<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller in ExtremeWireless (WiNG)</title>
    <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83877#M7828</link>
    <description>&lt;P&gt;If you are not seeing the correct config on the AP, that means either&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;The AP never receives it&lt;/LI&gt;	&lt;LI&gt;The AP received it, but the received config caused the AP to lose its adoption with the controller.&amp;nbsp; When this happens, the AP reverts back to the last known config that allowed the adoption to work properly (which would have been the default config)&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;So right now, the AP is adopted.&amp;nbsp; But I’m assuming that the controller is not pushing the config to the AP because it knows that if it does, it will cause a problem.&amp;nbsp; Let’s check:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Run the command on the controller:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;show adoption status&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Another issue I see is with the auto-provisioning policy.&amp;nbsp; It contains no rules.&amp;nbsp; For a properly setup controller, you want to have rules that define what happens when an AP model tries to adopt.&amp;nbsp; The rule will indicate which profile the AP is given and what rf-domain it is placed into.&amp;nbsp; Below is your current policy.&amp;nbsp; It has a name, but no rules.&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;auto-provisioning-policy "S Lau"&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;To have a correctly setup auto-provisioning rule for this AP: (This is to completed using the CLI - can be completed in GUI also)&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;P&gt;Login to CLI&lt;/P&gt;&lt;P&gt;enable&lt;/P&gt;&lt;P&gt;config&lt;/P&gt;&lt;P&gt;auto-provisioning-policy “S Lau”&lt;/P&gt;&lt;P&gt;adopt ap4600 precedence 1 profile&amp;nbsp;ap4600_Hof rf-domain&amp;nbsp;"S Lau" any&lt;/P&gt;&lt;P&gt;commit write&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This will cause ANY ap4600 AP to be adopted and assigned the profile ap4600_Hof and then be placed into the rf-domain “S Lau”. &amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Some tips though:&lt;/P&gt;&lt;P&gt;*AVOID* spaces in any naming you using in the system.&amp;nbsp; I would even suggest going back in and renaming any existing items with spaces.&amp;nbsp; Instead use something like _ or -&lt;/P&gt;&lt;P&gt;Also, I don’t know if using “ is a problem or not, but I would also avoid those as well.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Finish adding that rule to the auto-provisioning policy.&amp;nbsp; Reboot the AP.&lt;/P&gt;&lt;P&gt;If the AP is still not receiving its config, run the command again ON the controller:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;show adoption status&lt;/STRONG&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 04 Nov 2019 21:22:04 GMT</pubDate>
    <dc:creator>ckelly</dc:creator>
    <dc:date>2019-11-04T21:22:04Z</dc:date>
    <item>
      <title>WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83868#M7819</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;PRE&gt;we have a VM3600 controller with Motorola AP-650 (4610-EU) in use. One AP must be operated in a different WLAN than the controller. At first, the controller was not found from AP. With the command "controller host" the IP of the controller was entered. Now the AP is displayed in the controller as online. Unfortunately, it does not emit any WLANs and in the "Apopted Devices" the "Config Status" displays error. If I put the AP in the same VLAN as the controller everything works fine. I hope you can help me.Thanks a lot for this!!&lt;/PRE&gt;&lt;P&gt;Andre&lt;/P&gt;</description>
      <pubDate>Thu, 31 Oct 2019 20:20:17 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83868#M7819</guid>
      <dc:creator>Andre_h_</dc:creator>
      <dc:date>2019-10-31T20:20:17Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83869#M7820</link>
      <description>&lt;P&gt;..sorry AP2600 in the top is wrong - cant change - it must be AP650&lt;/P&gt;</description>
      <pubDate>Thu, 31 Oct 2019 20:21:45 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83869#M7820</guid>
      <dc:creator>Andre_h_</dc:creator>
      <dc:date>2019-10-31T20:21:45Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83870#M7821</link>
      <description>&lt;P&gt;When the AP is adopted and shows an error message in the Config Status, this is indicating that there was an issue with the configuration that was sent to the AP.&amp;nbsp; This is most likely why you are not seeing your WLAN operating on the AP.&lt;/P&gt;&lt;P&gt;There’s many things that could be causing this issue.&amp;nbsp; Instead of playing 20-questions, the fastest way to diagnose this would be to see the running-config from the controller (WM2600).&amp;nbsp; [Remove any clear-text passwords/passphrases or anything sensitive from the config before posting]&lt;/P&gt;</description>
      <pubDate>Thu, 31 Oct 2019 21:39:48 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83870#M7821</guid>
      <dc:creator>ckelly</dc:creator>
      <dc:date>2019-10-31T21:39:48Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83871#M7822</link>
