RE: [WIRELESS-LAN] Radios Shutdown After WLC Upgrade

2014-07-17 Thread Curtis K. Larsen
@LISTSERV.EDUCAUSE.EDU Subject: Re: [WIRELESS-LAN] Radios Shutdown After WLC Upgrade Curtis, Have you tried changing the power injector state to "override" for those 1142's? On Thu, Jul 17, 2014 at 3:26 PM, Curtis K. Larsen mailto:curtis.k.lar...@utah.edu>> wrote: Prime showed the rad

RE: [WIRELESS-LAN] Radios Shutdown After WLC Upgrade

2014-07-17 Thread Curtis K. Larsen
2s, 2602s and 3602s. Ran into the show stopping bug in 7.6.120.0, but special release has been solid. On Wed, Jul 16, 2014 at 10:42 PM, Watters, John mailto:john.watt...@ua.edu>> wrote: No. Only Cisco switches. Sent from my iPhone On Jul 16, 2014, at 5:53 PM, "Curtis K. Larsen&qu

RE: [WIRELESS-LAN] Radios Shutdown After WLC Upgrade

2014-07-16 Thread Curtis K. Larsen
Issues Constituent Group Listserv [mailto:WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU] On Behalf Of Curtis K. Larsen Sent: Wednesday, July 16, 2014 5:23 PM To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU Subject: [WIRELESS-LAN] Radios Shutdown After WLC Upgrade Hello, Wondering if anyone else running Cisco h

Radios Shutdown After WLC Upgrade

2014-07-16 Thread Curtis K. Larsen
Hello, Wondering if anyone else running Cisco has run into this: After upgrading controllers from 7.4.121.0 to 7.6.120.6 about 3% (~100) of our AP's joined the WLC but both radios are shut down. If you try to re-enable the radios via the WLC or directly SSH'ed to the AP they auto-disable again

Cloud Path Enrollment System

2014-07-08 Thread Curtis K. Larsen
Hello, I am currently running a demo of the Cloud Path Enrollment System and I have to say that I am amazed at the capabilities they have packed into this tool. I really like the workflow for onboarding almost anything/anyone, and I like the focus on moving to EAP-TLS which I think is inevitab

RE: apple tv wired/wireless

2014-06-16 Thread Curtis K. Larsen
Looks similar to the Ruckus Dynamic PSK: http://theruckusroom.typepad.com/files/dynamic-psk-fs.pdf I wonder if/when we will see something similar from Cisco. Curtis Larsen University of Utah Wireless Network Engineer From: The EDUCAUSE Wireless Issues Constitu

RE: [WIRELESS-LAN] Testing RADIUS Performance

2014-06-12 Thread Curtis K. Larsen
We did load testing on our RADIUS servers for the same reason about three years ago. We used Spirent/Avalanche to generate RADIUS traffic with randomized MAC addresses. It gives nice graphs that show the number of authentications per second that a server can take, etc. It was quite helpful.

RE: Wifi Phone on Separate SSID`

2014-05-08 Thread Curtis K. Larsen
Cisco also suggests limiting the number of SSID's. The Vocera troubleshooting guide mentions that if you have five you should remove one to improve things. This is always the dilemna ...when to add a new one and when to lump things onto an existing one. Curtis Larsen University of Utah Wirel

Educause list

2014-03-13 Thread Curtis K. Larsen
** Participation and subscription information for this EDUCAUSE Constituent Group discussion list can be found at http://www.educause.edu/groups/.

RE: [WIRELESS-LAN] How do "you" deal with rogues.

2014-03-06 Thread Curtis K. Larsen
The form broke about half-way through for me. -Curtis From: The EDUCAUSE Wireless Issues Constituent Group Listserv [WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU] on behalf of Mike Albano [mike.alb...@unlv.edu] Sent: Thursday, March 06, 2014 4:35 PM To: WIRELESS-LAN@LISTS

RE: [WIRELESS-LAN] How do "you" deal with rogues.

2014-03-06 Thread Curtis K. Larsen
T From: The EDUCAUSE Wireless Issues Constituent Group Listserv [WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU] on behalf of Mike Albano [mike.alb...@unlv.edu] Sent: Thursday, March 06, 2014 4:35 PM To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU Subject: [WIRELESS-LAN] How do "you"

RE: RLDP Feature?

2014-03-05 Thread Curtis K. Larsen
- From: The EDUCAUSE Wireless Issues Constituent Group Listserv [mailto:WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU] On Behalf Of Curtis K. Larsen Sent: Wednesday, March 05, 2014 3:18 PM To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU Subject: [WIRELESS-LAN] RLDP Feature? For those running Cisco I am wonderin

RLDP Feature?

