I have set up an Aironet 2702E, but my clients keeps losing the connection after a while when using the 5 GHZ network. the 2.4 network works without problems.
The AP has been setup in autonomnus mode.
Any help appreciated.
The CLI gives me this error:
EU stuck Nov 6 13:58:31.390: %DOT11-6-GEN_ERROR: Error on Dot11Radio1 - Encryption Engine STUCK BZ738 -- -Traceback= 11AECB8z 20780A4z 17FEE28z 18068C0z 1807D44z 133DDACz 1324B3Cz Nov 6 13:58:31.410: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to resetPCI reset port 1 Nov 6 13:58:32.718: soap_pci_reconfig_radio: radio id 1 Nov 6 13:58:32.750: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to down Nov 6 13:58:38.014: %LINK-6-UPDOWN: Interface Dot11Radio1, changed state to up Nov 6 13:58:39.014: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio1, changed state to up Nov 6 13:58:42.618: %DOT11-4-MAXRETRIES: Packet to client f816.54db.xxxx reached max retries, removing the client Nov 6 13:58:45.718: %DOT11-4-MAXRETRIES: Packet to client f816.54db.xxxx reached max retries, removing the client Nov 6 13:58:46.750: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating Station f816.54db.xxxx Reason: Sending station has left the BSS Nov 6 13:58:46.826: %DOT11-6-ASSOC: Interface Dot11Radio1, Station ap f816.54db.xxxx Associated KEY_MGMT[WPAv2 PSK]
The network card on my PC's are Intel 7260-AC cards with the latest driver.
Current configuration : 2655 bytes ! ! Last configuration change at 14:05:45 UTC Thu Nov 6 2014 ! NVRAM config last updated at 12:29:50 UTC Thu Nov 6 2014 ! NVRAM config last updated at 12:29:50 UTC Thu Nov 6 2014 version 15.3 no service pad service timestamps debug datetime msec service timestamps log datetime msec service password-encryption ! hostname ap ! ! logging rate-limit console 9 enable secret 5 xxx ! no aaa new-model no ip source-route no ip cef
dot11 ssid SSIDNAME-5G band-select authentication open authentication key-management wpa version 2 wpa-psk ascii 7 xxxxx ! dot11 ssid 2.4g band-select authentication open authentication key-management wpa version 2 infrastructure-ssid optional wpa-psk ascii 7 xxxxx ! username CISCO password 7 xxxxx
! bridge irb ! interface Dot11Radio0 no ip address ! encryption mode ciphers aes-ccm ! ssid 2.4G ! antenna gain 0 stbc station-role root bridge-group 1 bridge-group 1 subscriber-loop-control bridge-group 1 spanning-disabled bridge-group 1 block-unknown-source no bridge-group 1 source-learning no bridge-group 1 unicast-flooding ! interface Dot11Radio1
interface GigabitEthernet0 no ip address duplex auto speed 1000 bridge-group 1 bridge-group 1 spanning-disabled no bridge-group 1 source-learning ! interface GigabitEthernet1 no ip address shutdown duplex auto speed auto bridge-group 1 bridge-group 1 spanning-disabled no bridge-group 1 source-learning ! interface BVI1 mac-address f07f.0692.93f4 ip address 10.0.0.xxx 255.255.255.0 ipv6 address dhcp ipv6 address autoconfig ipv6 enable
ip default-gateway 10.0.0.xxx ip forward-protocol nd ip http server no ip http secure-server ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag ! bridge 1 route ip ! line con 0 line vty 0 4 login local length 0 transport input all ! sntp server 10.0.0.xxx sntp broadcast client end
We worked with Cisco TAC on a case regarding our 2702 on code 7.6.120. What we needed to do was make sure only WPA2 + AES was enabled on the SSID, and remove the Session Timeout. We found clients connected on the .11a radio would still retain an IP address and show up from the controller view, but traffic was no longer passing.
If you only have one AP you may want to look to set the channel manually and avoid any of the DFS bands.
Transferring Crash file from standby:
Login to the Active WLC in HA.
(Cisco Controller) >transfer upload datatype crash
(Cisco Controller) >transfer upload filename <Desired filename>
(Cisco Controller) >transfer up...
This is the start of a display filter cross reference between Wireshark and OmniPeek.
The 1st installment is a table of advanced filters. More filters will be added as time allows.
It is a living doc, so check back for changes every so often
Please feel ...
I have created a Powershell script to automatically add a Wireless Guest User on Cisco WLCs. (tested on 2500 Series)
The script should be completely self explanatory.
Powershell SNMP Module (Install-Module -Name SNMP)
SNMP Write Access to...