Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

Wireless Bridge 1532E client authentication issue

I have setup wireless in camp as following:

One AP1532E connected to wired network, three AP1532E configured as wireless bridges on Dot11Radio1 (5 MHz) interfaces and as root APs on Dot11Radio0 (2.4 MHz) interfaces. 

Some clients have trouble connecting to wireless and I see the following messages on all APs including wired one:

Capri: acif_ath_crypto_vlan_key_get Invalid key type 0

I have enable the same encryption on Dot11Radio0 and Dot11Radio1 interfaces:

encryption vlan 2 mode ciphers aes-ccm tkip wep128.

As I mentioned some wireless clients have trouble and others work fine.

Any suggestion will be appreciated.

Everyone's tags (1)
1 ACCEPTED SOLUTION

Accepted Solutions
VIP Purple

Only enable AES-CCM  & check.

Only enable AES-CCM  & check. If you still have only TKIP supported clients, then you can enable it, but at least  get rid of WEP if that is the case. Encryption config should be like this under radio interface.

encryption vlan 2 mode ciphers aes-ccm

 Also make sure WPA version 2 selected as authentication key management under SSID configuration.

HTH

Rasika

**** Pls rate all useful responses ****

4 REPLIES
VIP Purple

Only enable AES-CCM  & check.

Only enable AES-CCM  & check. If you still have only TKIP supported clients, then you can enable it, but at least  get rid of WEP if that is the case. Encryption config should be like this under radio interface.

encryption vlan 2 mode ciphers aes-ccm

 Also make sure WPA version 2 selected as authentication key management under SSID configuration.

HTH

Rasika

**** Pls rate all useful responses ****

New Member

Thank you Manannalage,

Thank you Manannalage, unfortunately I can't take off other encryption options right now. In order to remove wep encryption I will need to remove SSID binding to Radio interface and it will disconnect the bridge. I will need to be on the location and connect through console to those bridges to do the changes. It probably wont happen soon. I have changed wep to version 2 so.

Thank you for you suggestions.

New Member

Thank you for your suggestion

Thank you for your suggestion. It worked!

Also I was able to take wep encryption off from wireless bridges without connecting to the console of each bridge. I used TFTP server to download current configs, made a change with notepad, and uploaded modified configs to sartup-config on the bridges, then rebooted them. Worked pretty well.

VIP Purple

Good to hear that.Thanks for

Good to hear that.

Thanks for the follow up & update on how you did it.

Rasika

62
Views
0
Helpful
4
Replies
CreatePlease to create content