cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
15914
Views
5
Helpful
20
Replies

Cisco ISR 1111 internal AP

DAVID
Level 3
Level 3

How does one configure the internal AP on a Cisco 1100 series router to connect to a remote WLC running in the data center and NOT use Mobility Express or itself as the controller? 

20 Replies 20

Hi

Take a look on this guide. First you need to make sure this AP is an lightweight AP. If not, convert it and then point to a WLC.

https://www.cisco.com/c/en/us/support/docs/wireless-mobility/wireless-lan-wlan/116579-configure-technology-00.html#anc9

 

-If I helped you somehow, please, rate it as useful.-

Thanks but the internal AP on the Cisco ISR 1100 is NOT the same type as what is on the 800 series. Plus all the commands are totally different as the router is IOS-XE and not IOS

Apologize. Attached the wrong link.

This might help 

https://www.cisco.com/c/en/us/td/docs/routers/access/1100/software/configuration/xe-16-6/cisco_1100_series_swcfg_xe_16_6_x/cisco_1100_series_swcfg_chapter_01010.html

But the bottom line keeps the same.

Let me know if you need further support.

 

-If I helped you somehow, please, rate it as useful.-

I have gone through that documentation but it seems to be more to the fact that the AP itself can be it's own controller or be configured as a Mobility Express.  I want the AP to join the same WLC as all the other AP's do.  Does the option 43 in the DHCP pool even apply to the internal AP on a Cisco 1100 router?

 

 

RRS1100AP01#sh run
AP Name : RRS1100AP01
Admin State : Enabled
AP Mode : Local
AP Submode : None
Location : default location
Reboot Reason : Reload command
Primary controller name :
Primary controller IP :
Secondary controller name :
Secondary controller IP :
Tertiary controller name :
Tertiary controller IP :
AP join priority : 1
IP Prefer-mode : Unconfigured
CAPWAP UDP-Lite : Unconfigured
Last Joined Controller name:
DTLS Encryption State : Disabled
Discovery Timer : 10
Heartbeat Timer : 30
CDP State : Enabled
Watchdog monitoring : Enabled
IOX : Disabled
RRM State : Enabled
LSC State : Disabled
SSH State : Disabled
AP Username : Cisco
Session Timeout : 300
Extlog Host : 255.255.255.255
Extlog Flags : 0
Extlog Status Interval : 0
Syslog Host : 255.255.255.255
Syslog Facility : 0
Syslog Level : errors
Core Dump TFTP IP Addr :
Core Dump File Compression : Disabled
Core Dump Filename :
Client Trace Status : Enabled(All)
Client Trace All Clients : Enabled
Client Trace Filter : 0x0000000E
Client Trace Out ConsoleLog: Disabled
WLC Link LAG status : Disabled
AP Link LAG status : Disabled
AP WSA Mode : Disabled
Vlan Interface : Disabled

What happen is that Cisco have ME APs nos a days instead autonomous.

 What you need to do is convert it to lightweight AP and then join it to a WLC.

 Ii you can access the AP and the AP is able to communicate with the network, all you need is a lightweight image for this AP model (1815) if Im not wrong.

 The conversation process is pretty straightforward and you can find tons of guide on Google.

 If not, just tell me where are you stocked on.

 

 

-If I helped you somehow, please, rate it as useful.-

RRS1100AP01#capwap ap
  auth-token      Configure Auth Token
  dot1x           Configure the dot1x username and password
  erase           Erase CAPWAP config
  ethernet        Configure Ethernet parameters
  hostname        Configure AP hostname
  ip              Static IP/DNS config
  lag             CAPWAP lag config
  mode            Configure AP mode
  primary-base    Configuring AP's primary controller
  restart         Restart CAPWAP Protocol
  secondary-base  Configuring AP's secondary controller
  tertiary-base   Configuring AP's tertiary controller
RRS1100AP01#capwap ap mode
  bridge  Bridge mode
  local   Local Mode
RRS1100AP01#capwap ap mode local
  <cr>
RRS1100AP01#capwap ap mode local
Capwap process not ready yet. Try after few moments.
AP Mode set failed!
RRS1100AP01#

 

So where am I going wrong with getting this this to work?

