Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

No ping possible between AIR-SAP1602I-E-K9 and Cisco 866VAE-K9 router with multiple SSID´s / VLANs

All,

I´m playing with a standalone AIR-SAP1602I-E-K9 and an Cisco 866VAE-K9 router trying to set up a WLAN with 3 SSID´s / VLAN´s. The gig interface of the AP is directly connected to the router´s gig switchport. My plan was to configure the routers switchport as a trunk (nativ vlan 1) with the respective SVI´s. On the AP I confgirued the SSID´s mapped to the corresponding VLAN and configred 3 different subnet´s on the BVI´s. So far so good. After doing this I expected to be able to ping from the SVI´s to the BVI´s and vice versa but I it does not work... to be honest right now i have no idea why. All interfaces Radio/Gig/ BVI´s are up on the AP, all SVI´s on the router are up. Can someone have a look on what i configured? Any hints appreciated. Thank you in advance.

AP´s config --> image is flash:/ap1g2-k9w7-mx.152-2.JB/ap1g2-k9w7-mx.152-2.JB

<snip>

dot11 ssid SSID_1

   vlan 1

   max-associations 5

   authentication open

   authentication key-management wpa version 2

   wpa-psk ascii key_1

!

dot11 ssid SSID_3

   vlan 3

   max-associations 5

   authentication open

   authentication key-management wpa version 2

   wpa-psk ascii key_3

!

dot11 ssid SSID_2

   vlan 2

   max-associations 5

   authentication open

   authentication key-management wpa version 2

   wpa-psk ascii key_2

!

interface Dot11Radio0

no ip address

!

encryption mode ciphers aes-ccm tkip

!

encryption vlan 2 mode ciphers aes-ccm tkip

!

encryption vlan 1 mode ciphers aes-ccm tkip

!

encryption vlan 3 mode ciphers aes-ccm tkip

!

ssid SSID_1

!

ssid SSID_2

!

ssid SSID_3

!

antenna gain 0

stbc

beamform ofdm

station-role root

!

interface Dot11Radio0.1

encapsulation dot1Q 1 native

bridge-group 1

bridge-group 1 subscriber-loop-control

bridge-group 1 spanning-disabled

bridge-group 1 block-unknown-source

no bridge-group 1 source-learning

no bridge-group 1 unicast-flooding

!

interface Dot11Radio0.2

encapsulation dot1Q 2

bridge-group 2

bridge-group 2 subscriber-loop-control

bridge-group 2 spanning-disabled

bridge-group 2 block-unknown-source

no bridge-group 2 source-learning

no bridge-group 2 unicast-flooding

!

interface Dot11Radio0.3

encapsulation dot1Q 3

bridge-group 3

bridge-group 3 subscriber-loop-control

bridge-group 3 spanning-disabled

bridge-group 3 block-unknown-source

no bridge-group 3 source-learning

no bridge-group 3 unicast-flooding

!

<snip>

!

interface GigabitEthernet0

no ip address

duplex auto

speed auto

!

interface GigabitEthernet0.1

encapsulation dot1Q 1 native

bridge-group 1

bridge-group 1 spanning-disabled

no bridge-group 1 source-learning

!

interface GigabitEthernet0.2

encapsulation dot1Q 2

bridge-group 2

bridge-group 2 spanning-disabled

no bridge-group 2 source-learning

!

interface GigabitEthernet0.3

encapsulation dot1Q 3

bridge-group 3

bridge-group 3 spanning-disabled

no bridge-group 3 source-learning

!

interface BVI1

ip address 192.168.1.14 255.255.255.0

!

interface BVI2

ip address 192.168.2.2 255.255.255.0

no ip route-cache

!

interface BVI3

ip address 192.168.3.2 255.255.255.0

<snip>

#######################################################################

#######################################################################

Router config: --> image flash:c860vae-advsecurityk9-mz.151-4.M4.bin

<snip>

vlan 2

name VLAN_2

!

vlan 3

name VLAN_3

!

<snip>

!

interface GigabitEthernet0

switchport trunk allowed vlan 1-3,1002-1005

switchport mode trunk

no ip address

!

interface Vlan1

ip address 192.168.1.1 255.255.255.0

!

interface Vlan2

ip address 192.168.2.1 255.255.255.0

!

interface Vlan3

ip address 192.168.3.1 255.255.255.0

!

1 REPLY
New Member

Re: No ping possible between AIR-SAP1602I-E-K9 and Cisco 866VAE-

All,

classical "problem in front of the device" issue... .-((. For any reason in my opinion the AP was compareable to a L3 switch configured with SVI. In fact it seems to be compareable to an L2 switch where it is only possible to configure one SVI. Reading this

http://packetlife.net/blog/2012/feb/20/aironet-aps-bridge-groups-and-bvi/

solved my issue at the end of the day. So right now I have only one bvi configured with an ip address and this works.

992
Views
0
Helpful
1
Replies
CreatePlease to create content