      <description>&lt;P&gt;Thank you - here ist the config.&lt;/P&gt;&lt;P&gt;The AP in secound vlan is ap4600 00-04-xx-xx-xx- with profile ap4600_Hof.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;&lt;CODE&gt;!&lt;BR /&gt;! Configuration of WM3600 version 5.5.5.0-018R&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;version 2.3&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip access-list BROADCAST-MULTICAST-CONTROL&lt;BR /&gt;permit tcp any any rule-precedence 10 rule-description "permit all TCP traffic"&lt;BR /&gt;permit udp any eq 67 any eq dhcpc rule-precedence 11 rule-description "permit D                                                                                                                                                             HCP replies"&lt;BR /&gt;deny udp any range 137 138 any range 137 138 rule-precedence 20 rule-descriptio                                                                                                                                                             n "deny windows netbios"&lt;BR /&gt;deny ip any 224.0.0.0/4 rule-precedence 21 rule-description "deny IP multicast"&lt;BR /&gt;deny ip any host 255.255.255.255 rule-precedence 22 rule-description "deny IP l                                                                                                                                                             ocal broadcast"&lt;BR /&gt;permit ip any any rule-precedence 100 rule-description "permit all IP traffic"&lt;BR /&gt;!&lt;BR /&gt;mac access-list MAC-FILTER-INTERN&lt;BR /&gt;permit host xxxxxx any rule-precedence 29 rule-description Tablet&lt;BR /&gt;deny any any rule-precedence 1060&lt;BR /&gt;!&lt;BR /&gt;mac access-list PERMIT-ARP-AND-IPv4&lt;BR /&gt;permit any any type ip rule-precedence 10 rule-description "permit all IPv4 traffic"&lt;BR /&gt;permit any any type arp rule-precedence 20 rule-description "permit all ARP traffic"&lt;BR /&gt;!&lt;BR /&gt;ip snmp-access-list default&lt;BR /&gt;permit any&lt;BR /&gt;!&lt;BR /&gt;firewall-policy default&lt;BR /&gt;no ip dos tcp-sequence-past-window&lt;BR /&gt;alg sip&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;mint-policy global-default&lt;BR /&gt;!&lt;BR /&gt;wlan-qos-policy bib-voice&lt;BR /&gt;voice-prioritization&lt;BR /&gt;qos trust dscp&lt;BR /&gt;qos trust wmm&lt;BR /&gt;!&lt;BR /&gt;wlan-qos-policy default&lt;BR /&gt;qos trust dscp&lt;BR /&gt;qos trust wmm&lt;BR /&gt;!&lt;BR /&gt;radio-qos-policy default&lt;BR /&gt;!&lt;BR /&gt;association-acl-policy Intern_Zugriff&lt;BR /&gt;deny 00-00-00-00-00-00 FF-FF-FF-FF-FF-FF precedence 3&lt;BR /&gt;!&lt;BR /&gt;wlan Hof&lt;BR /&gt;ssid Hof&lt;BR /&gt;vlan 252&lt;BR /&gt;bridging-mode tunnel&lt;BR /&gt;encryption-type ccmp&lt;BR /&gt;authentication-type none&lt;BR /&gt;wpa-wpa2 psk 0 xxxxxx&lt;BR /&gt;!&lt;BR /&gt;wlan B-Inet&lt;BR /&gt;description Freies WLAN fuer Besucher&lt;BR /&gt;ssid B-Inet&lt;BR /&gt;vlan x&lt;BR /&gt;bridging-mode tunnel&lt;BR /&gt;encryption-type none&lt;BR /&gt;authentication-type none&lt;BR /&gt;no client-client-communication&lt;BR /&gt;!&lt;BR /&gt;wlan B-Voice&lt;BR /&gt;description WLAN T&lt;BR /&gt;ssid B-Voice&lt;BR /&gt;vlan 11&lt;BR /&gt;bridging-mode local&lt;BR /&gt;encryption-type ccmp&lt;BR /&gt;authentication-type none&lt;BR /&gt;no broadcast-ssid&lt;BR /&gt;no answer-broadcast-probes&lt;BR /&gt;wpa-wpa2 psk 0 &lt;BR /&gt; wpa-wpa2 exclude-wpa2-tkip&lt;BR /&gt;use wlan-qos-policy bib-voice&lt;BR /&gt;!&lt;BR /&gt;wlan M-Intern&lt;BR /&gt;description Internes WLAN&lt;BR /&gt;ssid M-Intern&lt;BR /&gt;vlan 1&lt;BR /&gt;bridging-mode local&lt;BR /&gt;encryption-type ccmp&lt;BR /&gt;authentication-type none&lt;BR /&gt;no broadcast-ssid&lt;BR /&gt;no answer-broadcast-probes&lt;BR /&gt;wpa-wpa2 psk 0 &lt;BR /&gt; wpa-wpa2 exclude-wpa2-tkip&lt;BR /&gt;use mac-access-list in MAC-FILTER-INTERN&lt;BR /&gt;!&lt;BR /&gt;wlan S-Inet&lt;BR /&gt;description WLAN fuer freies Internet&lt;BR /&gt;ssid S-Inet&lt;BR /&gt;vlan 255&lt;BR /&gt;bridging-mode tunnel&lt;BR /&gt;encryption-type ccmp&lt;BR /&gt;authentication-type none&lt;BR /&gt;no broadcast-ssid&lt;BR /&gt;wpa-wpa2 psk 0 &lt;BR /&gt;!&lt;BR /&gt;wlan S-Hotspot&lt;BR /&gt;description Hotspot&lt;BR /&gt;ssid S-Hotspot&lt;BR /&gt;vlan 301&lt;BR /&gt;bridging-mode tunnel&lt;BR /&gt;encryption-type none&lt;BR /&gt;authentication-type none&lt;BR /&gt;!&lt;BR /&gt;wlan b-gastnetz&lt;BR /&gt;description Netz fuer Veranstaltungen&lt;BR /&gt;shutdown&lt;BR /&gt;ssid B-Inet&lt;BR /&gt;vlan 255&lt;BR /&gt;bridging-mode tunnel&lt;BR /&gt;encryption-type ccmp&lt;BR /&gt;authentication-type none&lt;BR /&gt;wpa-wpa2 psk 0 &lt;BR /&gt;&lt;BR /&gt;smart-rf-policy "S Lau"&lt;BR /&gt;group-by area&lt;BR /&gt;assignable-power 2.4GHz min 14&lt;BR /&gt;!&lt;BR /&gt;auto-provisioning-policy "S Lau"&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;management-policy default&lt;BR /&gt;no http server&lt;BR /&gt;https server&lt;BR /&gt;ssh&lt;BR /&gt;user admin password 1 xxx role superuser access all&lt;BR /&gt;snmp-server community 0 private rw&lt;BR /&gt;snmp-server community 0 public ro&lt;BR /&gt;snmp-server user snmpoperator v3 encrypted des auth md5 0 operator&lt;BR /&gt;snmp-server user snmptrap v3 encrypted des auth md5 0 admin123&lt;BR /&gt;snmp-server user snmpmanager v3 encrypted des auth md5 0 admin123&lt;BR /&gt;banner motd Welcome to CLI&lt;BR /&gt;!