2014-03-05 Thread Curtis K. Larsen
For those running Cisco I am wondering how many of you have the RLDP feature enabled on your controllers, and if you support real-time voice applications like Vocera - have you noticed any affect to their performance, and connectivity? I am looking at enabling the feature with alerting only -no

Https Re-directs With Web-Auth

2014-02-14 Thread Curtis K. Larsen
Hello, I have a Cisco WiSM2 with a WLAN configured to use MAC-Auth, and RADIUS-NAC with a Pre-Auth ACL that only allows clients to re-direct to an external captive portal server. I am seeing that regular http requests get re-directed fine, but https requests never get sent from the controller

PCI Over Wireless

2013-12-30 Thread Curtis K. Larsen
Hello, I am interested to know if anyone is operating a PCI-compliant wireless network. If so, I am interested to know how your architecture provides for the complete isolation {using stateful firewalls and separate SSID's} of PCI data vs. non-PCI data without bringing into scope your entire w

RE: [WIRELESS-LAN] Windows 8 and Broadcom wireless cards

2013-12-04 Thread Curtis K. Larsen
won't work 8.1 6.30.223.102 won't work Old 5.100.245.200 works Thanks John From: The EDUCAUSE Wireless Issues Constituent Group Listserv [mailto:WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU] On Behalf Of Curtis K. Larsen Sent:

RE: [WIRELESS-LAN] Windows 8 and Broadcom wireless cards

2013-12-04 Thread Curtis K. Larsen
I have seen three cases of this. We are running Cisco WiSM2's and 1142/3500/3600 series AP's. All three laptops were working fine on Win7, and then after upgrading to Win 8.1 they can no longer get an IP address on either our open SSID or our .1x SSID. On a debug, I show that our DHCP server

RE: [WIRELESS-LAN] ISE as RADIUS server with eduroam

2013-12-02 Thread Curtis K. Larsen
lippe Hanset www.eduroam.us<http://www.eduroam.us> On Aug 14, 2013, at 12:44 PM, "Curtis K. Larsen (UIT-Network)" mailto:curtis.k.lar...@utah.edu>> wrote: The status of the "enhancement request" is "open". In talking with TAC it appears it might take s

RE: [WIRELESS-LAN] 802.1x vs web-portal

2013-11-20 Thread Curtis K. Larsen (UIT-Network)
I wonder if this might be closer to what you are looking for: http://theruckusroom.typepad.com/files/dynamic-psk-fs.pdf It definitely looks interesting. -Curtis Larsen From: The EDUCAUSE Wireless Issues Constituent Group Listserv [WIRELESS-LAN@LISTSERV.EDUCAUSE

RE: [WIRELESS-LAN] ISE as RADIUS server with eduroam

2013-08-14 Thread Curtis K. Larsen (UIT-Network)
ly as well) Hope it will work! Philippe Philippe Hanset www.eduroam.us<http://www.eduroam.us> On Aug 14, 2013, at 12:44 PM, "Curtis K. Larsen (UIT-Network)" mailto:curtis.k.lar...@utah.edu>> wrote: The status of the "enhancement request" is "open".

RE: [WIRELESS-LAN] ISE as RADIUS server with eduroam

2013-08-14 Thread Curtis K. Larsen (UIT-Network)
bject: Re: [WIRELESS-LAN] ISE as RADIUS server with eduroam Correct, the SSID that we were using LDAP with did not use MSCHAPv2. Did they happen to mention what version that bug was fixed in? We upgraded to 1.2 and it has been stable for us so far. On Wed, Aug 14, 2013 at 11:17 AM, Curtis K.

RE: [WIRELESS-LAN] ISE as RADIUS server with eduroam

2013-08-14 Thread Curtis K. Larsen (UIT-Network)
, 2013 at 7:05 PM, Curtis K. Larsen (UIT-Network) mailto:curtis.k.lar...@utah.edu>> wrote: Hello, I am just wondering if anyone on the list that participates in eduroam uses ISE for RADIUS. We are playing with ISE, and finding difficulty getting it to strip off the realm suffix

ISE as RADIUS server with eduroam

2013-08-13 Thread Curtis K. Larsen (UIT-Network)
Hello, I am just wondering if anyone on the list that participates in eduroam uses ISE for RADIUS. We are playing with ISE, and finding difficulty getting it to strip off the realm suffix before authenticating against AD. I can't imagine there isn't a way to do this since I assume that would

Vocera vs. Microwave

2013-06-04 Thread Curtis K. Larsen (UIT-Network)
We had some voice degradation problems with Vocera in a clinical setting where there was a breakroom with an old microwave right next to areas where Vocera was used heavily. We duplicated the problem by turning the microwave on. I suggested maybe buying a new microwave that would hopefully not

Survey For WiFi and Cellular in One Pass?

