21:54.427 GMT: *spamApTask1: 1 wcm:  %LWAPP-3-RD_ERR7: Invalid country code () for AP f8:4f:57:ca:6a:b0 

000187: *Dec  4 19:21:54.427 GMT: *spamApTask1: 1 wcm:  %LWAPP-3-RD_ERR9: APs f8:4f:57:ca:6a:b0 country code changed from () to (IT ) 

000188: *Dec  4 19:21:54.427 GMT: *spamApTask1: 1 wcm:  %LWAPP-3-RD_ERR7: Invalid country code () for AP f8:4f:57:ca:6a:b0 

000189: *Dec  4 19:21:54.427 GMT: *spamApTask1: 1 wcm:  %LWAPP-3-RD_ERR9: APs f8:4f:57:ca:6a:b0 country code changed from () to (IT ) 

000190: *Dec  4 19:21:54.429 GMT: %CAPWAP-3-AP_PORT_CFG: AP connected port Gi1/0/6 is not an access port.

000191: *Dec  4 19:21:54.430 GMT: *spamApTask0: 1 wcm:  %CAPWAP-3-DATA_TUNNEL_CREATE_ERR2: Failed to create CAPWAP data tunnel with interface id: 0xc1b84000000004 for AP: f84f.57ca.6ab0 Error Reason: Capwap Data Tunnel create retry exceeded max retry count. 

000192: *Dec  4 19:21:57.198 GMT: *spamReceiveTask: 1 wcm:  %LWAPP-3-AP_LICENSE_REQUEST_ERR: License request failed for AP f8:4f:57:ca:6a:b0 - AP License Request timedout, ensure MC link is up, Resettting AP 

000193: *Dec  4 19:22:17.857 GMT: *spamApTask0: 1 wcm:  %CAPWAP-3-INVALID_STATE_EVENT: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination 

000194: *Dec  4 19:22:27.855 GMT: *spamApTask0: 1 wcm:  %CAPWAP-3-INVALID_STATE_EVENT: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination[...It occurred 3 times/sec!.]  

000195: *Dec  4 19:22:37.855 GMT: *spamApTask0: 1 wcm:  %CAPWAP-3-INVALID_STATE_EVENT: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination 

000196: *Dec  4 19:22:47.859 GMT: *spamApTask0: 1 wcm:  %CAPWAP-3-INVALID_STATE_EVENT: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination[...It occurred 3 times/sec!.]  

000197: *Dec  4 19:22:57.859 GMT: *spamApTask0: 1 wcm:  %CAPWAP-3-INVALID_STATE_EVENT: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination 

000198: *Dec  4 19:23:23.489 GMT: *spamApTask1: 1 wcm:  %LOG-3-Q_IND: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination[...It occurred 2 times.!]  

000199: *Dec  4 19:23:23.489 GMT: *spamApTask1: 1 wcm:  %CAPWAP-3-INVALID_STATE_EVENT: Invalid AP event (CAPWAP Heart Beat Timer Expiry) and state (CAPWAP Join Response) combination 

000200: *Dec  4 19:23:33.359 GMT: *spamApTask1: 1 wcm:  %CAPWAP-3-INVALID_STATE_EVENT: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination 

000201: *Dec  4 19:23:53.745 GMT: *spamApTask1: 1 wcm:  %LOG-3-Q_IND: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination 

000202: *Dec  4 19:23:53.745 GMT: *spamApTask1: 1 wcm:  %LWAPP-3-RD_ERR7: Invalid country code () for AP f8:4f:57:ca:6a:b0 

000203: *Dec  4 19:23:53.745 GMT: *spamApTask1: 1 wcm:  %LWAPP-3-RD_ERR9: APs f8:4f:57:ca:6a:b0 country code changed from () to (IT ) 

000204: *Dec  4 19:23:53.745 GMT: *spamApTask1: 1 wcm:  %LWAPP-3-RD_ERR7: Invalid country code () for AP f8:4f:57:ca:6a:b0 

000205: *Dec  4 19:23:53.745 GMT: *spamApTask1: 1 wcm:  %LWAPP-3-RD_ERR9: APs f8:4f:57:ca:6a:b0 country code changed from () to (IT ) 

000206: *Dec  4 19:23:53.749 GMT: %CAPWAP-3-AP_PORT_CFG: AP connected port Gi1/0/6 is not an access port.

