Loading...
Loading...
Came across this behavior on a TAC SR AP moving from 17.6.4 to 17.9.5. Either with backup partition already on 17.9.5 or with none (0.0.0.0). Sep 27 20:21:15 kernel: [*09/27/2024 20:21:15.4363] CAPWAP State: DTLS Setup Sep 27 20:21:15 kernel: [*09/27/2024 20:21:15.6698] dtls_verify_server_cert: Controller certificate verification successful Sep 27 20:21:15 kernel: [*09/27/2024 20:21:15.6701] 1956645872:error:14102438:lib(20):func(258):reason(1080):NA:0:SSL alert number 80------------------- Sep 27 20:21:15 kernel: [*09/27/2024 20:21:15.6702] dtls_process_packet: Error connecting TLS context ERR: 6 Sep 27 20:22:12 kernel: [*09/27/2024 20:22:12.4615] Sep 27 20:22:12 kernel: [*09/27/2024 20:22:12.4615] CAPWAP State: DTLS Teardown Sep 27 20:22:12 upgrade: Script called with args:[CANCEL] Sep 27 20:22:12 kernel: [*09/27/2024 20:22:12.5543] status 'upgrade.sh: Script called with args:[CANCEL]'
When moving an AP from 17.6.4 to 17.9.5, DTLS tunnel couldn't be established
AP Join, changing the primary base WLC
Workaround is to just toggle management-trustpoint; no need to reconfigure certificates. No wireless management trustpoint Wireless management trustpoint
We ran the command "capwap ap erase all" and we did the "Factory Reset" through the mode button. In both cases, the AP could not join to the WLC (Version 17.9.5.47). This happened after a WAN Outage, AP reached WLC through SD-WAN tunnels.
Click on a version to see all relevant bugs
Cisco Integration
Learn more about where this data comes from
BugZero Plan
Streamline upgrades with automated vendor bug scrubs
BugZero Prevent
Wish you caught this bug sooner? Get proactive today.