Cloud Managed Networks

 View Only
Expand all | Collapse all

Aruba Central - Add IAP-215, no WiFi, radio lights on AP off

This thread has been viewed 12 times
  • 1.  Aruba Central - Add IAP-215, no WiFi, radio lights on AP off

    Posted Dec 15, 2021 09:15 AM
    Hi. I added an IAP-215 to My central account. I have 75 other access point mostly IAP-305s.

    The AP is Foundation licensed. It is in a group with two SSIDs configured.

    But both radio lights are off.

    Firmware is 8.6.0.14

    log and config is below.

    THANKS


    ==========================================================

    b4:5d:50:c2:61:74# sh log system

    Dec 14 21:33:12 nanny[4569]: <303079> <ERRS> |AP b4:5d:50:c2:61:74@192.168.100.136 nanny| Restarted process /aruba/bin/aruba_ntpdate, new pid 5197
    Dec 14 21:33:16 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Swarm State Change from Image-ok to DRT-ok.
    Dec 14 21:33:26 cli[4656]: <341194> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Loading configuration, func swarm_timer_handler, line 16016.
    Dec 14 21:33:26 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-configure terminal.
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| DRT: cli sends sapd regulatory table version US-1.0_81806
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| cli send wcd cninfo
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| DRT: cli sends wcd regulatory table version US-1.0_81806
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8571 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8393 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8571 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8393 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8571 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8393 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8571 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8393 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8571 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8393 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8571 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8393 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8571 communication code 1
    Dec 14 21:33:42 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8393 communication code 1
    Dec 14 21:33:46 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| wl_vlan: guest, wl_allowed_vlans: 0
    Dec 14 21:33:46 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8359 communication code 1
    Dec 14 21:33:46 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| no clarity_dnsdhcp process found
    Dec 14 21:33:46 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| clarity_dnsdhcp launch success
    Dec 14 21:33:46 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| CLI to PAPI port 8359 communication code 1
    Dec 14 21:33:46 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Do CLI wlan factory
    Dec 14 21:33:47 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| default_wired_port_profileignore apply normal port profile to usb port
    Dec 14 21:33:47 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Swarm State Change from Image-ok to Complete
    Dec 14 21:33:47 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| DRT: swarm have no country code, skip to send wcd updated regulatory table

    Dec 14 21:33:48 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| is_factory_reset_on_running : Swarm quit factory default status by : ssid_config
    Dec 14 21:33:48 cli[4656]: <341326> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| autojoin: get central config flag from flash, flag is TRUE.
    Dec 14 21:33:59 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Aruba Central Mgmt
    Dec 14 21:34:39 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| athena_redirect launch websocket connecting...
    Dec 14 21:34:43 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| wsc_command_execute: 10667: topic='config.audit', payload len=65
    Dec 14 21:34:43 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| wsc_config_audit: 9793: size=4069
    Dec 14 21:34:50 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| wsc_command_execute: 10667: topic='config.delta', payload len=259
    Dec 14 21:34:50 cli[4656]: <341251> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| VC record new delta configuration entry. cfg_id 1 current 1 top 0 len 15 port 15200 flags 1 seq 0
    Dec 14 21:34:50 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| wsc_delta_config
    Dec 14 21:34:50 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-configure terminal.
    Dec 14 21:34:50 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-arm.
    Dec 14 21:34:50 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-band-steering-mode prefer-5ghz.
    Dec 14 21:34:50 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-client-match calc-interval 3.
    Dec 14 21:34:50 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-client-match nb-matching 60.
    Dec 14 21:34:50 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-client-match calc-threshold 5.
    Dec 14 21:34:50 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-client-match max-request 5.
    Dec 14 21:34:50 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-client-match max-adoption 5.
    Dec 14 21:34:50 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-exit.
    Dec 14 21:34:50 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-end.
    Dec 14 21:34:50 cli[4656]: <341072> <ERRS> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| AP could not find post auth role __wired__eth1.
    Dec 14 21:34:51 cli[4656]: <341254> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| VC add delta configuration id 2 to msg CLI_EXECUTE_CONFIG_COMMAND.
    Dec 14 21:34:51 cli[4656]: <341251> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| VC record new delta configuration entry. cfg_id 2 current 2 top 0 len 200 port 15200 flags 1 seq 0
    Dec 14 21:34:51 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| config got from central, set flag to flash.
    Dec 14 21:34:51 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| wsc_config_audit: 9793: size=4069
    Dec 14 21:34:51 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Set Auto backup and restore flag on flash
    Dec 14 21:34:52 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Clear awc_available flag
    Dec 14 21:35:13 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Sending out drt-check request to Activate
    Dec 14 21:35:14 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Activate response for 'drt-check': new_drt='1.0_82293' payload='1.0_82293 http://d2vxf1j0rhr3p0.cloudfront.net/drtfiles/reg-data-1.0_82293.dat^M '