 

cisco ISR-AP1100AC-B ARMv7 Processor rev 5 (v7l) with 1016212/853816K bytes of memory.
Processor board ID
AP Running Image     : 8.5.1.10
Primary Boot Image   : 8.5.1.10
Backup Boot Image    : 0.0.0.0
1 Gigabit Ethernet interfaces
2 802.11 Radios
Radio FW version : 3dc1c8a745e457517b0d298523f727d9
NSS FW version : not available

Base ethernet MAC Address            : 38:90:A5:1C:93:08
Part Number                          : 0-000000-00
PCA Assembly Number                  : 074-112699-02
PCA Revision Number                  : 02
PCB Serial Number                    : FOC21391F4M
Top Assembly Part Number             : 074-112699-02
Top Assembly Serial Number           :
Top Revision Number                  : 02
Product/Model Number                 : ISR-AP1100AC-B

 

How do I know with any certainty what model access point is running on the router?

 

RRS1100AP01#ap-type
  capwap            Switch to CAPWAP AP type
  mobility-express  Switch to Mobility Express AP type
RRS1100AP01#ap-type capwap
  <cr>
RRS1100AP01#ap-type capwap
Capwap process not ready yet. Try after few moments.
RRS1100AP01#

Run show version command and share the output please.

 

 

-If I helped you somehow, please, rate it as useful.-

RRS1100AP01#sh ver
             Restricted Rights Legend

Use, duplication, or disclosure by the Government is subject to
restrictions as set forth in subparagraph (c) of the Commercial
Computer Software - Restricted Rights clause at FAR sec. 52.227-19 and
subparagraph (c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.

            Cisco Systems, Inc.
            170 West Tasman Drive
            San Jose, California 95134-1706

This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.

A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

If you require further assistance please contact us by sending email to
export@cisco.com.

This product contains some software licensed under the
"GNU General Public License, version 2" provided with
ABSOLUTELY NO WARRANTY under the terms of
"GNU General Public License, version 2", available here:
http://www.gnu.org/licenses/old-licenses/gpl-2.0.html

This product contains some software licensed under the
"GNU Library General Public License, version 2" provided
with ABSOLUTELY NO WARRANTY under the terms of "GNU Library
General Public License, version 2", available here:
http://www.gnu.org/licenses/old-licenses/lgpl-2.0.html

This product contains some software licensed under the
"GNU Lesser General Public License, version 2.1" provided
with ABSOLUTELY NO WARRANTY under the terms of "GNU Lesser
General Public License, version 2.1", available here:
http://www.gnu.org/licenses/old-licenses/lgpl-2.1.html

This product contains some software licensed under the
"GNU General Public License, version 3" provided with
ABSOLUTELY NO WARRANTY under the terms of
"GNU General Public License, Version 3", available here:
http://www.gnu.org/licenses/gpl.html.

This product contains some software licensed under the
"GNU Affero General Public License, version 3" provided
with ABSOLUTELY NO WARRANTY under the terms of
"GNU Affero General Public License, version 3", available here:
http://www.gnu.org/licenses/agpl-3.0.html.

Cisco AP Software, (ap1g5), [sjc-marsbu-068:/nobackup/qiwu2/mallorca_signed_mfg/router]
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2015 by Cisco Systems, Inc.
Compiled Tue Jul 18 02:04:05 PDT 2017

ROM: Bootstrap program is U-Boot boot loader
BOOTLDR: U-Boot boot loader Version 33

RRS1100AP01 uptime is 0 days, 23 hours, 57 minutes
Last reload time   : Sun Dec 10 20:51:04 UTC 2017
Last reload reason : reload command

cisco ISR-AP1100AC-B ARMv7 Processor rev 5 (v7l) with 1016212/852840K bytes of memory.
Processor board ID
AP Running Image     : 8.5.1.10
Primary Boot Image   : 8.5.1.10
Backup Boot Image    : 0.0.0.0
1 Gigabit Ethernet interfaces
2 802.11 Radios
Radio FW version : 3dc1c8a745e457517b0d298523f727d9
NSS FW version : not available

