Tags
As you already aware Cisco has released WLC 8.0 software which is a major upgrade in recent years. People were talking about this code version for a long period of time ( I remember even in CL-2012 some of them talking about this code) though it did not come out until late August 2014. As this Cisco mobility Blog (The Summer Blockbuster-WLC 8.0) describes it has lots of new features.
So what are those new features ? If you read WLC 8.0 release notes you will find most of them listed there. Here is some of the key highlights (not the full list)
1. Supported AP & Scale features
* Cisco Aironet 1040, 1130**, 1140, 1240**, 1250, 1260, 1600, 2600, 2700, 3500, 3500p, 3600, 3700, 602-OEAP, 702, 702W, AP801, and AP802 Series indoor access points
* Cisco Aironet 1520 (1522, 1524), 1530, 1550 (1552) Series outdoor access points
**1130 & 1240 models will not support new features added in 8.0.x software code. You have to see this compatibility matrix as well for Prime/MSE/etc.
* Vlan tagging for 702W AP
* DCA for RF profiles
* RX-SOP
* Optimized Roaming – Allow client disassociation based on configured RSSI
* 1700 series AP 😯 listed in the list, but I do not think support is there in 8.0.100.0 (may be in 8.0MR1)
* OEAP Enhancements – Basic Firewall, Split Tunneling, Voice QoS
* Faster FlexConnect Deployment – AP won’t reboot when you change AP mode from local to Flexconnnect.
2. Native IPv6 Support
* large feature list of IPv6 🙂
3. mDNS Enchancements
* Multicast mDNS policies
* Policy Enhancements – multiple mDNS profile & override them based on a policy.
4. AVC Enhancements
* NBAR2 protocol pack 11.0
* AVC AAA-Override
* AVC per application, per client rate limiting on a wlan
* AVC directional QoS – Packets can be mark based on direction.
5. Ease of Management Features
* You can change SSID & Profile Names without delete & recreate it
* “show ap summary” output show AP IP information
(5508-1) >show ap summary Number of APs.................................... 2 Global AP User Name.............................. Not Configured Global AP Dot1x User Name........................ Not Configured AP Name Slots AP Model Ethernet MAC Location Country IP Address Clients ------------------ ----- -------------------- ----------------- ---------------- ------- --------------- ------- 3502-1 2 AIR-CAP3502I-N-K9 cc:ef:48:72:0f:c3 Rasika-Testing AU x.x.13.10 0 1131-1 2 AIR-LAP1131AG-N-K9 c4:7d:4f:ac:e4:26 default location AU x.x.13.15 0
* “show system x ” new commands added to get useful information from WLC.
(5508-1) >show system ?
dmesg Displays dmesg logs
interfaces Displays information about the configured network interfaces
interrupts Displays the number of interrupts
iostat Displays CPU and input/output statistics for devices
ipv6 Displays system ipv6 information
meminfo Displays system memory information
neighbours Displays the IPv6 Neighbor Cache
netstat Display system network stats
process Displays process related information
route Displays system routing table
slabs Displays memory usage on slab level
slabtop Displays the slab usage
timers Display system timer info
top Displays the cpu usage
vmstat Displays system virtual memory statistics
* “show run-config startup-commands” to take the startup configuration for recovery.
* Flashing LED feature to locate an AP. Specially if AP already mounted with default name & later on if you want to find which AP is where, this is handy.
(5508-1) >config ap led-state flash ?
<seconds> The duration of LED flashing in seconds <1-3600>
indefinite Indefinite flashing of the LED
disable Stop flashing the LED
(5508-1) >config ap led-state flash 10 3502-1
* Alternate colour theme available for GUI. If you need to differentiate your production vs testing, it is good idea to change the colour theme for test WLC to red as shown below.
(5508-1) >config network webcolor ?
default Enables default web color theme.
red Enables red web color theme.
(5508-1) >config network webcolor red
6. Security/RADIUS enhancements
* HTTPS redirection for WebAuth login page
7. High Availability enhancements
* 802.11ac config in HA scenario
* Client SSO enhancements
8. Other Features
* 802.11v support – Help to battery operated Apple clients to improve battery life>
* 802.11r mixed mode support – Untill this code, if you enabel 802.11r fast secure roaming, only that feature supported clients (eg Apple iDevices) can join this SSID, all non-802.11r clients cannot join. But in 8.0 both types of clients able to join, but only 802.11r clients get fast roaming.