000207: *Dec  4 19:23:53.750 GMT: *spamApTask0: 1 wcm:  %CAPWAP-3-DATA_TUNNEL_CREATE_ERR2: Failed to create CAPWAP data tunnel with interface id: 0xd06a4000000005 for AP: f84f.57ca.6ab0 Error Reason: Capwap Data Tunnel create retry exceeded max retry count. 

000208: *Dec  4 19:23:56.418 GMT: *spamReceiveTask: 1 wcm:  %LWAPP-3-AP_LICENSE_REQUEST_ERR: License request failed for AP f8:4f:57:ca:6a:b0 - AP License Request timedout, ensure MC link is up, Resettting AP 

000209: *Dec  4 19:24:17.181 GMT: *spamApTask0: 1 wcm:  %CAPWAP-3-INVALID_STATE_EVENT: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination 

000210: *Dec  4 19:24:27.179 GMT: *spamApTask0: 1 wcm:  %CAPWAP-3-INVALID_STATE_EVENT: Invalid AP event (CAPWAP Discovery Request) and state (CAPWAP Join Response) combination[...It occurred 3 times/sec!.]  

ion.pisa3-grdflr-c1#

ion.pisa3-grdflr-c1#

ion.pisa3-grdflr-c1#

Jerry McConnell Wed, 12/04/2013 - 18:31

..snd here is the out put to those two commands ..

ion.pisa3-grdflr-c1#show wireless country config

Configured Country.............................: IT  - Italy

Configured Country Codes

        IT  - Italy : 802.11a Indoor,Outdoor/ 802.11b / 802.11g

ion.pisa3-grdflr-c1#show lic right sum

  License Name    Type     Count   Period left

-----------------------------------------------

  ipservices   permanent   N/A      Lifetime

  apcount      base        0        Lifetime

  apcount      adder       4        Lifetime

--------------------------------------------

License Level In Use: ipservices

License Level on Reboot: ipservices

Evaluation AP-Count: Disabled

Total AP Count Licenses: 4

AP Count Licenses In-use: 0

AP Count Licenses Remaining: 4

Correct Answer
Leo Laohoo Wed, 12/04/2013 - 18:35

Wait a second .... What port is the AP connected to?

Can you post the output to the command "sh cdp neighbor detail"?

000190: *Dec  4 19:21:54.429 GMT: %CAPWAP-3-AP_PORT_CFG: AP connected port Gi1/0/6 is not an access port.

Is the AP port configured as an access port?  It should be.

Jerry McConnell Wed, 12/04/2013 - 18:44

Sorry - I just switched back to MC - so it is a 5 minute wait for the reload to complete...

And correct = I did not have 'switchport mode access' explicitly set earlier but it is now.

...few minutes more for the reboot and I will post the log...

Jerry McConnell Wed, 12/04/2013 - 18:58

So configured as MC and making AP port 'switchport mode access'  seems to have stabilized the AP and it is now holding onto the IP address.

Thank you gents....now I am going to finish reading those two web pages...and will close this post in a little bit ( too bad I have to wait till tomorrow to have someone in Pisa test this)

Correct Answer
Manannalage ras... Fri, 12/06/2013 - 10:41

Hi Jerry,

Does this work for you now ?

If all ok, pls rate this thread as answered & rate all useful responses. That will help others

Rasika

veer.pratap Wed, 02/26/2014 - 10:12

Hi Rasika,

Is it required to connect the AP directly on 3850 ?

Regards,

Veer Pratap

Manannalage ras... Wed, 02/26/2014 - 10:16

Yes, it is

If you are using 3850 as WLC for those AP to register, then it is required to direct connection.

HTH

Rasika

veer.pratap Wed, 02/26/2014 - 18:51

Thanks for the prompt response Rasika !

If i connect a POE switch with the 3850 via trunk and connect all my APs on the POE switch , will it work ?

because i dont have external power for the APs and i have to connect it on POE switch only.

Regards,

Veer Pratap

Manannalage ras... Wed, 02/26/2014 - 18:56

No, you won't able to register your APs to 3850 unless they are directly connected to the 3850.

You have to register those AP to another controller (5508,2504,WiSM) in that scenario or get POE 3850 to act as WLC/PoE to AP.

HTH

Rasika

**** Pls rate all useful resposnes ****

Actions

Login or Register to take actions

This Discussion

Posted December 4, 2013 at 2:23 PM
Stats:
Replies:14 Overall Rating:5
Views:2458 Votes:0
Shares:0

Related Content