hedwig5
Goto Top

APs können sich nicht am Cisco WLCM anmelden (SSL DTLS Problem)

Moin!

Meine APs können sich seit heute Morgen nicht mehr am Cisco WLCM anmelden. Gestern Abend lief noch alles problemfrei. (Nachts werden Server und Netzwerk ausgemacht). Anbei das Logfile. Was kann ich tun? Weiß langsam nicht mehr weiter...

*spamReceiveTask: May 05 11:56:09.983: %DTLS-3-HANDSHAKE_FAILURE: openssl_dtls.c:631 Failed to complete DTLS handshake with peer 192.168.1.8
*spamReceiveTask: May 05 11:56:06.499: %DTLS-3-HANDSHAKE_FAILURE: openssl_dtls.c:631 Failed to complete DTLS handshake with peer 192.168.1.9
*spamReceiveTask: May 05 11:56:01.109: %DTLS-3-HANDSHAKE_FAILURE: openssl_dtls.c:631 Failed to complete DTLS handshake with peer 192.168.1.11
*fp_main_task: May 05 11:55:49.970: %CNFGR-3-INV_COMP_ID: cnfgr.c:2221 Invalid Component Id : Unrecognized (76) in cfgConfiguratorInit.
*fp_main_task: May 05 11:55:49.915: %LOG-3-Q_IND: rrmCfg.c:1501 RRM LOG: Airewave Director: Configuration has been sanitized -- save configuration to commit
*fp_main_task: May 05 11:55:49.619: %RRM-3-RRM_LOGMSG: rrmCfg.c:1501 RRM LOG: Airewave Director: Configuration has been sanitized -- save configuration to commit
*fp_main_task: May 05 11:55:49.401: %MM-3-MEMBER_ADD_FAILED: mm_dir.c:926 Could not add Mobility Member. Reason: IP already assigned, Member-Count:1,MAC: 00:00:00:00:00:00, IP: 0.0.0.0
*fp_main_task: May 05 11:55:45.556: %CNFGR-3-INV_COMP_ID: cnfgr.c:2221 Invalid Component Id : Unrecognized (36) in cfgConfiguratorInit.
*mfpKeyRefreshTask: May 05 11:55:45.556: %SSHPM-3-NOT_INIT: bsnrandom.c:621 Random context not initialized

Wenn ich debuge sehe ich:
*spamReceiveTask: May 05 13:42:31.212: MAC SSL_do_handshake: SSL_ERROR_SSL while communicating with 192.168.1.9 : sslv3 alert bad certificate

Danke für Eure Hilfe im Vorraus!

Content-Key: 303744

Url: https://administrator.de/contentid/303744

Printed on: April 19, 2024 at 23:04 o'clock

Member: Hedwig5
Hedwig5 May 05, 2016 at 12:43:15 (UTC)
Goto Top
Member: aqui
aqui May 05, 2016 at 14:46:50 (UTC)
Goto Top
Beide zitierten URLs sind ohne Account nicht leserlich und somit sinnfrei face-sad
Lösung: LAP/WLC MIC or SSC lifetime expiration causes DTLS failure
Ein Bug in der WLCM Software.
Member: Hedwig5
Hedwig5 May 05, 2016 at 17:01:03 (UTC)
Goto Top