
ich habe da mal ein Problem und vielleicht hat ja jemand einen guten Tipp für mich.
Ich Habe einen 1783VA mit WLC Basic Option [Firmware 10.30.0167 RU1] der in seinem Netzwerk zwei AP's verwaltet. Jetzt soll er einen entfernten AP ebenfalls mit Profilen versorgen. Der Externe Standort ist über VPN angebunden, dort ist ein IAP-822 [Firmware 10.30.0167 RU1].
Das Problem ist, das er keine Profile bekommt. Der AP kann "WLC-Address" auflösen bzw. hat auch die IP vom WLC extra in seiner Konfiguration. Er hat die aktuelle Zeit und der WLC selber ist über Port 80 erreichbar.
Test weise habe ich ihn schon ins Lokale Netzwerk des WLC gesteckt, wo er dann auch erkannt wurde und ein Zertifikat, sowie ein Profil bekommen hat. Wieder am externen Standort positioniert wird er im Lanmonitor unter Fehlende APs gelistet.
Hätte jemand evtl. noch einen Tipp was ich übersehen haben könnte? Das wäre wirklich Super. Ein CAPWAP-CTRL Trace vom WLC hängt unten mit dran.
Code: Alles auswählen
[CAPWAP-CTRL] 2019/07/17 19:21:45,140 Devicetime: 2019/07/17 19:21:45,914
CAPWAP Message received
Job-PID: 57191
State..: DTLS-Setup
UdpConn: L:172.16.0.1:1027 R:10.3.2.250:5441 (WAN, LAGERHALLE)
Message content:
Message type: Discovery Request
Sequence Num: 8
Flags : 0
Discovery Type: 'DNS'
WTP Board Data:
Vendor ID: 2356
WTP Model Number: LANCOM IAP-822
WTP Serial Number: 4005329418100016
Board ID: nwapp2
Board Revision: H
WTP Descriptor:
Max Radios: 2
Radios in use: 2
Encrypt Capability: 0x0
Vendor ID: 2356
Hardware Version:
Vendor ID: 2356
Software Version: 10.30.0167 / 10.07.2019
Vendor ID: 2356
Boot Version: 4.46
WTP Frame Tunnel Mode: LocalBridging,
WTP MAC Type: 'Local MAC'
Vendor Specific Payload: 'LAN MAC' (1)
MAC-Addr: 00:a0:57:49:05:b7
Vendor Specific Payload: 'Trigger to use Router once again' (72)
Use Router Trigger
[CAPWAP-CTRL] 2019/07/17 19:21:45,140 Devicetime: 2019/07/17 19:21:45,914
CAPWAP Message to transmit:
Job-PID: 57191
UdpConn: L:172.16.0.1:1027 R:10.3.2.250:5441 (WAN, LAGERHALLE)
Message content:
Message type: Discovery Response
Sequence Num: 8
Flags : 0
Result Code: Success
AC Name Index: 'CentralGateway' (Idx:1)
Vendor Specific Payload: 'WLC Preference' (48)
Preference: 0
Vendor Specific Payload: 'CPU Load' (49)
CPU load 5s: 4.02%
CPU load 60s: 3.54%
CPU load 300s: 1.84%
AC Timestamp: 2019/7/17 17:21:42
AC Descriptor:
Stations: 0
Limit: 65535
Active WTPs: 2
Max WTPs: 6
Security: X.509 Certificate Based,
R-MAC Field: yes
Reserved1: 0x0
DTLS Policy: Clear Text Data Channel,
Vendor ID: 2356
Hardware Version:
Vendor ID: 2356
Software Version: 10.30.0167 / 09.07.2019
Vendor Specific Payload: 'Control Encrypt Type' (2)
Ctrl-Encrypt: DTLS
CAPWAP Control IPv4 Addr:
IP-Addr: 172.16.0.1
WTP Count: 2
Vendor Specific Payload: 'LAN MAC' (1)
MAC-Addr: 00:a0:57:2e:42:58
[CAPWAP-CTRL] 2019/07/17 19:21:50,725 Devicetime: 2019/07/17 19:21:51,915
CAPWAP Message received
