Cisco Systems OL-8376-01 manual Redundancy State Description

Page 68

Chapter 1 FAQs and Troubleshooting

Admin FAQs and Troubleshooting

Check the status by using the CLI command redundancy status, or by selecting Admin > Appliance

>Redundancy > Redundancy Status. On the master DNS server, make sure that the DNS zone file for the inverse zone (in-addr.arpa) for the netblock contains the necessary PTR records for each WLSE. Please note that if the time required to get a response from the DNS servers when requesting a PTR record in the inverse zone exceeds 15 seconds, then this problem may occur.

See also the Installation Guide for the CiscoWorks Wireless LAN Solution Engine for instructions on configuring name resolution, and Redundancy Requirements under Managing the WLSE in the User Guide for the CiscoWorks Wireless LAN Solution Engine or Online Help to make sure you have set up redundancy correctly.

Q.Do I have to get a signed certificate from a certificate authority in order to use WLSE security features such as SSL (HTTPS)?

A.No, the WLSE will use the self-signed certificate; however, you may see messages from the browser about the self-signed certificate not being trusted. The self-signed certificate is valid for one year. After that, you can generate another self-signed certificate.

Q.If I have set up WLSE redundancy, can I use a one-time password on the WLSE Manage Redundancy screen?

A.WLSE does not support one-time passwords in the Manage Redundancy screen (Admin > Appliance > Redundancy > Manage Redundancy). The user ID and password you enter on this screen are used by both WLSEs in a redundant environment to authenticate their communication. The password is encrypted and stored on both WLSEs and is reused as required; therefore, one-time passwords are not supported.

Q.How do I change the password used by WLSE Redundancy?

A.If you are using local authentication, you can change the password for the user ID by selecting Admin > Appliance > User Admin > Manage Users or by using the CLI command username user_id password new_password. This command synchronizes the password change of userid to new_password between both WLSEs in the redundant environment.

If you are using remote AAA authentication, in order to change the password, you must first disable redundancy (Admin > Appliance > Redundancy > Manage Redundancy), change the password on the AAA server, and then re-enable redundancy.

Q.How do I change the user ID used by WLSE redundancy?

To change the user ID used by WLSE redundancy, you must first disable redundancy (Admin > Appliance > Redundancy > Manage Redundancy), change the user ID and password (Admin > Appliance > User Admin > Manage Users), and then re-enable redundancy.

Q.What are the different redundancy states?

A.Table 1-3describes the possible redundancy states and what they mean.

Table 1-3 Redundancy States

 

 

 

 

Redundancy State

Description

 

 

 

 

 

 

 

 

 

 

 

 

Not Configured

Redundancy is not enabled.

 

 

 

 

 

 

 

 

 

 

 

Starting

Configured for redundancy and is initializing.

 

 

 

 

 

This state can apply to active and standby nodes.

 

 

 

 

 

 

 

 

 

 

 

Active

Redundancy is enabled. This is the active node at

 

 

 

 

 

the current time.

 

 

 

 

 

 

 

 

 

 

FAQ and Troubleshooting Guide for the CiscoWorks Wireless LAN Solution Engine

 

 

 

 

1-56

 

 

 

 

OL-8376-01

 

 

 

 

 

 

