Wireless Access

 View Only
  • 1.  Delay between Remote AP and controller 7010

    Posted May 14, 2021 09:31 AM
    Hi community,

    Controller version 8.6.0.0 and 7010
    AP 505

    Please your support with this case.

    I am deploying a remote AP from a branch with through mpls link (not public ip address), the AP establishes a ipsec tunnel with the controller. But then takes almost an hour to show active in 'show ap active' and 'show ap database' tables

    Could you tell me if maybe this behavior is normal or should I make any adjustments?

    ------------------------------
    Anderson Diaz
    ------------------------------


  • 2.  RE: Delay between Remote AP and controller 7010

    Posted May 14, 2021 11:09 AM
    It should not take that long.  I would type "show log system all" on the controller to see if there is any information about that AP. Do you perhaps have an LMS-IP in the AP system Profile in that AP group?

    Have you tried to bring up a regular AP on that MPLS link?

    ------------------------------
    Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.
    ------------------------------



  • 3.  RE: Delay between Remote AP and controller 7010

    Posted May 14, 2021 11:55 AM
      |   view attached
    Hi friend,

    Thank you for you support.

    I am new in aruba. How can I validate this point (Do you perhaps have an LMS-IP in the AP system Profile in that AP group) ?

    I leave you the output.

    AP is ip addres 10.3.28.14 and MC is 10.3.32.5


    ------------------------------
    Anderson Diaz
    ------------------------------

    Attachment(s)

    txt
    show log system all.txt   304 KB 1 version


  • 4.  RE: Delay between Remote AP and controller 7010

    Posted May 14, 2021 01:28 PM
    Hi cjoseph,

    Yes, there is a LSM-IP in that AP group.  

    Is possible bring up a regular AP from a branch with private ip address?

    Let me know please!

    ------------------------------
    Anderson Diaz
    ------------------------------



  • 5.  RE: Delay between Remote AP and controller 7010

    Posted May 14, 2021 01:41 PM
    Does the LMS-ip point to the same controller it connects to?

    ------------------------------
    Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.
    ------------------------------



  • 6.  RE: Delay between Remote AP and controller 7010

    Posted May 14, 2021 01:48 PM
    The AP is pointing to IP VRRP 10.3.32.5 and the LMS-IP is 10.3.32.2.

    ------------------------------
    Anderson Diaz
    ------------------------------



  • 7.  RE: Delay between Remote AP and controller 7010
    Best Answer

    Posted May 14, 2021 01:53 PM
    here is what I would do:

    Point the AP at 10.3.32.2 and see if things change.  The AP could have problems connecting to the VRRP.  While the AP is coming up, SSH into the controller at 10.3.32.2 and type "show datapath session table <ip address of AP>" repeatedly to see if you can see traffic coming from that AP.

    ------------------------------
    Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.
    ------------------------------



  • 8.  RE: Delay between Remote AP and controller 7010

    Posted May 14, 2021 05:15 PM
    cjoseph,

    configure a second AP as you suggested and the ap will sync in less time. even considering that the wan link was intermittent.

    Of the 2 APs that I have in this branch, only one is active. According to another discussion in this community I understand that I may be having a licensing problem.

    I have 22 licenses (only AP) installed on the controller but only 17 are AP + PEF. I understand that the remaining 5 licenses must have the PEF feature as well.

    what do you think about this?

    view the outputs:

    show log system all

    May 14 11:46:25 stm[20616]: <305036> <20616> <WARN> |stm| Adding the remote AP AP-18 will push the AP limits over the platform limit.
    May 14 11:46:58 stm[20616]: <305036> <20616> <WARN> |stm| Adding the remote AP AP-18 will push the AP limits over the platform limit.
    May 14 11:48:28 stm[20616]: <305036> <20616> <WARN> |stm| Adding the remote AP AP-18 will push the AP limits over the platform limit.
    May 14 11:49:55 sapd[2969]: <311020> <ERRS> |AP AP-18@10.3.35.135 sapd| An internal system error has occurred at file sapd_redun.c function redun_tunnel_down line 5630 error redun_tunnel_down: client not found lms:10.3.32.2.
    May 14 11:50:27 stm[20616]: <305036> <20616> <WARN> |stm| Adding the remote AP AP-18 will push the AP limits over the platform limit.
    May 14 11:51:16 dbsync[20751]: <307269> <20751> <ERRS> |dbsync| dbsync: timed out, failed to complete in time (state= WAITING FOR ACK FROM STANDBY TO START, timeout= 30000)
    May 14 11:51:49 stm[20616]: <305036> <20616> <WARN> |stm| Adding the remote AP AP-18 will push the AP limits over the platform limit.
    May 14 11:52:48 stm[20616]: <305036> <20616> <WARN> |stm| Adding the remote AP AP-18 will push the AP limits over the platform limit.
    May 14 11:54:16 stm[20616]: <305036> <20616> <WARN> |stm| Adding the remote AP AP-18 will push the AP limits over the platform limit.

    (ControladoraAruba01) *[mynode] #show ap license-usage

    AP Licenses
    -----------
    Type Number
    ---- ------
    AP Licenses 22
    PEF Licenses 17
    Controller License True
    Overall AP License Limit 17

    AP Usage
    --------
    Type Count
    ---- -----
    Active CAPs 16
    Standby CAPs [Counted Against Total] 0
    Active RAPs 1
    Remote-node APs 0
    Active MUX 0
    Active PUTN 0
    Total APs 17

    Remaining AP Capacity
    ---------------------
    Type Number
    ---- ------
    CAPs 0
    RAPs 0

    ------------------------------
    Anderson Diaz
    ------------------------------



  • 9.  RE: Delay between Remote AP and controller 7010

    Posted May 14, 2021 05:45 PM
    Yes, you would have to add one more PEF license for AP#18 to come up.  It is possible that your Remote AP is only coming up when another AP goes down..

    ------------------------------
    Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.
    ------------------------------



  • 10.  RE: Delay between Remote AP and controller 7010

    Posted May 15, 2021 01:49 AM
    Hi Diaz.

    It is the suggested requirement to always have same number of licenses for APs and for features. So equal number of CAP, PEF and RFP licenses. 

    Without this you are limited to a license with lowest count. You can't chose the AP that will consume the feature license. When exhausted AP will show L status as unlicensed in show ap database.
     
    Best, Gorazd

    ------------------------------
    Gorazd Kikelj
    ------------------------------