Job-PID: 57191
State..: DTLS-Setup
UdpConn: L:172.16.0.1:1027 R:10.3.2.250:5441 (WAN, LAGERHALLE)
Message content:
Message type: Discovery Request
Sequence Num: 8
Flags : 0
Discovery Type: 'DNS'
WTP Board Data:
Vendor ID: 2356
WTP Model Number: LANCOM IAP-822
WTP Serial Number: 4005329418100016
Board ID: nwapp2
Board Revision: H
WTP Descriptor:
Max Radios: 2
Radios in use: 2
Encrypt Capability: 0x0
Vendor ID: 2356
Hardware Version:
Vendor ID: 2356
Software Version: 10.30.0167 / 10.07.2019
Vendor ID: 2356
Boot Version: 4.46
WTP Frame Tunnel Mode: LocalBridging,
WTP MAC Type: 'Local MAC'
Vendor Specific Payload: 'LAN MAC' (1)
MAC-Addr: 00:a0:57:49:05:b7
Vendor Specific Payload: 'Trigger to use Router once again' (72)
Use Router Trigger
[CAPWAP-CTRL] 2019/07/17 19:21:50,725 Devicetime: 2019/07/17 19:21:51,915
CAPWAP Message to transmit:
Job-PID: 57191
UdpConn: L:172.16.0.1:1027 R:10.3.2.250:5441 (WAN, LAGERHALLE)
Message content:
Message type: Discovery Response
Sequence Num: 8
Flags : 0
Result Code: Success
AC Name Index: 'CentralGateway' (Idx:1)
Vendor Specific Payload: 'WLC Preference' (48)
Preference: 0
Vendor Specific Payload: 'CPU Load' (49)
CPU load 5s: 4.02%
CPU load 60s: 3.54%
CPU load 300s: 1.84%
AC Timestamp: 2019/7/17 17:21:42
AC Descriptor:
Stations: 0
Limit: 65535
Active WTPs: 2
Max WTPs: 6
Security: X.509 Certificate Based,
R-MAC Field: yes
Reserved1: 0x0
DTLS Policy: Clear Text Data Channel,
Vendor ID: 2356
Hardware Version:
Vendor ID: 2356
Software Version: 10.30.0167 / 09.07.2019
Vendor Specific Payload: 'Control Encrypt Type' (2)
Ctrl-Encrypt: DTLS
CAPWAP Control IPv4 Addr:
IP-Addr: 172.16.0.1
WTP Count: 2
Vendor Specific Payload: 'LAN MAC' (1)
MAC-Addr: 00:a0:57:2e:42:58
[CAPWAP-CTRL] 2019/07/17 19:21:57,232 Devicetime: 2019/07/17 19:21:58,422
CAPWAP Message received
Job-PID: 57192
State..: Idle
UdpConn: L:172.16.0.1:1027 R:10.3.2.250:5443 (WAN, LAGERHALLE)
Message content:
Message type: Discovery Request
Sequence Num: 9
Flags : 0
Discovery Type: 'DNS'
WTP Board Data:
Vendor ID: 2356
WTP Model Number: LANCOM IAP-822
WTP Serial Number: 4005329418100016
Board ID: nwapp2
Board Revision: H
WTP Descriptor:
Max Radios: 2
Radios in use: 2
Encrypt Capability: 0x0
Vendor ID: 2356
Hardware Version:
Vendor ID: 2356
Software Version: 10.30.0167 / 10.07.2019
Vendor ID: 2356
Boot Version: 4.46
WTP Frame Tunnel Mode: LocalBridging,
WTP MAC Type: 'Local MAC'
Vendor Specific Payload: 'LAN MAC' (1)
MAC-Addr: 00:a0:57:49:05:b7
[CAPWAP-CTRL] 2019/07/17 19:21:57,232 Devicetime: 2019/07/17 19:21:58,422
CAPWAP Message to transmit:
Job-PID: 57192
UdpConn: L:172.16.0.1:1027 R:10.3.2.250:5443 (WAN, LAGERHALLE)
Message content:
Message type: Discovery Response
Sequence Num: 9
Flags : 0
Result Code: Success
AC Name Index: 'CentralGateway' (Idx:1)
Vendor Specific Payload: 'WLC Preference' (48)
Preference: 0
Vendor Specific Payload: 'CPU Load' (49)