&lt;BR /&gt;profile wm3600 default-wm3600&lt;BR /&gt;ip name-server xxx&lt;BR /&gt;ip name-server xxx&lt;BR /&gt;ip domain-name xxx&lt;BR /&gt;ip default-gateway xxx&lt;BR /&gt;autoinstall configuration&lt;BR /&gt;autoinstall firmware&lt;BR /&gt;crypto ikev1 policy ikev1-default&lt;BR /&gt;  isakmp-proposal default encryption aes-256 group 2 hash sha&lt;BR /&gt;crypto ikev2 policy ikev2-default&lt;BR /&gt;  isakmp-proposal default encryption aes-256 group 2 hash sha&lt;BR /&gt;crypto ipsec transform-set default esp-aes-256 esp-sha-hmac&lt;BR /&gt;crypto ikev1 remote-vpn&lt;BR /&gt;crypto ikev2 remote-vpn&lt;BR /&gt;crypto auto-ipsec-secure&lt;BR /&gt;crypto remote-vpn-client&lt;BR /&gt;interface me1&lt;BR /&gt;interface up1&lt;BR /&gt; switchport mode trunk&lt;BR /&gt;  switchport trunk native vlan 2&lt;BR /&gt;  no switchport trunk native tagged&lt;BR /&gt;  switchport trunk allowed vlan 2,6,252,255,301&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface ge1&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface ge2&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface ge3&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface ge4&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface ge5&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface ge6&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface ge7&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface ge8&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface vlan2&lt;BR /&gt;  description LAN&lt;BR /&gt; ip address 10.216.x.x/24&lt;BR /&gt;interface vlan6&lt;BR /&gt;  description b-inet&lt;BR /&gt;interface vlan252&lt;BR /&gt;  description Hof&lt;BR /&gt;interface vlan255&lt;BR /&gt;  description s-inet&lt;BR /&gt;interface vlan301&lt;BR /&gt;  description Hotspot&lt;BR /&gt;interface wwan1&lt;BR /&gt;interface pppoe1&lt;BR /&gt;use firewall-policy default&lt;BR /&gt;use auto-provisioning-policy "S Lau"&lt;BR /&gt;ntp server 10.216.x.x&lt;BR /&gt;no ip routing&lt;BR /&gt;service pm sys-restart&lt;BR /&gt;router ospf&lt;BR /&gt;!&lt;BR /&gt;profile ap4700 default-ap4700&lt;BR /&gt;autoinstall configuration&lt;BR /&gt;autoinstall firmware&lt;BR /&gt;crypto ikev1 policy ikev1-default&lt;BR /&gt;  isakmp-proposal default encryption aes-256 group 2 hash sha&lt;BR /&gt;crypto ikev2 policy ikev2-default&lt;BR /&gt;  isakmp-proposal default encryption aes-256 group 2 hash sha&lt;BR /&gt;crypto ipsec transform-set default esp-aes-256 esp-sha-hmac&lt;BR /&gt;crypto ikev1 remote-vpn&lt;BR /&gt;crypto ikev2 remote-vpn&lt;BR /&gt;crypto auto-ipsec-secure&lt;BR /&gt;crypto remote-vpn-client&lt;BR /&gt;interface radio1&lt;BR /&gt;interface radio2&lt;BR /&gt;interface radio3&lt;BR /&gt;interface ge1&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface ge2&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface vlan1&lt;BR /&gt;  ip address dhcp&lt;BR /&gt;  ip address zeroconf secondary&lt;BR /&gt;  ip dhcp client request options all&lt;BR /&gt;interface wwan1&lt;BR /&gt;interface pppoe1&lt;BR /&gt;use firewall-policy default&lt;BR /&gt;logging on&lt;BR /&gt;service pm sys-restart&lt;BR /&gt;router ospf&lt;BR /&gt;!&lt;BR /&gt;profile ap4532 default-ap4532&lt;BR /&gt;autoinstall configuration&lt;BR /&gt;autoinstall firmware&lt;BR /&gt;crypto ikev1 policy ikev1-default&lt;BR /&gt;  isakmp-proposal default encryption aes-256 group 2 hash sha&lt;BR /&gt;crypto ikev2 policy ikev2-default&lt;BR /&gt;  isakmp-proposal default encryption aes-256 group 2 hash sha&lt;BR /&gt;crypto ipsec transform-set default esp-aes-256 esp-sha-hmac&lt;BR /&gt;crypto ikev1 remote-vpn&lt;BR /&gt;crypto ikev2 remote-vpn&lt;BR /&gt;crypto auto-ipsec-secure&lt;BR /&gt;crypto load-management&lt;BR /&gt;crypto remote-vpn-client&lt;BR /&gt;interface radio1&lt;BR /&gt;interface radio2&lt;BR /&gt;interface ge1&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface vlan1&lt;BR /&gt;  ip address dhcp&lt;BR /&gt;  ip address zeroconf secondary&lt;BR /&gt;  ip dhcp client request options all&lt;BR /&gt;interface pppoe1&lt;BR /&gt;use firewall-policy default&lt;BR /&gt;logging on&lt;BR /&gt;service pm sys-restart&lt;BR /&gt;router ospf&lt;BR /&gt;!&lt;BR /&gt;profile ap4600 "R"&lt;BR /&gt;no autoinstall configuration&lt;BR /&gt;no autoinstall firmware&lt;BR /&gt;crypto ikev1 policy ikev1-default&lt;BR /&gt;  isakmp-proposal default encryption aes-256 group 2 hash sha&lt;BR /&gt;crypto ikev2 policy ikev2-default&lt;BR /&gt;  isakmp-proposal default encryption aes-256 group 2 hash sha&lt;BR /&gt;crypto ipsec transform-set default esp-aes-256 esp-sha-hmac&lt;BR /&gt;crypto ikev1 remote-vpn&lt;BR /&gt;crypto ikev2 remote-vpn&lt;BR /&gt;crypto auto-ipsec-secure&lt;BR /&gt;crypto load-management&lt;BR /&gt;crypto remote-vpn-client&lt;BR /&gt;interface radio1&lt;BR /&gt;  wlan S-Inet bss 1 primary&lt;BR /&gt;  wlan M-Intern bss 3 primary&lt;BR /&gt;  wlan Hotspot bss 4 primary&lt;BR /&gt;interface radio2&lt;BR /&gt;  wlan S-Inet bss 1 primary&lt;BR /&gt;interface ge1&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface vlan1&lt;BR /&gt;interface pppoe1&lt;BR /&gt;use firewall-policy default&lt;BR /&gt;service pm sys-restart&lt;BR /&gt;!