    hr3p0.cloudfront.net/drtfiles/reg-data-1.0_82293.dat
    Dec 14 21:37:59 syslog: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| is_factory_reset_on_running : Swarm quit factory default status by : ssid_config
    Dec 14 21:38:00 cli[7441]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| is_factory_reset_on_running : Swarm quit factory default status by : ssid_config
    Dec 14 21:39:34 cli[7441]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-ping 8.8.8.8.
    Dec 14 21:39:52 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Management server connected success, sync primary to backup
    Dec 14 21:39:52 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Sending config sync success event to central
    Dec 14 21:39:56 cli[4656]: <341251> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| VC record new delta configuration entry. cfg_id 3 current 3 top 0 len 20 port 15200 flags 1 seq 0
    Dec 14 21:52:17 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| wsc_command_execute: 10667: topic='cmd.action', payload len=167
    Dec 14 21:52:17 cli[4656]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| apply_swarm_action_cmd: 4134: apply a reverse ssh connection.
    Dec 14 21:52:17 cli[4656]: <341101> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| Execute command-ssh rcs-ng-central-prod2.central.arubanetworks.com user iap-1639515040 ssh-port 443 reverse-ssh-port 33139 reverse-https-port 9999 password ************.
    Dec 14 21:52:18 syslog: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| is_factory_reset_on_running : Swarm quit factory default status by : ssid_config
    Dec 14 21:52:19 cli[11607]: <341004> <WARN> |AP b4:5d:50:c2:61:74@192.168.100.136 cli| is_factory_reset_on_running : Swarm quit factory default status by : ssid_config
    b4:5d:50:c2:61:74#

    ======================================================================================


    version 8.6.0.0-8.6.0
    virtual-controller-country US
    virtual-controller-key 5881f29601acc998860aa67d33df34ae5fab6cd802532594ea
    name SetMeUp-C2:61:74
    terminal-access
    clock timezone none 00 00
    rf-band all

    allow-new-aps

    allowed-ap b4:5d:50:c2:61:74



    arm
    wide-bands 5ghz
    80mhz-support
    min-tx-power 9
    max-tx-power 127
    band-steering-mode prefer-5ghz
    air-time-fairness-mode default-access
    channel-quality-aware-arm-disable
    client-aware
    scanning

    rf dot11g-radio-profile
    max-distance 0
    max-tx-power 9
    min-tx-power 6
    disable-arm-wids-functions off
    free-channel-index 40

    rf dot11a-radio-profile
    max-distance 0
    max-tx-power 18
    min-tx-power 12
    disable-arm-wids-functions off


    syslog-level warn ap-debug
    syslog-level warn network
    syslog-level warn security
    syslog-level warn system
    syslog-level warn user
    syslog-level warn user-debug
    syslog-level warn wireless



    extended-ssid
    web-server
    ssl-protocol tlsv1_2













    hash-mgmt-password
    hash-mgmt-user admin password hash *************************************



    wlan access-rule Test
    utf8
    index 0
    rule any any match any any any permit

    wlan access-rule default_wired_port_profile
    index 1
    rule any any match any any any permit