CPU load 5s: 4.02%
CPU load 60s: 3.42%
CPU load 300s: 1.90%
AC Timestamp: 2019/7/17 17:21:58
AC Descriptor:
Stations: 0
Limit: 65535
Active WTPs: 2
Max WTPs: 6
Security: X.509 Certificate Based,
R-MAC Field: yes
Reserved1: 0x0
DTLS Policy: Clear Text Data Channel,
Vendor ID: 2356
Hardware Version:
Vendor ID: 2356
Software Version: 10.30.0167 / 09.07.2019
Vendor Specific Payload: 'Control Encrypt Type' (2)
Ctrl-Encrypt: DTLS
CAPWAP Control IPv4 Addr:
IP-Addr: 172.16.0.1
WTP Count: 2
Vendor Specific Payload: 'LAN MAC' (1)
MAC-Addr: 00:a0:57:2e:42:58
[CAPWAP-CTRL] 2019/07/17 19:22:00,603 Devicetime: 2019/07/17 19:22:01,422
CAPWAP Message received
Job-PID: 57192
State..: DTLS-Setup
UdpConn: L:172.16.0.1:1027 R:10.3.2.250:5443 (WAN, LAGERHALLE)
Message content:
Message type: Discovery Request
Sequence Num: 9
Flags : 0
Discovery Type: 'DNS'
WTP Board Data:
Vendor ID: 2356
WTP Model Number: LANCOM IAP-822
WTP Serial Number: 4005329418100016
Board ID: nwapp2
Board Revision: H
WTP Descriptor:
Max Radios: 2
Radios in use: 2
Encrypt Capability: 0x0
Vendor ID: 2356
Hardware Version:
Vendor ID: 2356
Software Version: 10.30.0167 / 10.07.2019
Vendor ID: 2356
Boot Version: 4.46
WTP Frame Tunnel Mode: LocalBridging,
WTP MAC Type: 'Local MAC'
Vendor Specific Payload: 'LAN MAC' (1)
MAC-Addr: 00:a0:57:49:05:b7
Vendor Specific Payload: 'Trigger to use Router once again' (72)
Use Router Trigger
[CAPWAP-CTRL] 2019/07/17 19:22:00,608 Devicetime: 2019/07/17 19:22:01,422
CAPWAP Message to transmit:
Job-PID: 57192
UdpConn: L:172.16.0.1:1027 R:10.3.2.250:5443 (WAN, LAGERHALLE)
Message content:
Message type: Discovery Response
Sequence Num: 9
Flags : 0
Result Code: Success
AC Name Index: 'CentralGateway' (Idx:1)
Vendor Specific Payload: 'WLC Preference' (48)
Preference: 0
Vendor Specific Payload: 'CPU Load' (49)
CPU load 5s: 4.02%
CPU load 60s: 3.42%
CPU load 300s: 1.90%
AC Timestamp: 2019/7/17 17:21:58
AC Descriptor:
Stations: 0
Limit: 65535
Active WTPs: 2
Max WTPs: 6
Security: X.509 Certificate Based,
R-MAC Field: yes
Reserved1: 0x0
DTLS Policy: Clear Text Data Channel,
Vendor ID: 2356
Hardware Version:
Vendor ID: 2356
Software Version: 10.30.0167 / 09.07.2019
Vendor Specific Payload: 'Control Encrypt Type' (2)
Ctrl-Encrypt: DTLS
CAPWAP Control IPv4 Addr:
IP-Addr: 172.16.0.1
WTP Count: 2
Vendor Specific Payload: 'LAN MAC' (1)
MAC-Addr: 00:a0:57:2e:42:58
[CAPWAP-CTRL] 2019/07/17 19:22:00,680 Devicetime: 2019/07/17 19:22:01,521
No PMTU discovery message was received during 60 seconds. Destroying connection.
Job-PID: 57182
State..: DTLS-Setup
UdpConn: L:172.16.0.1:1027 R:10.3.2.250:5431 (WAN, LAGERHALLE)
[CAPWAP-CTRL] 2019/07/17 19:22:05,178 Devicetime: 2019/07/17 19:22:06,331
No PMTU discovery message was received during 60 seconds. Destroying connection.
Job-PID: 57183
State..: DTLS-Setup
UdpConn: L:172.16.0.1:1027 R:10.3.2.250:5433 (WAN, LAGERHALLE)