01-26-2021 03:03 AM
Hello everyone!
Hope you all are fine and healthy.
I have been working with the configuration of some Cisco APs connected to a Cisco switch / Switch Extreme for three days. However, so far, no success in this task. As a result, I decided to raise my hand and ask for help. I will leave attached a quite simple (mspaint productions lol) topology here to exemplify my scenario.
The scenario is quite simple too, we need to configure some Cisco APs (model aironet serie 18XX), all of these APs will be connected to Switch Cisco. These APs have a built-in controller, called Mobility Express. In theory, all we need is to configure the first AP / Controller and the rest will be connected automatically during the joining process. So guess what? For some reason, the join just doesn't work.
Some points.
- If the APs are on the same switch. OK, the joining process works without any problems.
- If the APs are connected to another switch (going through Extreme uplink between switchs), the process does not work. Both switchs are reachable, we can ping each other, the gateway, servers, etc.
- We are on the same subnet, so there is not a L3/firewall between.
- Just for testing proposal, If I replace the Extreme with a conventional switch (e.g: tplink), everything works fine, the joining process works with no erros.
- Switch Extreme does not have any special configuration, standard configuration (ports auto neg, speed full, access mode). (Although there are some VLANs configured).
- I have already disabled the flowcontrol, broadcast flooding settings. Unsuccessfully.
- We have already made contact with Cisco, however, Cisco is unable to help due to the connection switch being Extreme.
Everything indicates that for some reason Extreme is blocking this communication during the AP's JOIN process. Maybe broadcast, dtls packets… well, to be honest, I have no more ideas.
Would anyone have any suggestions for solving this puzzle? I really appreciate any help or even an idea.
Thank you all.
01-30-2021 09:02 AM
rstoccom,
I see two steps to try to force it:
The goal is to create an L2 bridge that should let anything pass.
Based on the results you’ll be able to provide the info to GTAC…
Mig
01-29-2021 08:25 PM
Hello
AP is getting IP address using DHCP service.
We found the problem but not the solution.
Cisco APs use the VRRP protocol to find/elect the Controller AP. Theproblem is Extreme for some reason is not propagate the VRRP multicast.
Simalar case;
01-28-2021 09:29 PM
Just to be sure,
could you create a brand new vlan and assign the ports 1:9 and 1:10 on it as untagged?
Without IP on it.
How is the AP getting his own IP?
Mig
01-28-2021 09:10 PM
For now, 1:9 and 1:10.
Yes I said, there is nothing so complicated, It's just the basic. A couple VLANs, stp default, ssh, credentials and motd.
No make any sense