&lt;BR /&gt;&lt;BR /&gt;profile ap4600 ap4600_Hof&lt;BR /&gt;no autoinstall configuration&lt;BR /&gt;no autoinstall firmware&lt;BR /&gt;crypto ikev1 policy ikev1-default&lt;BR /&gt;  isakmp-proposal default encryption aes-256 group 2 hash sha&lt;BR /&gt;crypto ikev2 policy ikev2-default&lt;BR /&gt;  isakmp-proposal default encryption aes-256 group 2 hash sha&lt;BR /&gt;crypto ipsec transform-set default esp-aes-256 esp-sha-hmac&lt;BR /&gt;crypto ikev1 remote-vpn&lt;BR /&gt;crypto ikev2 remote-vpn&lt;BR /&gt;crypto auto-ipsec-secure&lt;BR /&gt;crypto load-management&lt;BR /&gt;crypto remote-vpn-client&lt;BR /&gt;interface radio1&lt;BR /&gt;  wlan hof bss 1 primary&lt;BR /&gt;interface radio2&lt;BR /&gt;  wlan S-Inet bss 1 primary&lt;BR /&gt;interface ge1&lt;BR /&gt;  ip dhcp trust&lt;BR /&gt;  qos trust dscp&lt;BR /&gt;  qos trust 802.1p&lt;BR /&gt;interface vlan1&lt;BR /&gt;interface pppoe1&lt;BR /&gt;use firewall-policy default&lt;BR /&gt;service pm sys-restart&lt;BR /&gt;!&lt;BR /&gt;&lt;BR /&gt;rf-domain "S Lau"&lt;BR /&gt;location xxx&lt;BR /&gt;timezone Europe/Berlin&lt;BR /&gt;country-code de&lt;BR /&gt;use smart-rf-policy "S Lau"&lt;BR /&gt;channel-list dynamic&lt;BR /&gt;layout area Bib&lt;BR /&gt;layout area Bib floor Erdgeschoss map-location bibErdgeschoss.jpg units feet&lt;BR /&gt;layout area Haus&lt;BR /&gt;!&lt;BR /&gt;rf-domain default&lt;BR /&gt;no country-code&lt;BR /&gt;!&lt;BR /&gt;wm3600 00-xx-xx-xx-xx-xx&lt;BR /&gt;use profile default-wm3600&lt;BR /&gt;use rf-domain "S Lau"&lt;BR /&gt;hostname wm-xx-xx&lt;BR /&gt;license AP xxxx&lt;BR /&gt;interface up1&lt;BR /&gt;  switchport mode trunk&lt;BR /&gt;  switchport trunk native vlan 2&lt;BR /&gt;  no switchport trunk native tagged&lt;BR /&gt;  switchport trunk allowed vlan 2,6,252,255,301&lt;BR /&gt;!&lt;BR /&gt;&lt;BR /&gt;ap4600 00-xx-xx-xx-xx-xx&lt;BR /&gt;use profile "R Lau"&lt;BR /&gt;use rf-domain "S Lau"&lt;BR /&gt;hostname AP-xx-xx&lt;BR /&gt;!&lt;BR /&gt;&lt;BR /&gt;ap4600 00-04-xx-xx-xx-&lt;BR /&gt;use profile ap4600_Hof&lt;BR /&gt;use rf-domain "S Lau"&lt;BR /&gt;hostname HOF&lt;BR /&gt;area Rxxx&lt;BR /&gt;interface ge1&lt;BR /&gt;  switchport mode access&lt;BR /&gt;  switchport access vlan 20&lt;BR /&gt;!&lt;BR /&gt;&lt;BR /&gt;!&lt;BR /&gt;end&lt;BR /&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 01 Nov 2019 15:14:26 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83871#M7822</guid>
      <dc:creator>Andre_h_</dc:creator>
      <dc:date>2019-11-01T15:14:26Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83872#M7823</link>
      <description>&lt;P&gt;Which AP in this config file is the one behaving as you described? (There are 2 listed)&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;hostname: &lt;STRONG&gt;AP-xx-xx&lt;/STRONG&gt;&lt;/LI&gt;	&lt;LI&gt;&lt;STRONG&gt;HOF&lt;/STRONG&gt;&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;Looking at the #1 AP’s override value, I see an issue:&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;P&gt;ap4600 00-xx-xx-xx-xx-xx&lt;/P&gt;&lt;P&gt;&amp;nbsp;use profile &lt;STRONG&gt;"R Lau" &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;use rf-domain "S Lau"&lt;/P&gt;&lt;P&gt;&amp;nbsp;hostname AP-xx-xx&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I don’t see an actual ap4600 profile name “R Lau” anywhere in the config that you posted. &amp;nbsp; There is one called “R”, but the name must match exactly for the AP to be assigned the profile.&lt;/P&gt;&lt;P&gt;Is this the AP that is having the issue you described?&lt;/P&gt;</description>
      <pubDate>Fri, 01 Nov 2019 20:45:56 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83872#M7823</guid>
      <dc:creator>ckelly</dc:creator>
      <dc:date>2019-11-01T20:45:56Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83873#M7824</link>
      <description>&lt;P&gt;The AP with the problems is Hostname HOF with Profile AP4600_Hof. He is attached to VLAN TAG 20 and reaches the controller (controller shows online). But says error and no wifi emitting.&lt;/P&gt;&lt;P&gt;The other error probably happened to me when I generalized the config for the forum. But now has nothing to do with the actual problem.&lt;/P&gt;&lt;P&gt;Do you have a solution?&lt;/P&gt;</description>
      <pubDate>Sat, 02 Nov 2019 01:58:39 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83873#M7824</guid>
      <dc:creator>Andre_h_</dc:creator>
      <dc:date>2019-11-02T01:58:39Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83874#M7825</link>
      <description>&lt;P&gt;So let’s break this down…&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;P&gt;At first, the controller was not found from AP. With the command "controller host" the IP of the controller was entered. Once the AP was told the layer-3 location of the controller, it was able to find it.&amp;nbsp;&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;Based on this statement, the AP was NOT able to discover the controller using layer-2 discovery (VLAN).&amp;nbsp;&lt;/P&gt;&lt;P&gt;After you entered the &lt;EM&gt;controller host&lt;/EM&gt; entry address of the controller and it was then able to find it, that indicates that there’s a VLAN configuration issue [somewhere].&amp;nbsp; Ideally though, for performance and scaling reasons, you &lt;STRONG&gt;do &lt;/STRONG&gt;want to configure the APs for layer-3 adoption, so I would suggest using the &lt;EM&gt;controller host &amp;lt;controller address&amp;gt;&lt;/EM&gt; configuration as standard.&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;P&gt;Now the AP is displayed in the controller as online. Unfortunately, it does not emit any WLANs and in the "Adopted Devices" the "Config Status" displays error. If I put the AP in the same VLAN as the controller everything works fine.