* Video Stream for FlexConnect-Local Switching
* Wired Guest Access in 2504
As you can see this list is so huge & unless you spend quality amount of time you won’t able to absorb all these improvement. Fortunately for most of us Cisco has organized webinar series to cover what’s new in this WLC 8.0 code. It is running on 4 days (30th Sept to 3rd Oct ) & same session will run twice a day (to suit across global audience).
These sessions are done by experts Jerome Henry and James Noxon . You should not miss this series if you are planning to move onto this code any time soon. Here are the details of the training sessions & please go ahead & register in advanced.
Day 1 (Tue, Sept 30) – AP features: CleanAir Express, Office Extend AP enhancements (firewall, split tunneling), 702W VLAN support, FlexConnect (VideoStream enhancement, faster time to deploy, proxy ARP, Flex on mesh), mesh fast convergence, Autonomous code (IOS 15.3.3) enhancements.
5:00-7:00 a.m. pst: https://cisco.webex.com/ciscosales/k2/j.php?MTID=t00476d68f32a5e7a1cc4aa0a6f7bab42
OR
4:00-6:00 p.m. pst: https://cisco.webex.com/ciscosales/k2/j.php?MTID=te8da931cdaf6cf34f62e333bf3c073d7
Day 2 (Wed, Oct 1) – MSE/CMX enhancements: FastLocate (Packet RSSI Location), Presence Analytics, Visitor Connect Updates, Facebook for Wi-Fi, CMX SDK overview.
5:00-7:00 a.m. pst: https://cisco.webex.com/ciscosales/k2/j.php?MTID=t190ff997c7eabbe41266a9a9f9447966
OR
4:00-6:00 p.m. pst: https://cisco.webex.com/ciscosales/k2/j.php?MTID=t50bae200d58f1e2314ca95fa2143c348
Day 3 (Thu, 2 Oct) – WLC new features: vWLC scale enhancements, CAPWAP data keepalive, PPoE on Flex, wired guest support on 2500, RADIUS accounting VSAs, HTTPS support for WebAuth, ease of management enhancements, local profiling OUI update list, 802.11v support, 802.11r enhancement, DHCP relay enhancement, IPv6 support on WLCs and APs.
5:00-7:00 a.m. pst: https://cisco.webex.com/ciscosales/k2/j.php?MTID=t5782923ed210288617e3b89a25fdb25c
OR
4:00-6:00 p.m. pst: https://cisco.webex.com/ciscosales/k2/j.php?MTID=t5d8f8389af88df8df3d33fcde2df1a41
Day 4 (Fri, 3 Oct) – RF and client support enhancements: DCA in RF Profiles, RX_SOP, Optimized Roaming, HA enhancements, Qinq Tagging support, Bonjour, AVC phases 3
5:00-7:00 a.m. pst: https://cisco.webex.com/ciscosales/k2/j.php?MTID=t95c8a6ea435953739676ccd6d19b5834
OR
4:00-6:00 p.m. pst: https://cisco.webex.com/ciscosales/k2/j.php?MTID=tbee7a0766216bee31753d780de655637
So When I am going to 8.0 ?
As you can see, this code introduced large number of features, so unless customers deploy this code in productions, Cisco may not known all the bugs. Here is the complete list of Open Caveats in this 8.0.100.0 code. Here is the list of Resolved Caveats in this release. So it is bit risky to move onto this code straight away, if you have a large wireless environment. At the same time, unless you deploy it in your environment, you may not know the implications specific to your environment.
So I will upgrade my Anchor WLC to this code (also manage some OEAP & few local mode AP) to see how good it is. Then once the MR1 released (hopefully by end of the year) thinking about moving to that code.
Update@13th September
It seems like 8.0MR1 come sooner than I originally thought 😯 . I have noticed 8.0MR1 (8.0.102.x) Beta availability published on Cisco mobility forum. You can get it via TAC & it is good idea to go for this if you hit by a critical bugs like crashing WLC. As of today below bugs listed as fixed in this 8.0MR1
CSCuq14453-Memory leak on WLC when using PMIPv6 clients
CSCuq18402-Slave AP not connecting over daisy chain
CSCuq55372-8.0 – WLC crash with Flex AP and Local Switching Enabled
CSCup43052-WLC crashes after starting client roaming
Update @9th October
If you missed the WLC 8.0 Webinars here are the links for recorded sessions. These were extremely useful & recommended to go through them prior to move on to 8.0.