2013-03-15 Thread Curtis K. Larsen
Hello, Just curious if anyone has come across software that will let you do site surveys for WiFi and Cellular in one Pass. We're going to go thru 340 buildings and would like to do 340 surveys not 680. Let me know. Thanks, Curtis Larsen University of Utah Wireless Network Engineer

Re: [WIRELESS-LAN] Hidden SSIDs on Grand Scale, in Prod?

2013-02-07 Thread Curtis K. Larsen
...Focusing more on the "Grand scale" part than the "hidden" part. >From Cisco's High Density Wireless LAN Design Guide: http://goo.gl/8XdzY The number of SSIDs should be kept to a minimum to avoid a negative performance impact because of excessive management traffic. Each SSID requires a sepa

Re: [WIRELESS-LAN] Wireless Mirroring

2012-10-30 Thread Curtis K. Larsen
I have used Air-Parrot on Win7, but what app do you use on Android to mirror your screen? I have seen apps that let you stream audio, or video, but haven't found anything that lets me mirror my android screen. Let me know. -Curtis On 10/29/2012 01:07 PM, Joel Coehoorn wrote: Oops... shoul

Re: Where To Put Multicast ACL

2012-10-26 Thread Curtis K. Larsen
Nevermind. I think I just figured out my own problem. WLC2 *did* have the same client vlan added to the port-channel. It just didn't have the vlan interface on the controller. I think that was my problem. Thanks, Curtis On 10/26/2012 05:16 PM, Curtis K. Larsen wrote: We have

Where To Put Multicast ACL

2012-10-26 Thread Curtis K. Larsen
We have Cisco WiSM1's and WiSM2's deployed in a very centralized manner. While they are in physically separate datacenters, they connect to a single distribution block. All WLC Mgmt interfaces are in the same VLAN. Years ago, when we first turned up the multicast on wireless (mainly to suppo

Re: [WIRELESS-LAN] Xpressconnect and Windows 8

2012-10-24 Thread Curtis K. Larsen
According to the bug notes here: http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&bugId=CSCua29504 ...It says it is fixed in 7.0.230.15. Thanks, -Curtis On 10/24/2012 01:31 PM, Danny Eaton wrote: Any idea how this would be negated with controllers runn

Re: [WIRELESS-LAN] Apple TV Enterprise Support

2012-09-25 Thread Curtis K. Larsen
I just tried the steps below on our .1x WPA2-Enterprise SSID. After updating the software I was indeed able to load a configuration profile, but the Apple TV fails to authenticate and gives the following error: "Check your settings and try again (-369033213)" I have done a debug on the Cisco

Alternative to EyeFi Cards?

2012-09-12 Thread Curtis K. Larsen
Hello, I am wondering if anyone has come across a solution similar to EyeFi Cards for cameras, (http://www.eye.fi/) but with WPA2-Enterprise support. We have doctors in clinics that want to use these as a form of documentation for patient records (dermatology stuff). I am trying to avoid ad

Cisco IPSEC VPN Client for Android

2012-07-12 Thread Curtis K. Larsen
Curious to know what others are doing for Cisco VPN Access from their Android Devices: As far as I know VPNC Widget will work if the device is rooted. I am trying to get "Samsung Anyconnect" working, it appears to successfully authenticate but then disconnects me - I think this might be a lic

RE: Apple Petition- Mid-Week Sanity Check

2012-07-11 Thread Curtis K. Larsen (UIT-Network)
What is the scope of the petition? What is the goal? Is it only to improve the Airplay feature in the enterprise? If so, the petition looks fine to me. If the goal is to encourage Apple to incorporate enterprise support in *all* of their products, then we should include more lacking enterpri

Re: [WIRELESS-LAN] Apple Petition (Was Re: [WIRELESS-LAN] You knew it was coming...Airplay/Apple TV support for instructors.)

2012-07-05 Thread Curtis K. Larsen
You should add fast-roaming to the list. No Mac or iOS device supports fast roaming with Opportunistic Key Caching. They can do PMK "Sticky", but it is not the same as OKC. With Sticky, it is only "fast" when you roam back to an AP you've been on, and the client can only cache up to 8 AP's.

Re: [WIRELESS-LAN] dynamic vlans with cisco flexconnect local switching?

2012-06-21 Thread Curtis K. Larsen
I tested this about a year ago. I don't believe you can do it. AAA Override is currently not supported with H-REAP. I think Cisco may be adding it in newer code versions, but I do not think the feature currently exists. I tried with FreeRADIUS, WISM1, and 1140 series AP in HREAP mode. I b

RE: WISM2

2012-05-01 Thread Curtis K. Larsen (UIT-Network)
Jeff, We discovered this one after a few days on WISM2's: CSCtx69189 -- WISM2 multicast IGMP proxy delay under load It will only affect real-time multicast type stuff. So for us it's a 9 second delay on vocera push-to-talk. It does not happen on WISM1. It might be less likely to occur on 5

<    1   2