&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;What’s happening here is that once the AP was able to find the controller after you entered the &lt;EM&gt;controller host &lt;/EM&gt;entry, the controller most likely then attempted to push a configuration to the AP that is not correct.&amp;nbsp; This is preventing the AP from receiving its profile.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;So next, let’s find out if the “HOF” AP is still actually adopted right now and go from there.&lt;/P&gt;&lt;P&gt;SSH into the “HOF” AP and log in.&amp;nbsp; Run the commands:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;STRONG&gt;show adoption status&amp;nbsp; &lt;/STRONG&gt;(post the output)&lt;/LI&gt;	&lt;LI&gt;&lt;STRONG&gt;show mint links&amp;nbsp;&lt;/STRONG&gt;(post the output)&lt;/LI&gt;	&lt;LI&gt;&lt;STRONG&gt;show ip interface brief&amp;nbsp;&lt;/STRONG&gt;(post the output)&lt;/LI&gt;	&lt;LI&gt;&lt;STRONG&gt;show mint mlcp history&lt;/STRONG&gt;&amp;nbsp;(post the output)&lt;/LI&gt;	&lt;LI&gt;&lt;STRONG&gt;show adoption config-errors HOF&lt;/STRONG&gt;&amp;nbsp;(post the output)&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;Somewhere, there’s an issue in the config that is causing the AP to not receive the profile from the controller.&amp;nbsp; This is why you are not seeing the SSIDs.&amp;nbsp; If you look at the running-config on the AP, I’m assuming that the config will look nothing like what you have setup on the controller for the AP.&lt;/P&gt;</description>
      <pubDate>Sat, 02 Nov 2019 02:36:43 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83874#M7825</guid>
      <dc:creator>ckelly</dc:creator>
      <dc:date>2019-11-02T02:36:43Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83875#M7826</link>
      <description>&lt;P&gt;Thank you for your detailed answer and your help. I will execute the commands on Monday at work and post the result here hoping that you can help me further.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!! André&lt;/P&gt;</description>
      <pubDate>Sat, 02 Nov 2019 22:43:21 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83875#M7826</guid>
      <dc:creator>Andre_h_</dc:creator>
      <dc:date>2019-11-02T22:43:21Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83876#M7827</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;its right if i run “show run” on the ap - i dont see the proile i have set for this ap. It seems to be a problem to retrieve the config. Ok lets do the commands you told me:&lt;/P&gt;&lt;PRE&gt;&lt;CODE&gt;ap4600-7E4254&amp;gt;show adoption status&lt;BR /&gt;Adopted by:&lt;BR /&gt;Type          : WM3600&lt;BR /&gt;System Name   : wm-xxx-xxx-01&lt;BR /&gt;MAC address   : 00-04-96-59-2B-CE&lt;BR /&gt;MiNT address  : 46.59.2B.CE&lt;BR /&gt;Time          :   0 days 00:20:22 ago&lt;BR /&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;PRE&gt;&lt;CODE&gt;ap4600-7E4254&amp;gt;show mint links&lt;BR /&gt;1 mint links on 46.7E.42.54:&lt;BR /&gt;link ip-10.216.0.199:24576 at level 1, 1 adjacencies&lt;BR /&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;PRE&gt;&lt;CODE&gt;ap4600-7E4254&amp;gt;show ip interface brief&lt;BR /&gt;-------------------------------------------------------------------------------&lt;BR /&gt; INTERFACE          IP-ADDRESS/MASK            TYPE        STATUS   PROTOCOL&lt;BR /&gt;-------------------------------------------------------------------------------&lt;BR /&gt; vlan1              10.216.1.99/24(DHCP)       primary     UP       up&lt;BR /&gt; vlan1              169.254.66.84/16(ZEROCONF) secondary   UP       up&lt;BR /&gt;-------------------------------------------------------------------------------&lt;BR /&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;PRE&gt;&lt;CODE&gt;ap4600-7E4254&amp;gt;show mint mlcp history&lt;BR /&gt;2019-11-04 06:00:51:Received OK from cfgd, adoption complete to 46.59.2B.CE&lt;BR /&gt;2019-11-04 06:00:51:Waiting for cfgd OK, adopter should be 46.59.2B.CE&lt;BR /&gt;2019-11-04 06:00:51:Adoption state change: 'Connecting to adopter' to 'Waiting for Adoption OK'&lt;BR /&gt;2019-11-04 06:00:51:Adoption state change: 'No adopters found' to 'Connecting to adopter'&lt;BR /&gt;2019-11-04 06:00:51:Try to adopt to 46.59.2B.CE (cluster master 46.59.2B.CE in adopters)&lt;BR /&gt;2019-11-04 06:00:51:Got new value for MTU: 1500&lt;BR /&gt;2019-11-04 06:00:51:MLCP created level 1 force:0 IP link to 10.216.0.199:24576&lt;BR /&gt;2019-11-04 06:00:51:Sending MLCP Request to 10.216.0.199:24576&lt;BR /&gt;2019-11-04 06:00:46:Received MLCP Offer from 10.216.0.199:24576 preferred=0 capacity = 237 (force:0, level 1)&lt;BR /&gt;2019-11-04 06:00:46:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 06:00:46:Start MLCP IP Discover&lt;BR /&gt;2019-11-04 06:00:46:Clearing already existing ipsec secure config for MLCP group 0 candidate 10.216.0.199&lt;BR /&gt;2019-11-04 06:00:46:DNS resolution completed, starting MLCP&lt;BR /&gt;2019-11-04 06:00:46:Received 1 hostnames through option 191&lt;BR /&gt;2019-11-04 06:00:43:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 06:00:38:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 06:00:33:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 06:00:28:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 06:00:23:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 06:00:18:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 06:00:13:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 06:00:07:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 