ich habe da mal ein Problem und vielleicht hat ja jemand einen guten Tipp für mich.
Ich Habe einen 1783VA mit WLC Basic Option [Firmware 10.30.0167 RU1] der in seinem Netzwerk zwei AP's verwaltet. Jetzt soll er einen entfernten AP ebenfalls mit Profilen versorgen. Der Externe Standort ist über VPN angebunden, dort ist ein IAP-822 [Firmware 10.30.0167 RU1].
Das Problem ist, das er keine Profile bekommt. Der AP kann "WLC-Address" auflösen bzw. hat auch die IP vom WLC extra in seiner Konfiguration. Er hat die aktuelle Zeit und der WLC selber ist über Port 80 erreichbar.
Test weise habe ich ihn schon ins Lokale Netzwerk des WLC gesteckt, wo er dann auch erkannt wurde und ein Zertifikat, sowie ein Profil bekommen hat. Wieder am externen Standort positioniert wird er im Lanmonitor unter Fehlende APs gelistet.
Hätte jemand evtl. noch einen Tipp was ich übersehen haben könnte? Das wäre wirklich Super. Ein CAPWAP-CTRL Trace vom WLC hängt unten mit dran.
Code: Alles auswählen
[CAPWAP-CTRL] 2019/07/17 19:21:45,140  Devicetime: 2019/07/17 19:21:45,914
CAPWAP Message received
Job-PID: 57191 
State..: DTLS-Setup 
UdpConn: L:172.16.0.1:1027  R:10.3.2.250:5441 (WAN, LAGERHALLE)
Message content:
 Message type: Discovery Request
 Sequence Num: 8
 Flags       : 0
   Discovery Type:            'DNS'
   WTP Board Data:
     Vendor ID:               2356
     WTP Model Number:        LANCOM IAP-822
     WTP Serial Number:       4005329418100016
     Board ID:                nwapp2
     Board Revision:          H
   WTP Descriptor:
     Max Radios:              2
     Radios in use:           2
     Encrypt Capability:      0x0
     Vendor ID:               2356
     Hardware Version:        
     Vendor ID:               2356
     Software Version:        10.30.0167 / 10.07.2019
     Vendor ID:               2356
     Boot Version:            4.46
   WTP Frame Tunnel Mode:      LocalBridging,
   WTP MAC Type:              'Local MAC'
   Vendor Specific Payload: 'LAN MAC' (1)
     MAC-Addr:       00:a0:57:49:05:b7
   Vendor Specific Payload: 'Trigger to use Router once again' (72)
     Use Router Trigger
[CAPWAP-CTRL] 2019/07/17 19:21:45,140  Devicetime: 2019/07/17 19:21:45,914
CAPWAP Message to transmit:
Job-PID: 57191
UdpConn: L:172.16.0.1:1027  R:10.3.2.250:5441 (WAN, LAGERHALLE)
Message content:
 Message type: Discovery Response
 Sequence Num: 8
 Flags       : 0
   Result Code:               Success
   AC Name Index:             'CentralGateway' (Idx:1)
   Vendor Specific Payload: 'WLC Preference' (48)
     Preference: 0
   Vendor Specific Payload: 'CPU Load' (49)
     CPU load 5s:     4.02%
     CPU load 60s:    3.54%
     CPU load 300s:   1.84%
   AC Timestamp:              2019/7/17 17:21:42
   AC Descriptor:
     Stations:       0
     Limit:          65535
     Active WTPs:    2
     Max WTPs:       6
     Security:       X.509 Certificate Based,
     R-MAC Field:    yes
     Reserved1:      0x0
     DTLS Policy:    Clear Text Data Channel,
     Vendor ID:               2356
     Hardware Version:        
     Vendor ID:               2356
     Software Version:        10.30.0167 / 09.07.2019
   Vendor Specific Payload: 'Control Encrypt Type' (2)
     Ctrl-Encrypt:   DTLS
   CAPWAP Control IPv4 Addr:
     IP-Addr:           172.16.0.1
     WTP Count:         2
   Vendor Specific Payload: 'LAN MAC' (1)
     MAC-Addr:       00:a0:57:2e:42:58
[CAPWAP-CTRL] 2019/07/17 19:21:50,725  Devicetime: 2019/07/17 19:21:51,915
CAPWAP Message received
Job-PID: 57191 
State..: DTLS-Setup 
UdpConn: L:172.16.0.1:1027  R:10.3.2.250:5441 (WAN, LAGERHALLE)
Message content:
 Message type: Discovery Request
 Sequence Num: 8
 Flags       : 0
