Got it

The new AP AirEngine 5760-51 cannot go to the normal state

Created: Feb 10, 2022 07:51:31Latest reply: Feb 10, 2022 10:54:36 199 5 0 0 0
  Rewarded HiCoins: 0 (problem resolved)

Hello,


We have four new AP AirEngine5760-51 in the remote office.

We have the switch S6730 as WLAN AC in the headquarter office.

And we have 11 AP AirEngine 5760-51  in the headquarter office - these APs was configured about four months ago and they are working ok.


Our new APs obtained ip-address of the AC sucsessfully from dhcp with the option 43 suboption 2 and CAPWAP is on.

But the states of all new APs never go to "normal" and change only "cfg", then "cfgfa" and then "fault" (AP rebooting) and turn again "cfg"-"cfgfa"-etc.


ap state


All APs - 11 in HQ and 4 in remote offise have the same firmware version V200R020C00SPC300

The switch S6730 has the version V200R020C10SPC500.


Please help me to troubleshoot and to resolve this problem.


Thank you.


Featured Answers

Recommended answer

fuzi_yao
Admin Created Feb 10, 2022 08:00:36

Hi, friend!

If the version matches and the IP address can be obtained, you are advised to check the following:

1. Run the display ap online-fail-record command to check the reason why the AP fails to go online,

2. Check whether the number of licenses is sufficient.

3. Check whether the AP SN or MAC address has been added to the AC trustlist. If yes, check whether the SN or MAC address is incorrect.

View more
  • x
  • convention:

solegs
solegs Created Feb 10, 2022 08:59:18 (0) (0)
Hi, fuzi_yao!

1. I'd checked this for the one AP (others have same reasons) - there are only two records:
2811-ecbf-f5a0 2022-02-10/11:40:51 The configuration fails to be delivered <--- this is failed configuration load...
2811-ecbf-f5a0 2022-02-10/11:38:44 CAPWAP tunnel negotiation fails <--- this is with start reboot AP

2) Number of licenses is still enough:
Used/Total resource : 15/16

3) Could You guide me how can I check AC trustlist, I can't find it,  
All Answers

Hi, friend!

If the version matches and the IP address can be obtained, you are advised to check the following:

1. Run the display ap online-fail-record command to check the reason why the AP fails to go online,

2. Check whether the number of licenses is sufficient.

3. Check whether the AP SN or MAC address has been added to the AC trustlist. If yes, check whether the SN or MAC address is incorrect.

View more
  • x
  • convention:

solegs
solegs Created Feb 10, 2022 08:59:18 (0) (0)
Hi, fuzi_yao!

1. I'd checked this for the one AP (others have same reasons) - there are only two records:
2811-ecbf-f5a0 2022-02-10/11:40:51 The configuration fails to be delivered <--- this is failed configuration load...
2811-ecbf-f5a0 2022-02-10/11:38:44 CAPWAP tunnel negotiation fails <--- this is with start reboot AP

2) Number of licenses is still enough:
Used/Total resource : 15/16

3) Could You guide me how can I check AC trustlist, I can't find it,  

Hi, friend!

If the configuration fails to be delivered, it will be delivered again. You can wait. If the CAPWAP fails to be set up, check whether the AP can communicate with the AC. Note that the address delivered by the AC to the AP cannot conflict with other address pools in the network environment. That is, the address pool must be unique.

In addition, you said that the trustlist will not be added. Perhaps you can use the following command to add the trustlist and check whether there is an error message.If SN authentication is used, add the SN. If MAC authentication is used, add the MAC address.If the MAC address of an AP that goes online is not in the trustlist and has not been added offline, the AP cannot go online automatically. You need to run the ap-confirm command to confirm the MAC address.


[HUAWEI] wlan 

[HUAWEI-wlan-view] ap whitelist sn 08PE56430071

or

[HUAWEI] wlan 

[HUAWEI-wlan-view] ap whitelist mac 00e0-fc07-8280


[HUAWEI] wlan 

[HUAWEI-wlan-view] ap-confirm all


View more
  • x
  • convention:

fuzi_yao, thank you!


I've got it - all sn and mac-addressess of new AP added into whitelist and "ap-confirm all" has done.

But the problem is not resolved...


Also these AP have RTU-status "Activating(Init)".  I've found in the Troubleshooting Roadmap - "Possible Cause: The MTU of the intermediate network between the AP and AC is incorrectly configured". It is look like true - MTU on the AC and on the AP are 1500, but packets passes only whith the maximum size is 1410 (with flag -dontfragment) between AC and AP...  May be it is the root of issue... I've tried to reduce MTU but the minimum size of the MTU in the AC's menu "AP System Profile" is 1500, no less...


View more
  • x
  • convention:

fuzi_yao
fuzi_yao Created Feb 11, 2022 00:46:21 (0) (0)
If the problem persists after the trustlist is added, collect AC diag logs for analysis. In addition, if the MTU value is 1500, you are not advised to change the value. Have you confirmed that the AP obtains the correct address?  

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.