Day1 : Clean AirExpress, OEAP, 702W , FlexConnect, Mesh, Autonomous
Day 2 : MSE 8.0/CMX
Day 3: vWLC improvment, 802.11v, 802.11r, IPv6, DHCP relay enhancement
Day 4 :RX_SOP, Optimised Roaming, HA, AVC Phase 3
Here is the PDF of the slides
Day1: 8-0_Delta_DAY1_AP_28-AUG-2014
Day2: 8-0_Delta_DAY2_MSE_PART_26-AUG-2014
Day3: 8-0_Delta_DAY3_WLC_IPv6_28-AUG-2014
Day4: 8-0_Delta_DAY4_RRM_HDX_HA_QinQ_Bonjour_AVC_28-AUG-2014
References
1. Release Notes for Cisco WLC 8.0.100.0
2. WLC Configuration Guide, Release 8.0
Related Posts
1. Are you on Right WLC software versions ?
2. Day0 with WLC 7.4 code
Thanks Rasika for the info.
Not a prob Amjad…
Nice post.
I don’t think Falshing LED feature is new, I’ve already used it in release 7.0
may be, that’s what they have listed in release notes 🙂
I upgraded from 7.4.121.0 to this new version. I now have problem with WLAN not switching interface when a client switched from one WLAN to another. Did you run into this problem?
Have you enabled Fast SSID Change (Controller -> Fast SSID Change – > Enable) on you controller ?
By the way I haven’t gone to this code for all my controller, only Anchor WLC upgraded.
HTH
Rasika
It is enabled.
So, since you upgraded your Anchor controller to the latest 8.0 release, does the number of connected clients matched on your Foreign controller? Currently, I have it on both Controllers upgraded to 8.0 with the new Mobility Enabled. (Converged Access). All my APs are connected to WLC01. WLC02 is used for DHCP and none of the APs are connected to it.
What is your recommendation? Should I downgrade my Foreign controller software back down to 7.4?
I would suggest to reach TAC prior to downgrade. If it is known issue they will able to help you with some bug fixed engineering release.
HTH
Rasika
Thank you nayarasi,
TAC case is already created. So far nothing yet. The TAC engineer has to do more research on the issue.
Good to hear, Keep us informed as well. Useful to many others who is looking for 8.x upgrade soon
HTH
Rasika
Hi Rasika,
Nice post as usual 🙂
Yesterday I’ve upgraded a 2504 from 7.6.120 to 8.0.100 and got the following problems:
1- After the reboot all wlans were in “disable” state
2- Also all wlans were in the “management” interface
I solved this issues by configuring each WLAN with the proper interface and enable each one.
I’ve ran the same procedure in a lab environment, with a different 2504 and got the same two problems.
Is this a known issue?
cheers
Hi,
I did a 5508 upgrade from 7.6.120.x to 8.0.100.0 code & did not experience those issues. may be 2504 specific ?
Rasika
Yeah, maybe it’s just 2504 specific…
I’ll try to run the same procedure on a 5508 and see what happens.
Cheers,
Vasco
Just to share an update.
This is a problem related with the Field Recovery version
If the 2504 is running Field Recovery version 7.6.101.1 (AIR-CT2500-K9-1-9-0-0-FUS.aes) and you issue the upgrade from 7.x to 8.0, after the update all wlans will be disable and assign to the management interface.
If the 2504 is running a previous Field Recovery version like 7.4.11.1 (AIR-CT2500-K9-1-8-0-0-FUS.aes ); first do the migration from 7.x to 8.0 (wlan’s will migrated perfectly) and then migrate the Field Recovery to AIR-CT2500-K9-1-9-0-0-FUS.aes.
Cheers,
Vasco
Hi Vasco,
Thank you very much for the update.
it is a “trap” to be watch for if you are having 2504 🙂
Rasika
I have a TAC case open because once I upgraded to 8.0.100.0 I no longer see the “Normal” menu option under the gigabit0 interface on my RAP or MAP (only Access or Trunk). I have many switches linked off MAPs at several sites, and those are currenlty down. The 8.0 Mesh configuration guide still lists the “normal” option as the required configuration for the RAP gigabit0 uplink to the network, but I can’t see it any longer. Are you aware of another setting somewhere I may need to enable in order to see that “Normal” menu option?
By the way – thanks very much for all your extremely useful posts! I watched the 8.0 seminars from your posted links but didn’t see any specific reference to my issue.
I think TAC is the best to assist you on this case.
I have not deployed Mesh in my environment & so cannot give any valuable input based on my experience.
