Pagina 1 di 1
Cisco 877w ed Ipaq rw6515 con WM5
Inviato: lun 10 nov , 2008 4:12 pm
da masterx81
Ciao a tutti...
In questi giorni stavo provando a far colelgare un ipaq rw6815 ad un 877w, configurato con wpa psk/tkip... Non c'e' stato verso!
Il palmare invece si attacca felicemente allo zyxel della mia ditta cove c'e' wpa psk/tkip...
Pc ed altre periferiche si collegano felicemente al cisco.
La config della dot11 è questa:
Codice: Seleziona tutto
dot11 syslog
!
dot11 ssid CISCOROUTER
max-associations 5
authentication open
authentication key-management wpa
guest-mode
infrastructure-ssid optional
wpa-psk ascii 7 blablabla
!
interface Dot11Radio0
no ip address
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingress
!
encryption mode ciphers tkip
!
ssid CISCOROUTER
!
speed basic-1.0 2.0 5.5 6.0 9.0 11.0 12.0 18.0 24.0 36.0 48.0 54.0
station-role root
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 spanning-disabled
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
!
Comunque la config completa è qua:
http://www.ciscoforums.it/viewtopic.php?t=9378&start=15
Che comandi di debug posso dare per vedere come mai non fa l'aggancio?
Non sono molto pratico del Wireless dei Cisco...
Grazie mille!
Inviato: lun 02 mar , 2009 5:02 pm
da Galerio
Ho il tuo stesso palmare, il tuo stesso router e il tuo stesso problema
Ogni volta che tento di far collegare il palmare sul router ricevo questo errore:
Codice: Seleziona tutto
*Mar 1 09:19:29.790: %DOT11-7-AUTH_FAILED: Station 0016.fe7b.4370 Authentication failed
Hai per caso risolto?
Ti mostro la mia config:
Codice: Seleziona tutto
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname Router
!
boot-start-marker
boot system flash c870-advipservicesk9-mz.124-15.T6.bin
boot-end-marker
!
no logging buffered
!
no aaa new-model
clock timezone PCTime 1
clock summer-time PCTime date Mar 30 2003 2:00 Oct 26 2003 3:00
!
crypto pki trustpoint TP-self-signed-3617823969
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-3617823969
revocation-check none
rsakeypair TP-self-signed-3617823969
!
!
crypto pki certificate chain TP-self-signed-3617823969
!
dot11 syslog
!
dot11 ssid WifiReti
vlan 1
authentication open
authentication key-management wpa
guest-mode
wpa-psk ascii 0 lamiapassword
!
ip cef
!
!
no ip dhcp use vrf connected
ip dhcp excluded-address 192.168.1.1 192.168.1.12
!
ip dhcp pool sdm-pool1
network 192.168.1.0 255.255.255.0
default-router 192.168.1.1
!
ip dhcp pool STATIC-1
host 192.168.1.2 255.255.255.0
client-identifier 0100.12dc.5c47.6b
client-name AladinoVoip
!
ip dhcp pool STATIC-2
host 192.168.1.3 255.255.255.0
client-identifier 0100.0129.d1a5.83
client-name Armor
!
ip dhcp pool STATIC-3
host 192.168.1.4 255.255.255.0
client-identifier 0100.14bf.62ca.d9
client-name NSLU2
!
ip dhcp pool STATIC-4
host 192.168.1.5 255.255.255.0
client-identifier 0100.1731.c2ee.97
client-name Amelia
!
ip dhcp pool STATIC-5
host 192.168.1.6 255.255.255.0
client-identifier 0108.1073.0dcd.b0
client-name Vale
!
ip dhcp pool STATIC-6
host 192.168.1.7 255.255.255.0
client-identifier 0100.2100.6593.7f
client-name Maggi
!
ip dhcp pool STATIC-7
host 192.168.1.8 255.255.255.0
client-identifier 0100.16fe.7b43.70
client-name HP-rw6815
!
ip dhcp pool STATIC-8
host 192.168.1.9 255.255.255.0
client-identifier 0100.1d0f.b59d.5f
client-name Crema-wifi
!
ip dhcp pool STATIC-9
host 192.168.1.11 255.255.255.0
client-identifier 0100.0c6e.a800.62
client-name Crema-eth
!
!
ip name-server 195.186.1.111
ip name-server 195.186.4.111
ip auth-proxy max-nodata-conns 3
ip admission max-nodata-conns 3
ip ddns update method sdm_ddns1
HTTP
add http://zzz:[email protected]/nic/update?system=dyndns&hostname=<h>&myip=<a>
remove http://zzz:[email protected]/nic/update?system=dyndns&hostname=<h>&myip=<a>
!
!
multilink bundle-name authenticated
!
!
username mionome privilege 15 password 0 altrapassword
!
!
archive
log config
hidekeys
!
!
!
bridge irb
!
!
interface ATM0
no ip address
no atm ilmi-keepalive
dsl operating-mode adsl2+
!
interface ATM0.1 point-to-point
description $ES_WAN$
pvc 8/35
encapsulation aal5mux ppp dialer
dialer pool-member 1
!
