Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. If you'd prefer to explore, try our test area to get started. And see here for current known issues.

New Member

AP1532's acting as P2P Bridges

Hi,

I have 2 AP1532's working in autonomous mode, configured as a p2p bridge (Root and non-Root) and can not get them in a basic configuration to assocaite with each other.

Here are the configurations;

***ROOT***

!
hostname MESL-INT-AP-ROOT
!
no aaa new-model
no ip cef
!
dot11 syslog
!
dot11 ssid MESL-OUTSIDE
   vlan 127
   authentication open
   authentication key-management wpa version 2
   wpa-psk ascii 7 143A37382049051E101B1A1107
!
dot11 guest
!
username Cisco password 7 032752180500
username mrlict privilege 15 password 7 09785B2B1B3F4C374A1F
!
bridge irb
!
interface Dot11Radio0
 no ip address
 antenna gain 0
 packet retries 64 drop-packet
 station-role root
 bridge-group 1
 bridge-group 1 subscriber-loop-control
 bridge-group 1 spanning-disabled
 bridge-group 1 block-unknown-source
 no bridge-group 1 source-learning
 no bridge-group 1 unicast-flooding
!
interface Dot11Radio1
 no ip address
 !
 encryption vlan 127 mode ciphers aes-ccm
 !
 ssid MESL-OUTSIDE
 !
 antenna gain 0
 peakdetect
 no dfs band block
 packet retries 64 drop-packet
 channel dfs
 station-role root bridge
!
interface Dot11Radio1.127
 encapsulation dot1Q 127 native
 bridge-group 1
!
interface GigabitEthernet0
 no ip address
 duplex auto
 speed auto
!
interface GigabitEthernet0.127
 encapsulation dot1Q 127 native
 bridge-group 1
!
interface GigabitEthernet1
 no ip address
 duplex auto
 speed auto
 bridge-group 1
!
interface BVI1
 ip address 10.100.7.10 255.255.0.0
 ipv6 address dhcp
 ipv6 address autoconfig
 ipv6 enable
!
ip default-gateway 10.100.3.1
ip forward-protocol nd
ip http server
no ip http secure-server
ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
!
bridge 1 route ip
!

 


***NON_ROOT***

!
hostname MESL-OUTSIDE-AP-NONROOT
!
logging rate-limit console 9
enable secret 5 $1$OZAS$B6R7tfgfdqeX8xl2uNHpJ0
!
no aaa new-model
no ip cef
!
dot11 syslog
!       
dot11 ssid MESL-OUTSIDE
   vlan 127
   authentication open
   authentication key-management wpa version 2
   wpa-psk ascii 7 00293635281624333B12656A2C
!
dot11 guest
!
bridge irb
!
interface Dot11Radio0
 no ip address
 antenna gain 0
 packet retries 64 drop-packet
 station-role root
 bridge-group 1
 bridge-group 1 subscriber-loop-control
 bridge-group 1 spanning-disabled
 bridge-group 1 block-unknown-source
 no bridge-group 1 source-learning
 no bridge-group 1 unicast-flooding
!
interface Dot11Radio1
 no ip address
!
 encryption vlan 127 mode ciphers aes-ccm
!
 ssid MESL-OUTSIDE
!
 antenna gain 0
 peakdetect
 packet retries 64 drop-packet
 station-role non-root bridge
!
interface Dot11Radio1.127
 encapsulation dot1Q 127 native
 bridge-group 1
 bridge-group 1 spanning-disabled
!
interface GigabitEthernet0
 no ip address
 duplex auto
 speed auto
!
interface GigabitEthernet0.127
 encapsulation dot1Q 127 native
 bridge-group 1
 bridge-group 1 spanning-disabled
!
interface GigabitEthernet1
 no ip address
 duplex auto
 speed auto
 bridge-group 1
 bridge-group 1 spanning-disabled
!
interface BVI1
 ip address 10.100.7.11 255.255.0.0
 ipv6 address dhcp
 ipv6 address autoconfig
 ipv6 enable
!
ip default-gateway 10.100.3.1
ip forward-protocol nd
ip http server
no ip http secure-server
ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
!
!
bridge 1 route ip
!

I do not see the other AP from the root. Is there any other debug that I could do to confirm where the problem is?

MESL-INT-AP-ROOT#sh dot11 associations

<None>

MESL-INT-AP-NONROOT#Interface Dot11Radio1, cannot associate: No Response

 

Thanks in advance.

 

2 REPLIES
VIP Purple

HiTry to put "infrastructure

Hi

Try to put "infrastructure-ssid" under your SSID configuration  in both ROOT-BRIDGE & NON-ROOT-BRIDGE.

Here is working configuration for a Bridge with EAP-FAST. But you should be able to simply modify the security config to WPA2/PSK

http://mrncciew.com/2013/11/09/wireless-bridge-with-eap-fast/

 

HTH

Rasika

**** Pls rate all useful responses ****

New Member

Thanks Rasika.My issue was

Thanks Rasika.

My issue was actually related to the POE attached Switch not negotiating the correct power (only gave 15W) which resulted in not enough power being available to enable the radios.

Once I statically configured the power (also added "infrastructure-ssid") everything works fine.

 

Thanks again.

106
Views
0
Helpful
2
Replies