HTH
Rasika
Hi, I am trying to configure optimized roaming on Cisco 5508. I have two 3700 AP’s about 75 ft apart and am using a Mac Book Pro (3×3:3). I have already configured optimized roaming under “advanced” tab. Can you tell me the recommended Tx power levels to verify whether the client is roaming or not. There is a rumor that the client gets deauthenticated and then after a while establishes the connection. This could impact a VoIP call. That is part of my future test case.
Thanks,
Ayush
Hi Ayush,
Read these & see if that helps
http://www.cisco.com/c/en/us/td/docs/wireless/controller/technotes/8-0/iPhone_roam/b_iPhone-roaming.html
http://support.apple.com/en-au/HT203068
HTH
Rasika
Hi!
Really nice article. I’m considering to move to 8.0.100.0 soon, but for some reason I can’t download PDF files from presentation, is it possible to update links?
Also what is your personal recommendation? I’m not sure for 100% that I need to move straight to 8.0.100.0. I’m running on 7.4.121.0 and everything is quite stable, but need to upgrade to have a support for 802.11ac APs, so I’m choosing between 7.6.130.0 and 8.0.100.0. My setup is quite generic, it’s 2 5508 in HA (AP SSO atm), around 2 hundred APs (1142, 2602) both in FlexConnect and Local mode. Also we have a plan to install 2702i aps.
The reason I have doubts that new releases have different bugs and you never know when you face one of them…But 8 version has some very nice features that I’d like to have, at least for the future. What is your personal feelings, do you have any problems on 5508?
Thanks in advance for your answers!
Br,
Max
As you already identified, any code versions have many bugs & impact differently based on your environment, how you configure & what features.
As s rule, go with a .0 release of any major version is not recommended (applicable for 8.0 as well). So I think, it is good to go with 8.0MR1 when it comes & deal with the issues as they comes.
The code you are running is having reputation for stability. In 8.x as well there may be a code having this sort of stability within next 6 months.
Regarding broken link, which one is not working, let me know to check
Regards
Rasika
Hi,
Now links are ok, I was able to download. The thing is that I have to do an upgrade in January, I don’t believe that there is any chance to see 8.0MR1 in January…
So it seems I have to go to 7.6.130.
No by January you will see 8.0MR1 out. I will plan to go with that code & let u know any feedback what we experience with that
Thanks, will wait for that!
Hi Rasika!
Recently Cisco released Release 8.0.110.0 ED. It’s again ED, according to release notes some bugs were fixed, but still tons of opened caveats…Is this that release that we are waiting for? Are you going to test this one?
Thanks in advance for your answers!
BR,
Max
Hi Max,
Yes, I am planning to go with that code. 🙂
Any Cisco release will have open caveats & you will never get a code without bugs. Since it is first maintenance release of 8.0, I think it is better than 8.0.
HTH
Rasika
Yes, of course it will be always bugs 🙂 But amount and severity of bugs is always different. Do you think that there is any chance to see in the nearest future release that marked MD, not ED?
Please let me know your impressions after testing 8.0.110.0. Thanks in advance!
Hi Rasika,
Greetings.
We have 2 units 2504 running software version 7.0. Recently the company purchased 3700 and 2700 AP’s. But I read on the web that 7.6 version would only detect the new AP’s, the old version it would didn’t. We plan to upgrade the OS to 7.6 or 8.0? What’s you can recommend with two version I go 7.6 or 8.0?
What about my old AP 2600 ,1400, is it compatible also?
Thanks,
Ray
In my production I moved to 8.0.110.0 code & coming months will tell me how good that code is.
Refer this for the compatibility matrix
http://www.cisco.com/c/en/us/td/docs/wireless/compatibility/matrix/compatibility-matrix.html
1400 series is not WLC managed. 2600 series wil support in 8.x
HTH
Rasika
Hi Rasika!
I have a question to you, maybe you know something from your experience and can help with some ideas:
We have WLC 5508 and pretty basic web-auth for guest users when local guest accounts are creating on WLC. We’d like to improve this solution and make something more secure, we’re thinking about some web-portal where user can enter his name and phone number and then get an OTP message and authenticate.
Do you know any good solutions for this? Maybe some another nice alternative for wireless guest authentication? (Facebook is not an option for us).
Thanks in advance for your input!