   Discovery Type:            'DNS'
   WTP Board Data:
     Vendor ID:               2356
     WTP Model Number:        LANCOM IAP-822
     WTP Serial Number:       4005329418100016
     Board ID:                nwapp2
     Board Revision:          H
   WTP Descriptor:
     Max Radios:              2
     Radios in use:           2
     Encrypt Capability:      0x0
     Vendor ID:               2356
     Hardware Version:        
     Vendor ID:               2356
     Software Version:        10.30.0167 / 10.07.2019
     Vendor ID:               2356
     Boot Version:            4.46
   WTP Frame Tunnel Mode:      LocalBridging,
   WTP MAC Type:              'Local MAC'
   Vendor Specific Payload: 'LAN MAC' (1)
     MAC-Addr:       00:a0:57:49:05:b7
   Vendor Specific Payload: 'Trigger to use Router once again' (72)
     Use Router Trigger
[CAPWAP-CTRL] 2019/07/17 19:21:50,725  Devicetime: 2019/07/17 19:21:51,915
CAPWAP Message to transmit:
Job-PID: 57191
UdpConn: L:172.16.0.1:1027  R:10.3.2.250:5441 (WAN, LAGERHALLE)
Message content:
 Message type: Discovery Response
 Sequence Num: 8
 Flags       : 0
   Result Code:               Success
   AC Name Index:             'CentralGateway' (Idx:1)
   Vendor Specific Payload: 'WLC Preference' (48)
     Preference: 0
   Vendor Specific Payload: 'CPU Load' (49)
     CPU load 5s:     4.02%
     CPU load 60s:    3.54%
     CPU load 300s:   1.84%
   AC Timestamp:              2019/7/17 17:21:42
   AC Descriptor:
     Stations:       0
     Limit:          65535
     Active WTPs:    2
     Max WTPs:       6
     Security:       X.509 Certificate Based,
     R-MAC Field:    yes
     Reserved1:      0x0
     DTLS Policy:    Clear Text Data Channel,
     Vendor ID:               2356
     Hardware Version:        
     Vendor ID:               2356
     Software Version:        10.30.0167 / 09.07.2019
   Vendor Specific Payload: 'Control Encrypt Type' (2)
     Ctrl-Encrypt:   DTLS
   CAPWAP Control IPv4 Addr:
     IP-Addr:           172.16.0.1
     WTP Count:         2
   Vendor Specific Payload: 'LAN MAC' (1)
     MAC-Addr:       00:a0:57:2e:42:58
[CAPWAP-CTRL] 2019/07/17 19:21:57,232  Devicetime: 2019/07/17 19:21:58,422
CAPWAP Message received
Job-PID: 57192 
State..: Idle 
UdpConn: L:172.16.0.1:1027  R:10.3.2.250:5443 (WAN, LAGERHALLE)
Message content:
 Message type: Discovery Request
 Sequence Num: 9
 Flags       : 0
   Discovery Type:            'DNS'
   WTP Board Data:
     Vendor ID:               2356
     WTP Model Number:        LANCOM IAP-822
     WTP Serial Number:       4005329418100016
     Board ID:                nwapp2
     Board Revision:          H
   WTP Descriptor:
     Max Radios:              2
     Radios in use:           2
     Encrypt Capability:      0x0
     Vendor ID:               2356
     Hardware Version:        
     Vendor ID:               2356
     Software Version:        10.30.0167 / 10.07.2019
     Vendor ID:               2356
     Boot Version:            4.46
   WTP Frame Tunnel Mode:      LocalBridging,
   WTP MAC Type:              'Local MAC'
   Vendor Specific Payload: 'LAN MAC' (1)
     MAC-Addr:       00:a0:57:49:05:b7
[CAPWAP-CTRL] 2019/07/17 19:21:57,232  Devicetime: 2019/07/17 19:21:58,422
CAPWAP Message to transmit:
Job-PID: 57192
UdpConn: L:172.16.0.1:1027  R:10.3.2.250:5443 (WAN, LAGERHALLE)
Message content:
 Message type: Discovery Response
 Sequence Num: 9
 Flags       : 0
   Result Code:               Success
   AC Name Index:             'CentralGateway' (Idx:1)
   Vendor Specific Payload: 'WLC Preference' (48)
     Preference: 0
   Vendor Specific Payload: 'CPU Load' (49)
     CPU load 5s:     4.02%
