Users Not Getting DHCP Address with WPA2 AES Config'd on 1250
We just started testing WPA2 on our IOS APs & WLCs; no problems yet except for with the 1250. We have a 1250 running IOS 124-10b.JDA.
Some users get authenticated and get a DHCP address no problems. A handful of users (no common thread yet in terms of laptop/wireless NIC/wireless driver version) get associated, then authenticated, but never get a DHCP address. If we set a static IP in their wireless settings, they get on the network just fine.
These users had NO problems when only WPA TKIP was configured.
Re: Users Not Getting DHCP Address with WPA2 AES Config'd on 125
I ran some debugs on the AP which did not show much. A wireshark trace off a problem laptop's wireless NIC shows that the user gets authenticated successfully, sends out 4 DHCP requests, then gives up and goes with the local 169.254.x.y address.
Met with a TAC engineer and IOS specialist; they had us disable the "TKIP MIC Failure Holdoff Time" in Security > Advanced Security > Timers, thinking it wouldn't change the problem but they just wanted to try it.
Once that was disabled, all users picked up their DHCP IPs with no problems. Very strange, but it has solved the problem!
Transferring Crash file from standby:
Login to the Active WLC in HA.
(Cisco Controller) >transfer upload datatype crash
(Cisco Controller) >transfer upload filename <Desired filename>
(Cisco Controller) >transfer up...
This is the start of a display filter cross reference between Wireshark and OmniPeek.
The 1st installment is a table of advanced filters. More filters will be added as time allows.
It is a living doc, so check back for changes every so often
Please feel ...
I have created a Powershell script to automatically add a Wireless Guest User on Cisco WLCs. (tested on 2500 Series)
The script should be completely self explanatory.
Powershell SNMP Module (Install-Module -Name SNMP)
SNMP Write Access to...