Hello
I need help i cant telnet my access point 1262 from wlc 5508 ios 8.0.110.0 how to enable in my wlc
Global AP User Name………………………… Not Configured
Global AP Dot1x User Name…………………… Not Configured
Regards
Assad
Hi Assad,
Shown below you can enable telnet on AP, which is disabled by default.
(5508-1) >config ap telnet enable all
Username/Password be Cisco/Cisco by default.
HTH
Rasika
Hi,
Please confirm the Will 2504 WLC with Code 7.6.130 support 2702 APs,
I tried couple of times but still unable to join the status.
Yes, 2700 support in 7.6.130.0, only new AP model added in 8.0.x is 1702
Hi
I am facing an issue in WLC 5508. the device goes offline and I am not able to access thru the web. but all access points are still registered and working fine and when I placed new ap its also registering. how can I disable the sleepy feature of the WLC
Did you try different browsers & see ? What is the WLC software version ?
Hi, currently I have a WLC and a HA, unfortunately I am not able to form the HA by following the cisco HA documentation. My WLC is able to ping its own management IP address and the servive port IP, but not the redundancy port IP address. Any idea how to resolve this? Many thanks
Dose 802.11r support on RootAP/MESH AP when ap running on bridge mode? document said does not support. but why?
Hi Nayarasi and everyone,
I have a strange issue with 8.0.115
My AP broadcast 1 SSID, using 801.2x with dynamic vlan assignment and FlexConnect Local Switching.
This is how it work:
ClientA connects to SSID and assigned to VLAN50 (i.e ipadd = 1.1.50.5)
ClientB connects to SSID and assigned to VLAN80 (i.e ipadd = 1.1.80.20)
On the same device (i.e Windows8), when connect using ClientA account, then forget the SSID and reconnect using ClientB account, i notice that device always failed to connect at the first time, and the second time it will connected successful.
OK i found that i have to enable “Fast SSID Change”, then that issue gone.
But with “Fast SSID change” enabled, on the same device :
1.ClientA connects to SSID and assigned to VLAN50 (i.e ipadd = 1.1.50.5)
2.Forget the SSID
3.ClientB connects to SSID and got THE OLD IPADD (1.1.50.5)
Does anyone have this problem? Help me please
Thanks and have a nice day !
Hi, Urgent
I need upgrade two controller ( n+1) primary and secondary from 8.0.110 versión to 8.1.120 versión. what’s de procedure?. it’s necesario adicional procedure to upgrade??
Sorry my bad english..
No special procedure, follow the same on both primary & secondary.
HTH
Rasika
Good afternoon! I read your article and found it very useful. In my office we are using such kind of controller http://pc24.de/cisco/air-cap2602i-e-k9.html. But we are looking for more useful controller. Can you suggest something, but in details of its advantages? Thank you!
Hi Blad,
Have a look this product bundle, this comes with 2504 controller with 25AP license for free when you buy two 1702/2702/3702 APs
AIR-AP1702i-E-WLC
AIR-AP2702i-UX-WLC
AIR-AP3702i-UX-WLC
HTH
Rasika
Hi ,
Universal AP 3702 not getting registered with 8.0.100 what could be the reason or it is bug and i need to downgrade. any article on Universal Regulatory Domain AP ?
No, UX mode support only from 8.0.x onward. Refer these
http://www.cisco.com/c/en/us/td/docs/wireless/controller/technotes/8-0/AP_Regulatory_Domain_DG/b_universal_AP_regulatory_domain_DG.html
http://www.cisco.com/c/en/us/td/docs/wireless/access_point/ux-ap/guide/uxap-mobapp-g.html
If you still have problem, start a thread in CSC forum, someone should able to help you ( I am there too )
https://supportforums.cisco.com/community/5956/getting-started-wireless
HTH
Rasika
how I can get 8.0
You need to have support contract with Cisco.
HTH
Rasika
Hi all, newbie here.
Wonder if anyone can share me the weblink to configure roaming by a mobile (tablet) user moving from location A to B within the same campus network. I m using aironet 1700. josephnps@hotmail.my
HI, i have a WLC 5508 with v7.4 and a couple of 1240/42 AP. I read with the new release 8.0 it won’t support new features. But the WLC works with no problem with the 1240/42 AP after the upgrade?
Yes, it means 1342 can register to a WLC that running 8.0.x code. but if any new features added in 8.0.x code may not supported with 1242.
HTH
Rasika
Hi,
Need to enbale ipv6 to specific wlan in 8.0 version, ipv6 is already enabled globally however config wlan IPv6support {enable | disable} wlan_id is not acceptable.
Please adice