Warning message

  • Cisco Support Forums is in Read Only mode while the site is being migrated.
  • Cisco Support Forums is in Read Only mode while the site is being migrated.

Wireless clients re-association disconnects

Unanswered Question
Jul 2nd, 2014
User Badges:

Hi, we use a 5508 ( and 3502i APs.


We are having an issue where multiple clients connecting to a single AP(Like in a training room) are being disconnected or generally having a poor user experience.


I have attached a debug of a failed session, I ran a ping simultaneously to the client also attached


Roaming aggressiveness is set to 3.medium


Any ideas?






  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Leo Laohoo Wed, 07/02/2014 - 22:50
User Badges:
  • Super Gold, 25000 points or more
  • Hall of Fame,

    The Hall of Fame designation is a lifetime achievement award based on significant overall achievements in the community. 

  • Cisco Designated VIP,

    2017 LAN, Wireless

I'd upgrade to 7.6.120.X.

Brendan Marmont Thu, 07/03/2014 - 18:55
User Badges:

Thanks Leo, I had a quick read through the revision notes, there is nothing there that points to the type of behavior we are experiencing, have you had this type of issue in the field and this is what resolved the problem?

chrebert Thu, 07/03/2014 - 19:33
User Badges:
  • Silver, 250 points or more

Hello Brendan,

You have posted in the Small Business Forums, and we don't usually support the Aironet APs.

You will probably have better luck getting an answer if you move your post to the Wireless Mobility section.

Thank you for choosing Cisco,

Christopher Ebert - Advanced Network Support Engineer

Cisco Small Business Support Center

mohanak Fri, 07/04/2014 - 01:33
User Badges:
  • Gold, 750 points or more

Try this: http://www.cisco.com/en/US/products/ps6366/products_qanda_item09186a00808b4c61.s html

The ability to configure the WPA-Handshake timeout through the WLCs was integrated in software release 4.2 and later. You do not need this option in earlier WLC software versions.


These commands can be used to change the WPA Handshake timeout:


    config advanced eap eapol-key-timeout <value>

    config advanced eap eapol-key-retries <value>

The default values continue to reflect the WLCs current behavior.


   - the default value for eapol-key-timeout is 1 second.

   - the default value for eapol-key-retries is 2 retries

Note: On IOS APs, this setting is configurable with the dot11 wpa handshake command.


You can also configure the other EAP parameters with the options under the config advanced eap command.


(Cisco Controller) >config advanced eap ?



   Configures EAPOL-Key Timeout in seconds.


   Configures EAPOL-Key Max Retries.


   Configures EAP-Identity-Request Timeout in seconds.


   Configures EAP-Identity-Request Max Retries.


   Configure the key index used for

   dynamic WEP(802.1x) unicast key (PTK).


   Configure to ignore the same username count

   reaching max in the EAP identity response


   Configures EAP-Request Timeout in seconds.




But again, these timings are during an authentication for the uni-cast key, not the group key (multicast/broadcast key).


This Discussion



Trending Topics: Other Wireless Mobility

client could not be authenticated
Network Analysis Module (NAM) Products
Cisco 6500 nam
reason 440 driver failure
Cisco password cracker
Cisco Wireless mode