cancel
Showing results forĀ 
Search instead forĀ 
Did you mean:Ā 

I created a guest SSID on a separate VLAN and all works as expected. Im now trying to deploy a captive portal, so far using default values, but keep getting the below error when trying to deploy;

I created a guest SSID on a separate VLAN and all works as expected. Im now trying to deploy a captive portal, so far using default values, but keep getting the below error when trying to deploy;

michael_bliss
New Contributor
I created a guest SSID on a separate VLAN and all works as expected. Im now trying to deploy a captive portal, so far using default values, but keep getting the below error when trying to deploy;
1 ACCEPTED SOLUTION

samantha_lynn
Esteemed Contributor III

Thanks for those logs Michael, I've emailed you a more detailed explanation of what we saw, but just in case anyone else has the same problems I wanted to post a brief overview of what we found and what we need to look at next.

 

In the data we were seeing failed .lpr files (you can see this by looking in the buffered log and CTRL+F searching for ".lpr", if you see the word "failed" on the same line, you know they aren't getting through). This indicates we aren't getting traffic through a firewall or content filter, or that there is a delay on the backend network.

 

We also saw that we were failing to reach the VHM server via http, which also indicates a firewall issue.

 

Finally we were seeing echo time outs. The HiveManager and AP (or any other aerohive device) have a call and response system to make sure that the APs are still responding to the HiveManager and therefore can be considered connected to the HiveManager. If the AP does not response to enough call and response echo packets, the HiveManager considers that device to be disconnected until it starts responding to echos again. This also indicates either a slow down on your network traffic, or a firewall issue.

 

If we are sure that the firewall is allowing outbound traffic on UDP 12222, TCP 22, TCP 443, and HTTP 80, then we'll want to run iPerf tests to see if we can find where the traffic is slowing down on the backend network. I sent you a guide that covers how to set up and run iPerf tests for reference.

View solution in original post

6 REPLIES 6

samantha_lynn
Esteemed Contributor III

Updates use ports UDP12222 and TCP 22, or HTTP 80 and TCP 443 depending on your capwap transport mode. Could you run the following command to confirm we can get traffic through your firewall and content filters?

 

exec _test tcp-service host <Hivemanager IP address> port 22

michael_bliss
New Contributor

R: failed to upload file 885BDDC855000616.lpr to remote server!

ERROR: failed to upload file 885BDDC855000616.lpr to remote server!

ERROR: failed to upload file 885BDDC855000616.lpr to remote server!

ERROR: Failed to download web page file from http server!

ERROR: Failed to download web page file from http server!: Inappropriate ioctl for device

 

2018-08-28 08:43:02 info ah_cli: admin:

2018-08-28 08:42:40 err capwap: ERROR: Failed to download web page file from http server!: Inappropriate ioctl for device

2018-08-28 08:42:40 err capwap: "VHM-000001VA" failed to http from server, r c=1536(6)

2018-08-28 08:42:40 info kernel: [mpi]: socket is closed, pid(25326), protoco l(0)

2018-08-28 08:42:40 info ah_cli: admin:

2018-08-28 08:42:40 info ah_cli: admin:

 

Any clues as to what I might be doing wrong?

GTM-P2G8KFN