Cisco Systems OL-17037-01 manual Using Dhcp Option 43 and Dhcp Option

Page 24

Chapter 7 Controlling Lightweight Access Points

Autonomous Access Points Converted to Lightweight Mode

Using DHCP Option 43 and DHCP Option 60

Cisco Aironet access points use the type-length-value (TLV) format for DHCP option 43. DHCP servers must be programmed to return the option based on the access point’s DHCP Vendor Class Identifier (VCI) string (DHCP Option 60). Table 7-1lists the VCI strings for Cisco access points capable of operating in lightweight mode.

Table 7-1

VCI Strings For Lightweight Access Points

 

 

 

Access Point

 

VCI String

 

 

Cisco Aironet 1130 Series

Cisco AP c1130

 

 

Cisco Aironet 1140 Series

Cisco AP c1140

 

 

Cisco Aironet 1200 Series

Cisco AP c1200

 

 

Cisco Aironet 1240 Series

Cisco AP c1240

 

 

Cisco Aironet 1250 Series

Cisco AP c1250

 

 

Cisco AP801 Embedded Access Point

Cisco AP801

 

 

 

This is the format of the TLV block:

Type: 0xf1 (decimal 241)

Length: Number of controller IP addresses * 4

Value: List of the IP addresses of controller management interfaces

Refer to the product documentation for your DHCP server for instructions on configuring DHCP option

43.The Upgrading Autonomous Cisco Aironet Access Points to Lightweight Mode document contains example steps for configuring option 43 on a DHCP server.

Troubleshooting the Access Point Join Process

Access points can fail to join a controller for many reasons: a RADIUS authorization is pending, self-signed certificates are not enabled on the controller, the access point and controller’s regulatory domains do not match, and so on.

Controller software release 5.2 enables you to configure the access points to send all CAPWAP-related errors to a syslog server. You do not need to enable any debug commands on the controller because all of the CAPWAP error messages can be viewed from the syslog server itself.

The state of the access point is not maintained on the controller until it receives a CAPWAP join request from the access point. Therefore, it can be difficult to determine why the CAPWAP discovery request from a certain access point was rejected. In order to troubleshoot such joining issues without enabling CAPWAP debug commands on the controller, the controller collects information for all access points that send a discovery message to this controller and maintains information for any access points that have successfully joined this controller.

The controller collects all join-related information for each access point that sends a CAPWAP discovery request to the controller. Collection begins with the first discovery message received from the access point and ends with the last configuration payload sent from the controller to the access point.

 

