Recently several of our 123AG access points have failed to rejoin the WLC
after being rebooted. This only seems to happen with the 1232AG's. When I console in to
the access point I see the following error messages:
*Mar 1 00:00:06.401: %LINK-3-UPDOWN: Interface FastEthernet0, changed state to up
*Mar 1 00:00:07.401: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0,
changed state to down
*Mar 1 00:00:24.541: %LWAPP-5-CHANGED: LWAPP changed state to DISCOVERY
*Mar 1 00:00:24.581: LWAPP_CLIENT_ERROR_DEBUG: lwapp_crypto_init_ssc_keys_and_certs no
certs in the SSC Private File
*Mar 1 00:00:24.581: LWAPP_CLIENT_ERROR_DEBUG:
*Mar 1 00:00:24.582: lwapp_crypto_init: PKI_StartSession failed
*Mar 1 00:00:24.614: %SYS-5-RELOAD: Reload requested by LWAPP CLIENT. Reload Reason:
FAILED CRYPTO INIT.
*Mar 1 00:00:24.614: %LWAPP-5-CHANGED: LWAPP changed state to DOWN
Does this mean that the access point has somehow lost its ssc key? How can I prevent this
from happening in the future? What is the easiest way to recover once this has happened?
Our WLC is a 5508 and we are running version 184.108.40.206.
The access points are running 220.127.116.11.
All of the access points that I have had this issue with were once connected to the WLC. I've has this occured when the access points were unable to communicate with the controller for an extended period of time because I was upgrading the switch they were connected to. I've also had this happen while moving an access point from one AP group to another.
Thanks for you assistance.
If in case these were autonomous APs basically which you might have conveted LWAPs then you will need to convert it back to autonomous, reconvert it back to LWAP using upgrade tool. This will also load certificate.