Image 68
Contents Corporate Headquarters Customer Order Number OL-8376-01Copyright 2006 Cisco Systems, Inc. All rights reserved N T E N T S Fault Descriptions Audience ConventionsConvention Italic fontProduct Documentation Available FormatsObtaining Documentation 105/wlse/213/index.htmOrdering Documentation Cisco.comProduct Documentation DVD Cisco Product Security Overview Reporting Security Problems in Cisco ProductsDocumentation Feedback Obtaining Technical Assistance Cisco Technical Support & Documentation WebsiteObtaining Additional Publications and Information Submitting a Service RequestDefinitions of Service Request Severity Xii General FAQs and Troubleshooting General FAQsFAQs and Troubleshooting General FAQs and Troubleshooting MIB Name Description General Troubleshooting If no, see Symptom Cannot log in as a system administrator., Possible Cause Restart the system services by entering the following Symptom The system time or date is incorrect # ip name-server ip-address Deployment Wizard Troubleshooting Faults FAQs and Troubleshooting Faults FAQsFAQs and Troubleshooting Faults FAQs and Troubleshooting Faults Troubleshooting Recommended Action Not applicable Devices FAQs and Troubleshooting Devices FAQsFAQs and Troubleshooting Devices FAQs and Troubleshooting Devices Troubleshooting Discovery/Device Management TroubleshootingMessage Possible Cause Recommended Action Discovered but could not be FAQs and Troubleshooting Devices FAQs and Troubleshooting Configuration FAQs and Troubleshooting Configuration FAQsOL-8376-01 Page OL-8376-01 Configuration Troubleshooting Auto-Managed Configuration Assign Templates Firmware FAQs and Troubleshooting Firmware FAQsFirmware Troubleshooting Recommended Action FAQs and Troubleshooting Firmware FAQs and Troubleshooting Telnet Credential Fields Required Reports FAQs and TroubleshootingReports FAQs Reports Troubleshooting Recommended Action None Click jobvm.log Radio Manager FAQs and Troubleshooting Radio Manager FAQsConfiguration Radio MonitoringWDS AP? Auto Re-Site SurveyMiscellaneous When Wlse is used for initial setup OL-8376-01 Auto Re-Site Survey Radio Manager Troubleshooting Select Devices Discover Managed/UnmanagedSites FAQs and Troubleshooting Sites FAQsLocation Manager Assisted Site survey WizardAP Radio Scan Radio Parameter GenerationAssisted Site Survey Wizard FAQs and Troubleshooting Sites FAQs and Troubleshooting AP Radio Scan Sites Troubleshooting FAQs and Troubleshooting Sites FAQs and Troubleshooting FAQs and Troubleshooting Sites FAQs and Troubleshooting Intrusion Detection System FAQs and Troubleshooting Intrusion Detection System FAQsAPs in Scanning-Only Mode Detecting Rogue APsDetecting Rogue APs Page OL-8376-01 Intrusion Detection System Troubleshooting Admin FAQs and Troubleshooting Admin FAQsFAQs and Troubleshooting Admin FAQs and Troubleshooting Redundancy State Description Admin Troubleshooting Recommended Action FAQs and Troubleshooting Admin FAQs and Troubleshooting Select Faults Manage Fault Settings Troubleshooting Tools for the Wlse Appliance Generating Diagnostics for Technical AssistanceInternal AAA Server Wlse Express FAQs Fault Descriptions Utilization % Access Point /Bridge FaultsTo rule CiscoWorks Wireless LAN Solution Engine, ReleaseSsid See IDS Intrusion Detection System Faults, Version numberProblem-details Table-name. OID-nameVlan number VlanChannel origChannel NewChannelRadio Interface Faults Broadcast is disabled for Radio-x Radio Interface Faults Reason, Ignored Rate %Fault. See Q.What are the results Verify RM Capability IDS Intrusion Detection System Faults IDS Faults Ccmp IDSOwsize FloodcountFramecount,Intervalwind Channel Frames Enabled That is observed generating Violation SntpNumber of Ccmp Replay Fault threshold set for Number of Tkip Local Fault threshold set for Cd11IfStationRole from Unregistered Clients One or more unregistered clients Threshold% Voice FaultsWlse Faults LAN Solution Engine, 2.13. or in the online WlseAAA Server Faults EAP-FASTEAP-MD5, Leap EAP-MD5 /LEAP PEAP/RADIUSEAP-FAST5 EAP-MD5Leap EAPPeap Radius Switch Faults Degraded utilization %Utilization % Router Fault Wlsm FaultsOL-8376-01 D E IN-2 IN-3 Http IN-4Detection, frequency NATIN-6 SSH IN-7WDS IN-8Wlsm IN-10