Cisco Wireless LAN Controller Configuration Guide

7-24

OL-17037-01

Image 24
Contents Controlling Lightweight Access Points Access Point Communication Protocols Guidelines for Using CapwapController Discovery Process Page Verifying that Access Points Join the Controller Config network master-base enableConfig network master-base disable Configuring Global Credentials for Access Points Viewing Capwap MTU InformationDebugging Capwap Global Configuration All APs Details for Credentials Save config Show ap config general CiscoAPShow ap summary Configuring Authentication for Access Points Lwapp ap dot1x username username password passwordUsing the GUI to Configure Authentication for Access Points ControllerCisco Wireless LAN Controller Configuration Guide Using the CLI to Configure Authentication for Access Points Config ap dot1xuser add username user password password allConfig ap dot1xuser disable all CiscoAP AP Dot1x User Mode field shows CustomizedEmbedded Access Points Configuring the Switch for AuthenticationDns-server ipaddress Default-router ipaddress Ip dhcp pool poolnameAutonomous Access Points Converted to Lightweight Mode Reverting from Lightweight Mode to Autonomous Mode Using a Controller to Return to a Previous ReleaseAuthorizing Access Points Authorizing Access Points Using SSCsAuthorizing Access Points Using MICs Authorizing Access Points Using LSCs Using the GUI to Configure LSCConfig certificate lsc enable disable Config certificate lsc ca-server http//urlport/pathConfig certificate lsc ca-cert add delete Config certificate lsc other-params keysizeConfig certificate lsc ap-provision auth-list add APmacaddr Config certificate lsc ap-provision revert-cert retriesShow certificate lsc summary Using the GUI to Authorize Access Points Show certificate lsc ap-provisionUsing the CLI to Authorize Access Points Config auth-list ap-policy mic ssc lsc enable disableConfig auth-list add mic ssc lsc apmac apkey Show auth-listUsing Dhcp Option 43 and Dhcp Option Troubleshooting the Access Point Join ProcessControlling Lightweight Access Points Configuring the Syslog Server for Access Points Viewing Access Point Join InformationShow ap config global Show ap join stats summary allJoined Converted Access Points Send Radio Core Dumps to Controller Debug ap enable disable command cmd CiscoAPUsing the CLI to Retrieve Radio Core Dumps Using the GUI to Upload Radio Core DumpsShow ap crash-file Using the CLI to Upload Radio Core Dumps Transfer upload startUploading Memory Core Dumps from Converted Access Points Using the GUI to Upload Access Point Core DumpsDisplay of MAC Addresses for Converted Access Points Using the CLI to Upload Access Point Core DumpsSupporting Oversized Access Point Images Config ap reset-button enable disable ap-nameallCisco Workgroup Bridges WGB ExampleGuidelines for Using WGBs Configure terminal Sample WGB Configuration Using the GUI to View the Status of Workgroup BridgesShow dot11 association 11 Clients Detail 12 WGB Wired Clients Using the CLI to View the Status of Workgroup Bridges Using the CLI to Debug WGB IssuesDebug dhcp message enable Debug dhcp packet enable Debug dot11 mobile enable Debug dot11 state enableConfiguring Backup Controllers Using the GUI to Configure Backup Controllers 14 Global Configuration15 All APs Details for High Availability Using the CLI to Configure Backup Controllers Config advanced timers ap-discovery-timeout interval Config advanced timers auth-timeout intervalConfiguring Failover Priority for Access Points 130016 Global Configuration Using the CLI to View Failover Priority Settings EnabledConfiguring Country Codes Guidelines for Configuring Multiple Country CodesUsing the GUI to Configure Country Codes 19 All APs Details for Advanced Using the CLI to Configure Country Codes Show country supportedShow country Show country channels Config 802.11a enable network config 802.11b enable network Controlling Lightweight Access Points Migrating Access Points to the -U Regulatory Domain Config country J3Guidelines for Migration Show ap migrateConfig ap migrate j52w52 all apname Using the W56 Band in Japan Dynamic Frequency SelectionOptimizing Rfid Tracking on Access Points Using the GUI to Optimize Rfid Tracking on Access Points20 802.11b/g/n Cisco APs Configure Using the CLI to Optimize Rfid Tracking on Access Points Config ap monitor-mode tracking-opt CiscoAPConfig 802.11b enable CiscoAP Configuring Probe Request Forwarding Config advanced probe filter enable disableConfig advanced probe limit numprobes interval Show ap monitor-mode summaryInventory Performing a Link Test 22 All APs Details for InventoryUsing the GUI to Perform a Link Test Link Test Configuring Link Latency Using the CLI to Perform a Link TestUsing the GUI to Configure Link Latency 25 All APs Details for AdvancedUsing the CLI to Configure Link Latency Config ap link-latency enable disable CiscoAP allConfiguring Power over Ethernet Config ap link-latency reset CiscoAPUsing the GUI to Configure Power over Ethernet EPoE Power EPoE Mode 15.4 W Optimized 20 WCisco Wireless LAN Controller Configuration Guide Using the CLI to Configure Power over Ethernet Config ap power injector enable CiscoAP all installedConfig ap power injector enable CiscoAP all override Configuring Flashing LEDs Using the GUI to View ClientsDebug ap command led flash seconds CiscoAP Viewing ClientsControlling Lightweight Access Points Viewing Clients 28 Search Clients 29 Clients Detail Using the CLI to View Clients AP MACS69 OL-17037-01