06:00:02:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 05:59:57:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 05:59:52:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 05:59:47:Sending MLCP Discover to IP 10.216.0.199, UDP port 0&lt;BR /&gt;2019-11-04 05:59:47:Start MLCP IP Discover&lt;BR /&gt;2019-11-04 05:59:47:Clearing already existing ipsec secure config for MLCP group 0 candidate 10.216.0.199&lt;BR /&gt;2019-11-04 05:59:47:DNS resolution completed, starting MLCP&lt;BR /&gt;2019-11-04 05:59:47:Received 0 hostnames through option 191&lt;BR /&gt;2019-11-04 05:59:47:Adoption state change: 'Disabled' to 'No adopters found'&lt;BR /&gt;2019-11-04 05:59:47:DNS resolution completed, starting MLCP&lt;BR /&gt;2019-11-04 05:59:47:Adoption enabled due to configuration&lt;/CODE&gt;&lt;/PRE&gt;&lt;PRE&gt;&lt;CODE&gt;ap4600-7E4254&amp;gt;show adoption config-errors HOF&lt;BR /&gt;Device HOF does not exist&lt;BR /&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;PRE&gt;The hostname does not seem to have been taken over. Currently the AP hostname AP4600-7E4254 seems to have. When I execute this command then comes the following&lt;/PRE&gt;&lt;PRE&gt;&lt;CODE&gt;ap4600-7E4254&amp;gt;show adoption config-errors ap4600-7E4254&lt;BR /&gt;*** No configuration errors&lt;BR /&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;P&gt;Thank you for your help!!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Nov 2019 14:33:03 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83876#M7827</guid>
      <dc:creator>Andre_h_</dc:creator>
      <dc:date>2019-11-04T14:33:03Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83877#M7828</link>
      <description>&lt;P&gt;If you are not seeing the correct config on the AP, that means either&lt;/P&gt;&lt;OL&gt;&lt;LI&gt;The AP never receives it&lt;/LI&gt;	&lt;LI&gt;The AP received it, but the received config caused the AP to lose its adoption with the controller.&amp;nbsp; When this happens, the AP reverts back to the last known config that allowed the adoption to work properly (which would have been the default config)&lt;/LI&gt;&lt;/OL&gt;&lt;P&gt;So right now, the AP is adopted.&amp;nbsp; But I’m assuming that the controller is not pushing the config to the AP because it knows that if it does, it will cause a problem.&amp;nbsp; Let’s check:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Run the command on the controller:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;show adoption status&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Another issue I see is with the auto-provisioning policy.&amp;nbsp; It contains no rules.&amp;nbsp; For a properly setup controller, you want to have rules that define what happens when an AP model tries to adopt.&amp;nbsp; The rule will indicate which profile the AP is given and what rf-domain it is placed into.&amp;nbsp; Below is your current policy.&amp;nbsp; It has a name, but no rules.&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;auto-provisioning-policy "S Lau"&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;To have a correctly setup auto-provisioning rule for this AP: (This is to completed using the CLI - can be completed in GUI also)&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;P&gt;Login to CLI&lt;/P&gt;&lt;P&gt;enable&lt;/P&gt;&lt;P&gt;config&lt;/P&gt;&lt;P&gt;auto-provisioning-policy “S Lau”&lt;/P&gt;&lt;P&gt;adopt ap4600 precedence 1 profile&amp;nbsp;ap4600_Hof rf-domain&amp;nbsp;"S Lau" any&lt;/P&gt;&lt;P&gt;commit write&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This will cause ANY ap4600 AP to be adopted and assigned the profile ap4600_Hof and then be placed into the rf-domain “S Lau”. &amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Some tips though:&lt;/P&gt;&lt;P&gt;*AVOID* spaces in any naming you using in the system.&amp;nbsp; I would even suggest going back in and renaming any existing items with spaces.&amp;nbsp; Instead use something like _ or -&lt;/P&gt;&lt;P&gt;Also, I don’t know if using “ is a problem or not, but I would also avoid those as well.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Finish adding that rule to the auto-provisioning policy.&amp;nbsp; Reboot the AP.&lt;/P&gt;&lt;P&gt;If the AP is still not receiving its config, run the command again ON the controller:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;show adoption status&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Nov 2019 21:22:04 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83877#M7828</guid>
      <dc:creator>ckelly</dc:creator>
      <dc:date>2019-11-04T21:22:04Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83878#M7829</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;thank you&lt;/P&gt;&lt;PRE&gt;&lt;CODE&gt;wm-lau-01&amp;gt;show adoption status&lt;BR /&gt;not adopted to any wireless controller&lt;BR /&gt;&lt;BR /&gt;Adopted Devices:&lt;BR /&gt;---------------------------------------------------------------------------------------------------------------&lt;BR /&gt;DEVICE-NAME       VERSION         CFG-STAT         MSGS ADOPTED-BY        LAST-ADOPTION                  UPTIME&lt;BR /&gt;---------------------------------------------------------------------------------------------------------------&lt;BR /&gt;AP-1       5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:28   710 days 23:30:32&lt;BR /&gt;AP-2          5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:28   