     CPU load 60s:    3.42%
     CPU load 300s:   1.90%
   AC Timestamp:              2019/7/17 17:21:58
   AC Descriptor:
     Stations:       0
     Limit:          65535
     Active WTPs:    2
     Max WTPs:       6
     Security:       X.509 Certificate Based,
     R-MAC Field:    yes
     Reserved1:      0x0
     DTLS Policy:    Clear Text Data Channel,
     Vendor ID:               2356
     Hardware Version:        
     Vendor ID:               2356
     Software Version:        10.30.0167 / 09.07.2019
   Vendor Specific Payload: 'Control Encrypt Type' (2)
     Ctrl-Encrypt:   DTLS
   CAPWAP Control IPv4 Addr:
     IP-Addr:           172.16.0.1
     WTP Count:         2
   Vendor Specific Payload: 'LAN MAC' (1)
     MAC-Addr:       00:a0:57:2e:42:58
[CAPWAP-CTRL] 2019/07/17 19:22:00,603  Devicetime: 2019/07/17 19:22:01,422
CAPWAP Message received
Job-PID: 57192 
State..: DTLS-Setup 
UdpConn: L:172.16.0.1:1027  R:10.3.2.250:5443 (WAN, LAGERHALLE)
Message content:
 Message type: Discovery Request
 Sequence Num: 9
 Flags       : 0
   Discovery Type:            'DNS'
   WTP Board Data:
     Vendor ID:               2356
     WTP Model Number:        LANCOM IAP-822
     WTP Serial Number:       4005329418100016
     Board ID:                nwapp2
     Board Revision:          H
   WTP Descriptor:
     Max Radios:              2
     Radios in use:           2
     Encrypt Capability:      0x0
     Vendor ID:               2356
     Hardware Version:        
     Vendor ID:               2356
     Software Version:        10.30.0167 / 10.07.2019
     Vendor ID:               2356
     Boot Version:            4.46
   WTP Frame Tunnel Mode:      LocalBridging,
   WTP MAC Type:              'Local MAC'
   Vendor Specific Payload: 'LAN MAC' (1)
     MAC-Addr:       00:a0:57:49:05:b7
   Vendor Specific Payload: 'Trigger to use Router once again' (72)
     Use Router Trigger
[CAPWAP-CTRL] 2019/07/17 19:22:00,608  Devicetime: 2019/07/17 19:22:01,422
CAPWAP Message to transmit:
Job-PID: 57192
UdpConn: L:172.16.0.1:1027  R:10.3.2.250:5443 (WAN, LAGERHALLE)
Message content:
 Message type: Discovery Response
 Sequence Num: 9
 Flags       : 0
   Result Code:               Success
   AC Name Index:             'CentralGateway' (Idx:1)
   Vendor Specific Payload: 'WLC Preference' (48)
     Preference: 0
   Vendor Specific Payload: 'CPU Load' (49)
     CPU load 5s:     4.02%
     CPU load 60s:    3.42%
     CPU load 300s:   1.90%
   AC Timestamp:              2019/7/17 17:21:58
   AC Descriptor:
     Stations:       0
     Limit:          65535
     Active WTPs:    2
     Max WTPs:       6
     Security:       X.509 Certificate Based,
     R-MAC Field:    yes
     Reserved1:      0x0
     DTLS Policy:    Clear Text Data Channel,
     Vendor ID:               2356
     Hardware Version:        
     Vendor ID:               2356
     Software Version:        10.30.0167 / 09.07.2019
   Vendor Specific Payload: 'Control Encrypt Type' (2)
     Ctrl-Encrypt:   DTLS
   CAPWAP Control IPv4 Addr:
     IP-Addr:           172.16.0.1
     WTP Count:         2
   Vendor Specific Payload: 'LAN MAC' (1)
     MAC-Addr:       00:a0:57:2e:42:58
[CAPWAP-CTRL] 2019/07/17 19:22:00,680  Devicetime: 2019/07/17 19:22:01,521
No PMTU discovery message was received during 60 seconds. Destroying connection.
Job-PID: 57182 
State..: DTLS-Setup 
UdpConn: L:172.16.0.1:1027  R:10.3.2.250:5431 (WAN, LAGERHALLE)
[CAPWAP-CTRL] 2019/07/17 19:22:05,178  Devicetime: 2019/07/17 19:22:06,331
No PMTU discovery message was received during 60 seconds. Destroying connection.
Job-PID: 57183 
State..: DTLS-Setup 
UdpConn: L:172.16.0.1:1027  R:10.3.2.250:5433 (WAN, LAGERHALLE)