Cloud Managed Networks

 View Only
Expand all | Collapse all

Anyone Noticing Weird Problems with Central Managed AP's?

This thread has been viewed 33 times
  • 1.  Anyone Noticing Weird Problems with Central Managed AP's?

    Posted Jul 25, 2023 02:21 AM

    Hi all,

    We've experienced some very weird things from Central in the past couple of days and I was wondering if anyone else has?

    We have 70-odd AP's (almost all 315's) that are managed through Central which has been great for the last 4 years we've had them but yesterday they seem to have almost all started misbehaving.  We're still investigating - with the help of HPE/Aruba - but it's a slow process because the behaviour is so odd.

    Currently, no AP's receive config updates.  They're still showing as online in Central and we've confirmed they can communicate from our network to Central.  You can change anything in Central and it's just not pushed to the AP's, not even something simple like blinking the locator LED.

    To make it more odd, if we power-cycle an AP they lose all config, can't reconnect to Central and are stuck with what looks like a default config.  Admittedly we've only seen that with 2 AP's out of the cluster but we're too afraid to test another one because we can't afford to have any more down.

    I was wondering if anyone else has seen anything like this?  We're starting to think it's down to a bug or something weird in Central rather than anything we've done, partly because we've eliminated almost every possibility on our end, and partly because we discovered another bug with Central about 2 weeks ago with AP configuration.

    Anyone else having problems like this?  Also - I'm open to thoughts on how to troubleshoot further.

    L8r.



  • 2.  RE: Anyone Noticing Weird Problems with Central Managed AP's?

    Posted Jul 25, 2023 02:37 AM

    were there any changes on the LAN side or your firewall lately?

    also what firmware are you running? is it AOS10?



    ------------------------------
    If my post was useful accept solution and/or give kudos.
    Any opinions expressed here are solely my own and not necessarily that of HPE or Aruba.
    ------------------------------



  • 3.  RE: Anyone Noticing Weird Problems with Central Managed AP's?

    Posted Jul 25, 2023 02:48 AM

    Hi,

    @ariyap - the firewall was one of the first places we looked (the other being recent changes to the AP group). There had been no changes in or around the timeframe of the problem beginning. We can see traffic going through the firewall so it seems okay (we also have made no recent changes on the AP group either).

    Firmware version is 8.6.0.9_79813 on all of them.

    Thanks.




  • 4.  RE: Anyone Noticing Weird Problems with Central Managed AP's?

    Posted Jul 25, 2023 08:43 PM

    Hi again all,

    Further to this - we have verified it's nothing to do with our firewall or network.  Here's what we did:

    • Connect one of the failed AP's to the ethernet port on a 4G hotspot (so it's not connected to our network at all, not behind our firewall or even using the same ISP).
    • Connect a console cable to the AP mentioned above.
    • Factory reset the AP mentioned above using the reset hole on the back.
    • Watch what happens.

    The console shows a reset is confirmed.  My understanding is that the AP should then contact Central and get a config, but it doesn't. It in fact goes into a reboot loop.

    Any thoughts?

    Thanks.




  • 5.  RE: Anyone Noticing Weird Problems with Central Managed AP's?

    Posted Jul 25, 2023 10:20 PM

    When an AP in factory-default mode powers on and connects to the Internet, it will automatically check into Aruba Activate using Websocket. 

    It is activate that will direct the AP to connect to Central by providing the correct URL.

    do you use activate service and do you have any rules in it?

    if not the "show ap debug cloud-server" could provide more clues.



    ------------------------------
    If my post was useful accept solution and/or give kudos.
    Any opinions expressed here are solely my own and not necessarily that of HPE or Aruba.
    ------------------------------



  • 6.  RE: Anyone Noticing Weird Problems with Central Managed AP's?

    Posted Jul 25, 2023 10:39 PM
    Hi,

    Thanks for that info.  I have 2 AP's that have failed.  I can't really do any troubleshooting on the factory-reset AP because as I said, it's in a reboot-loop so it's never up for long enough.

    I have another AP that has the original problem I described though, that is, if they're power-cycled they lose all config.  I can still SSH to that one and was able to run the show ap debug cloud-server, which returns this:

    IAP mgmt mode              :local-mgmt
    cloud config recved        :FALSE
    state diff                 :disable
    Device Cert status         :SUCCESS

    I'm unclear on what that means though.

    Thanks.

    __________________

    Hal Douglas 

    IT Manager & Project Specialist

    Marist Regional College

    Work: (03) 6432 7624

    Website: www.mrc.tas.edu.au

    fgh.jpg

    Notice: The information contained in this e-mail message and any attached files may be confidential information.If you are  not the intended recipient any use, disclosure or copying of this e-mail is unauthorised.  If you have received this e-mail in error, please notify the sender immediately by reply e-mail and delete all copies of this transmission together with any attachments.






  • 7.  RE: Anyone Noticing Weird Problems with Central Managed AP's?

    Posted Jul 26, 2023 12:00 AM

    ok this means that this AP is not managed by Aruba Central.

    IAP mgmt mode              :local-mgmt



    ------------------------------
    If my post was useful accept solution and/or give kudos.
    Any opinions expressed here are solely my own and not necessarily that of HPE or Aruba.
    ------------------------------



  • 8.  RE: Anyone Noticing Weird Problems with Central Managed AP's?

    Posted Jul 26, 2023 02:14 AM

    Did you check if subscriptions are still valid?

    Best, Gorazd



    ------------------------------
    Gorazd Kikelj
    MVP Expert 2023
    ------------------------------



  • 9.  RE: Anyone Noticing Weird Problems with Central Managed AP's?

    Posted Jul 26, 2023 04:01 AM

    Hi again all,

    I think we've worked out what was wrong - just not how it went wrong (hopefully Aruba support can shed some light there).

    The VC was in some sort of semi-offline state.  It was up and we could ping it or ssh/web to it but working with someone from Aruba, they showed me the papi-test command and it failed the test between a member AP and the VC AP.  Rebooting the VC fixed it.

    There are some pretty strange things out of this though. First is that the VC was able to fail like that in the first place, but also that the behaviour of the APs was pretty surprising. That is, if they were rebooted they come up with no running config (well a basic config with only a few lines).

    Then some also got stuck in a reboot-loop. At the moment they're still stuck, even if you power them on with no network - just power - they get stuck in the loop.  I'd say they were bricked except three times now we've seen them spontaneously recover for no obvious reason.

    I understand that this may not have occurred with AOS10, and we may look at that but we're also some versions behind with v8 so I guess there's a chance there's a fix for this in a more recent 8.x release too.

    In any case, if anyone's interested I'll report back what support find.

    Thanks for your input.

    L8r.




  • 10.  RE: Anyone Noticing Weird Problems with Central Managed AP's?

    Posted Jul 26, 2023 04:04 AM

    by any chance did you have "preferred master or conductor " configured?



    ------------------------------
    If my post was useful accept solution and/or give kudos.
    Any opinions expressed here are solely my own and not necessarily that of HPE or Aruba.
    ------------------------------



  • 11.  RE: Anyone Noticing Weird Problems with Central Managed AP's?

    Posted Jul 27, 2023 02:25 AM

    Hi again @ariyap@ariyap,

    I've checked the output of show tech-support from the VC taken at the time of the problem and looked for the iap-master and iap-conductor commands and neither appear, so no we haven't configured either of those.

    Thanks.