705 days 23:44:05&lt;BR /&gt;AP-3     5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:28   710 days 23:30:45&lt;BR /&gt;AP-4  5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:26   283 days 03:27:35&lt;BR /&gt;AP-5   5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:28   283 days 03:24:29&lt;BR /&gt;AP-6   5.5.5.0-018R    configured       No   wm-la..   6 days 01:30:47     6 days 01:33:37&lt;BR /&gt;AP-7       5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:28   710 days 23:43:19&lt;BR /&gt;AP-8       5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:30   710 days 23:30:50&lt;BR /&gt;AP-9      5.5.5.0-018R    configured       No   wm-la..  60 days 02:07:44   710 days 23:30:39&lt;BR /&gt;AP-10     5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:28   710 days 23:30:46&lt;BR /&gt;AP-11    5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:28   469 days 04:38:25&lt;BR /&gt;AP-12  5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:28   256 days 00:34:35&lt;BR /&gt;HOF       5.5.5.0-018R    error            Yes  wm-la..   0 days 07:51:49     0 days 07:55:42&lt;BR /&gt;AP-13    5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:28   283 days 03:19:20&lt;BR /&gt;AP-14   5.5.5.0-018R    configured       No   wm-la..  95 days 02:25:28   283 days 03:12:18&lt;BR /&gt;----------------------------------------------------------------------------------------------------------------&lt;BR /&gt;Total number of devices displayed: 15&lt;BR /&gt;&lt;/CODE&gt;&lt;/PRE&gt;&lt;P&gt;We dont want to put all APs in the profil ap4600_Hof&amp;nbsp; - so iam unsure to configure the auto-provisioning-policy&amp;nbsp; - can u help me?&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;André&lt;/P&gt;</description>
      <pubDate>Mon, 04 Nov 2019 21:56:20 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83878#M7829</guid>
      <dc:creator>Andre_h_</dc:creator>
      <dc:date>2019-11-04T21:56:20Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83879#M7830</link>
      <description>&lt;P&gt;Are any of those other APs model ap4600?&lt;/P&gt;&lt;P&gt;So you have several other APs that are adopted and have a profile.&amp;nbsp; How is this 1 AP different from those?&amp;nbsp; Is the AP Profile on those APs different from the profile that you are wanting to assign to this one?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;You can configure the rule so that it is specific to a single mac address.&amp;nbsp; This way, the rule will ONLY apply to the AP with the specified MAC address.&lt;/P&gt;&lt;P&gt;The rule would look like:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&lt;EM&gt;adopt ap4600 precedence 1 profile&amp;nbsp;ap4600_Hof rf-domain&amp;nbsp;"S Lau" mac&amp;nbsp;&lt;/EM&gt;00-04-xx-xx-xx-&lt;/STRONG&gt; &amp;nbsp; &amp;lt;--Enter correct MAC address&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Delete the AP from the system and then reboot it.&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;no ap4600 MAC_address&amp;nbsp; &lt;/STRONG&gt;&amp;lt;--Enter the AP’s MAC address&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;commit write&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The reason to delete the AP from the system is that once an AP has been adopted, it won’t go back through the adoption rules again.&amp;nbsp; Removing the AP from the system will cause the controller to treat it like new...and will treat it based on the auto-provisioning rule(s) you have entered.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Those other APs have 2 year uptimes….excellent! &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Nov 2019 22:25:49 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83879#M7830</guid>
      <dc:creator>ckelly</dc:creator>
      <dc:date>2019-11-04T22:25:49Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83880#M7831</link>
      <description>&lt;P&gt;The only difference between the working APs and the AP with errors is that the working APs are in the same VLAN like the controller. The AP with Errors is in a different VLAN.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I’ve configured the rule like you said, the AP cames up for secounds and emit a wlan - then the ap reboots automaticly and goes into error . In “show adoption status” the state is &amp;nbsp;*configured - after automatic reboot it says error.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;HOF&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5.5.5.0-018R&amp;nbsp;&amp;nbsp;&amp;nbsp; *configured&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; No&amp;nbsp;&amp;nbsp; wm--la..&amp;nbsp;&amp;nbsp; 0 days 00:00:10&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 days 00:04:04&lt;/P&gt;&lt;P&gt;after automatik reboot&lt;/P&gt;&lt;P&gt;HOF&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 5.5.5.0-018R&amp;nbsp;&amp;nbsp;&amp;nbsp; error&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Yes&amp;nbsp; wm--la..&amp;nbsp;&amp;nbsp; 0 days 00:00:03&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 days 00:03:55&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks a lot for you help!&lt;/P&gt;</description>
      <pubDate>Mon, 04 Nov 2019 23:04:30 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83880#M7831</guid>
      <dc:creator>Andre_h_</dc:creator>
      <dc:date>2019-11-04T23:04:30Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83881#M7832</link>