Base ethernet MAC Address            : 38:90:A5:1C:93:08
Part Number                          : 0-000000-00
PCA Assembly Number                  : 074-112699-02
PCA Revision Number                  : 02
PCB Serial Number                    : FOC21391F4M
Top Assembly Part Number             : 074-112699-02
Top Assembly Serial Number           :
Top Revision Number                  : 02
Product/Model Number                 : ISR-AP1100AC-B


RRS1100AP01#

Alright, this AP is not Mobility Express.

 Just confirm if you have the command :

AP#capwap ap ip address <IP address> <subnet mask>

AP#capwap ap ip default-gateway <IP-address>

AP#capwap ap controller ip address <IP-address>

AP#capwap ap hostname <name>
  (optional)

-If I helped you somehow, please, rate it as useful.- 

I have the internal AP configured to obtain an IP address from a DHCP on the router itself with an option 43 string that will give the AP the IP address of the WLC. This works when I am using 891FW routers with the internal 802AP's.

Can not the internal AP's on the 1100 work the same way?

 

 DHCP on Router

ip dhcp pool 172.31.254.0/28
import all
network 172.31.254.0 255.255.255.240
default-router 172.31.254.1
option 43 hex f104.ac10.1ed4
lease 8

IP address on AP

RRS1100AP01#sh ip interface brief
Interface IP-Address Method Status Protocol Speed Duplex
wired0  172.31.254.14  DHCP up up 1000

 

a reload of the ap yielded the following;

[*12/11/2017 21:39:42.5799] --------- skip capwapd

 

RRS1100AP01#capwap ap
auth-token Configure Auth Token
dot1x Configure the dot1x username and password
erase Erase CAPWAP config
ethernet Configure Ethernet parameters
hostname Configure AP hostname
ip Static IP/DNS config
lag CAPWAP lag config
mode Configure AP mode
primary-base Configuring AP's primary controller
restart Restart CAPWAP Protocol
secondary-base Configuring AP's secondary controller
tertiary-base Configuring AP's tertiary controller
RRS1100AP01#capwap ap restart
<cr>
RRS1100AP01#capwap ap restart
Capwap process not ready yet. Try after few moments.
RRS1100AP01#

 

Is this AP not capable to obtaining the IP address of a WLC through DHCP and then joining that WLC and downloading code and configuration?

It should be as a capwap AP. It all depends on how things a configured.

 Does the AP can ping WLC and vice-versa?

 The command I send above, could help by manually entering the WLC on the AP.

 Otherwise, it has to discover the WLC on its own.

-If I helped you somehow, please, rate it as useful.-

That's my question.  Does the internal AP depend solely on the option 43 command in the DHCP scope to know the IP address of the WLC or are there other configurations necessary??

It depends entirely on your topology. Both methods should work.

 However, the AP must first get an IP address and then start searching the WLC.

 Considering the dhcp successfully assigned an IP address to the AP along WLC IP address using option 43, everything should work smoothly. 

 This is the normal scenario for most AP deployment.

 What you need to make sure is if after AP gets all the information, it can reach the WLC.

 You can enable debug capwap to verify what's going on.

 

-If I helped you somehow, please, rate it as useful.- 

  

This guide is not useful at all. I've run into exactly the same problem as David has. I've got the same 8.5.1 code running on the AP. A 'show run' tells me the AP mode is "Local"

 

AP3890.A51C.9358#ap-type capwap
Capwap process not ready yet. Try after few moments.

 

Like David I too have DHCP sending option 43 (which works fine with the C891), my AP has an IP address and can ping my WLC.

 

No CAPWAP process seems to be running on the AP and no idea how to tell it to run in that mode. There's no way to tell the AP which WLC to connect to but I think that may be because the AP's not in CAPWAP mode?

 

Wonder if I can downgrade the software to something not so bleeding edge?

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card