!
interface FastEthernet0
!
interface FastEthernet1
!
interface FastEthernet2
!
interface FastEthernet3
!
interface Dot11Radio0
no ip address
!
encryption vlan 1 mode ciphers tkip
!
ssid WifiReti
!
speed basic-1.0 2.0 5.5 6.0 9.0 11.0 12.0 18.0 24.0 36.0 48.0 54.0
station-role root
world-mode dot11d country IT both
!
interface Dot11Radio0.1
encapsulation dot1Q 1 native
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 spanning-disabled
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
!
interface Vlan1
no ip address
bridge-group 1
!
interface Dialer0
ip ddns update hostname Router.mionome
ip ddns update sdm_ddns1
ip address negotiated
ip nat outside
ip virtual-reassembly
encapsulation ppp
dialer pool 1
dialer-group 1
ppp authentication pap callin
ppp pap sent-username [email protected] password 0 tiscali
!
interface BVI1
ip address 192.168.1.1 255.255.255.0
ip nat inside
ip virtual-reassembly
!
ip forward-protocol nd
!
!
ip http server
ip http authentication local
ip http secure-server
ip nat inside source list 1 interface Dialer0 overload
ip nat inside source static udp 192.168.1.2 5060 interface Dialer0 5060
ip nat inside source static tcp 192.168.1.2 5060 interface Dialer0 5060
ip nat inside source static udp 192.168.1.3 9 interface Dialer0 9
ip nat inside source static tcp 192.168.1.3 4711 interface Dialer0 4711
ip nat inside source static tcp 192.168.1.3 7395 interface Dialer0 7395
ip nat inside source static udp 192.168.1.3 8457 interface Dialer0 8457
ip nat inside source static udp 192.168.1.3 35238 interface Dialer0 35238
ip nat inside source static tcp 192.168.1.3 35238 interface Dialer0 35238
ip nat inside source static tcp 192.168.1.3 81 interface Dialer0 81
ip nat inside source static tcp 192.168.1.3 5900 interface Dialer0 5900
ip nat inside source static tcp 192.168.1.3 5800 interface Dialer0 5800
ip nat inside source static tcp 192.168.1.3 36433 interface Dialer0 36433
ip nat inside source static tcp 192.168.1.3 6348 interface Dialer0 6348
ip nat inside source static udp 192.168.1.3 6348 interface Dialer0 6348
ip nat inside source static tcp 192.168.1.3 6346 interface Dialer0 6346
ip nat inside source static udp 192.168.1.3 6346 interface Dialer0 6346
ip nat inside source static tcp 192.168.1.3 15698 interface Dialer0 15698
ip nat inside source static udp 192.168.1.3 15698 interface Dialer0 15698
ip nat inside source static tcp 192.168.1.3 6347 interface Dialer0 6347
ip nat inside source static udp 192.168.1.3 6347 interface Dialer0 6347
ip nat inside source static tcp 192.168.1.4 5662 interface Dialer0 5662
ip nat inside source static tcp 192.168.1.4 4712 interface Dialer0 4712
ip nat inside source static udp 192.168.1.4 5672 interface Dialer0 5672
ip nat inside source static udp 192.168.1.4 4665 interface Dialer0 4665
!
access-list 1 remark SDM_ACL Category=2
access-list 1 permit 192.168.1.0 0.0.0.255
dialer-list 1 protocol ip permit
!
!
!
!
control-plane
!
bridge 1 protocol ieee
bridge 1 route ip
!
line con 0
no modem enable
line aux 0
line vty 0 4
privilege level 15
login local
transport input telnet ssh
!
scheduler max-task-time 5000
end
[/code]
Inviato: mar 03 mar , 2009 12:20 pm
da Wizard
Mi sa che ci sia un baco sulla ios e occorre fare un downgrade (ci sono altri topic al riguardo)
Inviato: mar 03 mar , 2009 12:26 pm
da Galerio

ora ho la versione 12.4.15t6 e non si collega (ma solo lui, tutte le altre periferiche wifi sì). Prima avevo la 12.4.11 e neppure con quella si collegava. Proverò con versioni successive... aspettando notizie anche da masterx81
RISOLTO
Inviato: mer 18 mar , 2009 12:40 am
da Galerio
PROBLEMA RISOLTO!!!!
A volte i palmari son troppo lenti per il WPA HANDSHAKE quindi basta alzare il valore da 100msec a 2000msec con questo comando:
e magicamente anche il palmare si connette ora!!
Infatti nei log avevo notato che altre periferiche a volte facevano fatica ad autenticarsi, e avevo già ipotizzato un problema di timeout, ma ovviamente non conoscevo tale comando e la possibilità di modificare tale opzione.
Ah, che bello! Questo Cisco non mi sta deludendo in alcun modo! Se c'è un problema, si trova sempre una soluzione!
Inviato: mer 18 mar , 2009 1:03 am
da ep
Grazie Galerio, questo può essere utilissimo (su tutte le piattaforme!)
Ciao!