    wlan access-rule wired-SetMeUp
    index 2
    rule masterip 0.0.0.0 match tcp 80 80 permit
    rule masterip 0.0.0.0 match tcp 4343 4343 permit
    rule any any match udp 67 68 permit
    rule any any match udp 53 53 permit

    wlan access-rule SHBI
    utf8
    index 3
    rule any any match any any any permit

    wlan ssid-profile Test
    enable
    index 0
    type employee
    essid Test
    utf8
    wpa-passphrase f931b9b0a2ab2a291f1253bb8e5a9569ba9e22958c86a213
    opmode wpa3-sae-aes
    max-authentication-failures 0
    auth-server InternalServer
    rf-band all
    captive-portal disable
    dtim-period 1
    broadcast-filter arp
    blacklist
    dmo-channel-utilization-threshold 90
    local-probe-req-thresh 0
    max-clients-threshold 64

    wlan ssid-profile SHBI
    enable
    index 1
    type employee
    essid SHBI
    utf8
    wpa-passphrase fdb1e0983543695cd1bbd03a7d4c6dfa1e677995404cdbac
    opmode wpa3-sae-aes
    max-authentication-failures 0
    auth-server InternalServer
    rf-band all
    captive-portal disable
    dtim-period 1
    broadcast-filter arp
    dmo-channel-utilization-threshold 90
    local-probe-req-thresh 0
    max-clients-threshold 64

    auth-survivability cache-time-out 24



    wlan captive-portal
    background-color 16777215
    banner-color 15329769
    decoded-texts banner/terms/policy
    banner-text "Welcome to Guest Network"
    terms-of-use "This network is not secure and use it at your own risk."
    use-policy "Please read and accept terms and conditions and then login."

    wlan external-captive-portal
    server localhost
    port 80
    url "/"
    auth-text "Authenticated"
    auto-whitelist-disable
    https


    blacklist-time 3600
    auth-failure-blacklist-time 3600


    ids
    wireless-containment none


    wired-port-profile wired-SetMeUp
    switchport-mode access
    allowed-vlan all
    native-vlan guest
    no shutdown
    access-rule-name wired-SetMeUp
    speed auto
    duplex auto
    no poe
    type guest
    captive-portal disable
    no dot1x

    wired-port-profile default_wired_port_profile
    switchport-mode trunk
    allowed-vlan all
    native-vlan 1
    no shutdown
    access-rule-name default_wired_port_profile
    speed auto
    duplex full
    no poe
    type employee
    captive-portal disable
    no dot1x


    enet0-port-profile default_wired_port_profile

    uplink
    preemption
    enforce none
    failover-internet-pkt-lost-cnt 10
    failover-internet-pkt-send-freq 30
    failover-vpn-timeout 180



    airgroup
    disable

    airgroupservice airplay
    disable
    description AirPlay

    airgroupservice airprint
    disable
    description AirPrint





    clarity
    inline-sta-stats
    inline-auth-stats
    inline-dhcp-stats
    inline-dns-stats

    cluster-security
    allow-low-assurance-devices

    ------------------------------
    Ashley Gibbon
    ------------------------------


  • 2.  RE: Aruba Central - Add IAP-215, no WiFi, radio lights on AP off

    Posted Dec 17, 2021 09:43 AM
    All APs (215 and 305s) run the same 8.6.0.14?
    Could it be that autojoin is disabled on the existing cluster? The config just show 1 ap in the allowed-aps, so it looks it's not joining the cluster.

    ------------------------------
    Herman Robers
    ------------------------
    If you have urgent issues, always contact your Aruba partner, distributor, or Aruba TAC Support. Check https://www.arubanetworks.com/support-services/contact-support/ for how to contact Aruba TAC. Any opinions expressed here are solely my own and not necessarily that of Hewlett Packard Enterprise or Aruba Networks.

    In case your problem is solved, please invest the time to post a follow-up with the information on how you solved it. Others can benefit from that.
    ------------------------------