Hi Christian,
just guessing here, but you have configured the SSID to only broadcast on AP's in the "default-zone". In the config, I cannot find any zone configured on the AP's. Is this by intend or mistake?
BR
Florian
------------------------------
-------------------------------------------------------------------------------
Florian Baaske
-------------------------------------------------------------------------------
Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.
-------------------------------------------------------------------------------
Also visit the AirHeads Youtube Channel:
https://www.youtube.com/channel/UCFJCnuXFGfEbwEzfcgU_ERQ-------------------------------------------------------------------------------
Feel free to visit my personal Blog
https://www.flomain.de------------------------------
Original Message:
Sent: Apr 15, 2021 02:41 AM
From: Christian Felsing
Subject: AP-515: Wifi network remains in state "active = no" and is not available on air
Hello,
I am new to Aruba AP technology and ran into problem that Wifi network remains in state "active = no". SSID is not available on air.
Update: Problem was caused by ArubaOS 8.6.0.6. Same AP-515 with ArubaOS 8.6.0.2 works perfectly.
Lessons learned: Do not press update button "Check for new Version"...
*:af:16# show version Aruba Operating System Software.ArubaOS (MODEL: 515), Version 8.6.0.6Website: http://www.arubanetworks.com(c) Copyright 2020 Hewlett Packard Enterprise Development LP.Compiled on 2020-09-15 at 15:22:00 UTC (build 77124) by p4buildFIPS Mode :disabledAP uptime is 2 hours 41 minutes 30 secondsReboot Time and Cause: AP rebooted Thu Apr 15 05:48:19 CEST 2021; System cmd at uptime 0D 0H 54M 5S: UI cmd at uptime 0D 0H 54M 5S: reload all*:af:16# show network Networks--------Profile Name ESSID Clients Type Band Authentication Method Key Management IP Assignment Status Zone Coding Active Max IPv4 Users------------ ----- ------- ---- ---- --------------------- -------------- ------------- ------ ---- ------ ------ --------------PIhole PIhole 0 employee all None WPA2-AES NAT Mode Enabled default-zone Default No N/A
Following config is used:
show tech-support and show tech-support supplemental are the two most useful outputs to collect for any kind of troubleshooting session.*:16# show runversion 8.6.0.0-8.6.0syslocation ***virtual-controller-country DEvirtual-controller-key ***name cfterminal-accessntp-server ***clock timezone Berlin 01 00clock summer-time CEST recurring last sunday march 02:00 last sunday october 03:00rf-band allallow-new-apsallowed-ap *:7callowed-ap *:16arm wide-bands 5ghz 80mhz-support min-tx-power 9 max-tx-power 127 band-steering-mode prefer-5ghz air-time-fairness-mode default-access channel-quality-aware-arm-disable client-aware scanningrf dot11g-radio-profile max-distance 0 max-tx-power 9 min-tx-power 6 disable-arm-wids-functions off free-channel-index 40rf dot11a-radio-profile max-distance 0 max-tx-power 18 min-tx-power 12 disable-arm-wids-functions offsyslog-level warn ap-debug syslog-level warn network syslog-level warn security syslog-level warn system syslog-level warn user syslog-level warn user-debug syslog-level warn wireless extended-ssidvlan-name VLAN3011vlan-name VLAN3012vlan VLAN3011 3011vlan VLAN3012 3012hash-mgmt-passwordhash-mgmt-user admin password hash ***wlan access-rule uplink index 0 rule any any match any any any permitwlan access-rule default_wired_port_profile index 1 rule any any match any any any permitwlan access-rule wired-SetMeUp index 2 rule masterip 0.0.0.0 match tcp 80 80 permit rule masterip 0.0.0.0 match tcp 4343 4343 permit rule any any match udp 67 68 permit rule any any match udp 53 53 permitwlan access-rule PIhole index 3 rule any any match any any any permitwlan ssid-profile PIhole enable index 0 zone default-zone type employee essid PIhole wpa-passphrase *** opmode wpa2-psk-aes max-authentication-failures 0 vlan guest rf-band all captive-portal disable dtim-period 1 broadcast-filter arp deny-inter-user-bridging dmo-channel-utilization-threshold 90 local-probe-req-thresh 0 max-clients-threshold 64auth-survivability cache-time-out 24wlan external-captive-portal server localhost port 80 url "/" auth-text "Authenticated" auto-whitelist-disable httpsblacklist-time 3600auth-failure-blacklist-time 3600ids wireless-containment nonewired-port-profile wired-SetMeUp switchport-mode access allowed-vlan all native-vlan guest no shutdown access-rule-name wired-SetMeUp speed auto duplex auto no poe type guest captive-portal disable no dot1xwired-port-profile default_wired_port_profile switchport-mode trunk allowed-vlan 3011,3012 native-vlan 1 shutdown access-rule-name default_wired_port_profile speed auto duplex full no poe type employee auth-server InternalServer captive-portal disable no dot1x set-vlan Aruba-Essid-Name equals PIhole 3011wired-port-profile uplink switchport-mode access allowed-vlan all native-vlan guest no shutdown access-rule-name uplink speed auto duplex auto no poe type employee auth-server InternalServer captive-portal disable no dot1xenet0-port-profile uplinkuplink preemption enforce none failover-internet-pkt-lost-cnt 10 failover-internet-pkt-send-freq 30 failover-vpn-timeout 180airgroup disableairgroupservice airplay disable description AirPlayairgroupservice airprint disable description AirPrintcluster-security allow-low-assurance-devices
Any hints?
best regards
Christian
------------------------------
Christian Felsing
------------------------------