      <description>&lt;P&gt;Okay...so what’s happened is that the AP received the config….but then as part of the new config, it was no longer able to stay adopted to the controller….so it reverted back to the previous config (which is likely just an empty default config).&amp;nbsp; So the question now is, why can’t the AP remain adopted with the new config?&amp;nbsp; Looks like a VLAN config issue.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Look at the AP’s Profile on the controller - in the VLAN1 section.&amp;nbsp; There’s nothing.&lt;/P&gt;&lt;P&gt;So when the AP receives this profile after being adopted, it’s NOT being instructed to behave like a DHCP client. &amp;nbsp;&lt;/P&gt;&lt;P&gt;Even if it DID have an IP address, it can no longer discover the controller using layer-2 because the controller is then on a different subnet, so it then also needs a controller host entry.&amp;nbsp; The easiest way to do this would be to add the entry to the AP’s Profile...so we’ll take care of both of these issues.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Enter these commands and add these three lines *in &lt;STRONG&gt;BOLD&lt;/STRONG&gt;* to the AP Profile&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;P&gt;login to CLI on controller&lt;/P&gt;&lt;P&gt;enable&lt;/P&gt;&lt;P&gt;config&amp;nbsp;&lt;/P&gt;&lt;P&gt;profile ap4600&amp;nbsp;ap4600_Hof&lt;BR /&gt;interface vlan 1&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;ip address dhcp &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;ip dhcp client request options all&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;controller host 10.216.0.199&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;commit write&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The Profile will then look like this:&lt;/P&gt;&lt;BLOCKQUOTE&gt;&lt;P&gt;profile ap4600 ap4600_Hof&lt;/P&gt;&lt;P&gt;no autoinstall configuration&lt;/P&gt;&lt;P&gt;no autoinstall firmware&lt;/P&gt;&lt;P&gt;crypto ikev1 policy ikev1-default&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; isakmp-proposal default encryption aes-256 group 2 hash sha&lt;/P&gt;&lt;P&gt;crypto ikev2 policy ikev2-default&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; isakmp-proposal default encryption aes-256 group 2 hash sha&lt;/P&gt;&lt;P&gt;crypto ipsec transform-set default esp-aes-256 esp-sha-hmac&lt;/P&gt;&lt;P&gt;crypto ikev1 remote-vpn&lt;/P&gt;&lt;P&gt;crypto ikev2 remote-vpn&lt;/P&gt;&lt;P&gt;crypto auto-ipsec-secure&lt;/P&gt;&lt;P&gt;crypto load-management&lt;/P&gt;&lt;P&gt;crypto remote-vpn-client&lt;/P&gt;&lt;P&gt;interface radio1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; wlan hof bss 1 primary&lt;/P&gt;&lt;P&gt;interface radio2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; wlan S-Inet bss 1 primary&lt;/P&gt;&lt;P&gt;interface ge1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; ip dhcp trust&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; qos trust dscp&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; qos trust 802.1p&lt;/P&gt;&lt;P&gt;interface vlan1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;STRONG&gt;&amp;nbsp; ip address dhcp &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; ← Will be under ‘interface vlan 1’&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;&amp;nbsp;&amp;nbsp; ip dhcp client request options all &amp;nbsp; &amp;nbsp; ← Will be under ‘interface vlan 1’&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;interface pppoe1 use firewall-policy default&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;controller host 10.216.0.199 &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp; &amp;nbsp;&amp;nbsp; ← Will appear *somewhere* in this AP profile.&amp;nbsp; Look for it&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;service pm sys-restart&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;/BLOCKQUOTE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Now again, delete the AP from the system as before and then reboot the AP.&lt;/P&gt;&lt;P&gt;This time, the AP should then get an IP address and will know how to reach the controller using layer 3.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 04 Nov 2019 23:42:02 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83881#M7832</guid>
      <dc:creator>ckelly</dc:creator>
      <dc:date>2019-11-04T23:42:02Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83882#M7833</link>
      <description>&lt;P&gt;Hello Chris,&lt;/P&gt;&lt;P&gt;special thanks to you!! Best Support ever!!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The AP works fine now!! THANK YOU!!!!!!&lt;/P&gt;</description>
      <pubDate>Tue, 05 Nov 2019 14:46:39 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83882#M7833</guid>
      <dc:creator>Andre_h_</dc:creator>
      <dc:date>2019-11-05T14:46:39Z</dc:date>
    </item>
    <item>
      <title>Re: WM3600 - AP2600 - Configure Error with seperate WLAN between AP and controller</title>
      <link>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83883#M7834</link>
      <description>&lt;P&gt;Good to hear, Andre!&lt;/P&gt;</description>
      <pubDate>Tue, 05 Nov 2019 21:56:23 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremewireless-wing/wm3600-ap2600-configure-error-with-seperate-wlan-between-ap-and/m-p/83883#M7834</guid>
      <dc:creator>ckelly</dc:creator>
      <dc:date>2019-11-05T21:56:23Z</dc:date>
    </item>
  </channel>
</rss>

