I have a 7030 Controller running 6.5.4.8. The controller is setup for supporting the RAP network. I setup the rap pool on the controller. I confirmed that port 4500 and 500 are allowed through firewall to the controller external IP. I removed both LMS and BK-LMS IPs from the controller. I read that LMS IPs cause issues for RAPs. And I added the RAP MAC Address to the whitelist.
When I execute the conversion process, after entering the controller external ip into the 'Hostname or ip address of the mobility controller' field, the RAP successfully establishes a tunnel to the controller and starts the conversion process. About 2 to 3 minutes later, an dialog box appears 'Retrieve image failed, please save the log in the popup window".
I am using the controller's external VRRP IP address for the conversion.
During the conversion process, I see that the RAP has formed a tunnel with the controller(show crypto isakmp sa) and is assigned a Private IP address from the rap-pool. Under the IPSEC SA V2 Active Session Information, the only flags present are UT2.
I factory-reset the RAP109 several times and tried manually upgrading the RAP to match the controller version. Still no go.
Here is the show log upgrade from the RAP
Executing '/aruba/bin/download_image_swarm ac-ftp://x.x.x.x/mips21.ari'
fetching ('/usr/sbin/wget -T 120 -t ftp://sap:x@x.x.x.x/mips32,ari')
Error: failed to retrieve image
cleaning up
done
The x.x.x.x is the master controller internal ip address.