Ap-1131ag
boostinbadger
Member Posts: 256
I have reset my AP but when it comes back to the ap> prompt and asks for the password "cisco" does not work. I know it is reset because the hostname was not "ap" when I turned it on.
I don't have any experience with these yet and don't know if I am doing this right.
Thanks
I don't have any experience with these yet and don't know if I am doing this right.
Thanks
Comments
-
chrisone Member Posts: 2,278 ■■■■■■■■■□Well i havent played with Cisco APs in a while since i moved jobs and im focused more on ASA's. I would expect it to be a short basic config , you will probably see stuff like the Radio configs , they should be turned off by default last i remembered. However the APs are designed to be configured using the web gui. I would suggest configuring these APs with the GUI. Good luck!Certs: CISSP, EnCE, OSCP, CRTP, eCTHPv2, eCPPT, eCIR, LFCS, CEH, SPLK-1002, SC-200, SC-300, AZ-900, AZ-500, VHL:Advanced+
2023 Cert Goals: SC-100, eCPTX -
tiersten Member Posts: 4,505boostinbadger wrote: »What is the default IP? 192.168.1.1?
-
Megadeth4168 Member Posts: 2,157I believe the default IP is 10.0.0.1 and that the default SSID is tsunami.
One issue that I've run into with configuring these through the web browser is that the newer browsers don't react well. Firefox didn't seem to work at all... IE7 works but it is still a little flaky. I prefer the CLI myself. -
mikem2te Member Posts: 407boostinbadger wrote: »Thanks!
What does a basic config usually look like?
I got two SSIDs on the AP, one fully open for just internet access, the other using WPA2 with dot1.x authentication for my internal LAN. Each SSID is bridged to a different VLAN on the ethernet sub interfaces.Current configuration : 5292 bytes ! ! No configuration change since last restart ! version 12.4 no service pad service timestamps debug datetime msec service timestamps log datetime msec service password-encryption ! hostname AP1130AG ! enable secret 5 XXXXXXXXXXXXXXXXX ! aaa new-model ! ! aaa group server radius rad_eap server XXXXXXXXXXXXXXXXX auth-port 1645 acct-port 1646 ! aaa group server radius rad_mac ! aaa group server radius rad_acct ! aaa group server radius rad_admin ! aaa group server tacacs+ tac_admin ! aaa group server radius rad_pmip ! aaa group server radius dummy ! aaa authentication login eap_methods group rad_eap aaa authentication login mac_methods local aaa authorization exec default local aaa accounting network acct_methods start-stop group rad_acct ! aaa session-id common ip domain name XXXXXXXXXXXXXXXXX.co.uk ! ! dot11 syslog ! dot11 ssid Internet vlan 201 authentication open mbssid guest-mode ! dot11 ssid Trusted vlan 200 authentication open eap eap_methods authentication key-management wpa version 2 mbssid guest-mode ! power inline negotiation injector 001d.e5ca.c4ac ! crypto pki trustpoint TP-self-signed-3847650946 enrollment selfsigned subject-name cn=IOS-Self-Signed-Certificate-3847650946 revocation-check none rsakeypair TP-self-signed-3847650946 ! ! crypto pki certificate chain TP-self-signed-3847650946 certificate self-signed 01 XXXXXXXXXXXXXXXXX quit username admin privilege 15 secret 5 XXXXXXXXXXXXXXXXX ! ! bridge irb ! ! interface Dot11Radio0 no ip address no ip route-cache ! encryption vlan 200 mode ciphers aes-ccm ! ssid Internet ! ssid Trusted ! mbssid station-role root no dot11 extension aironet bridge-group 1 bridge-group 1 block-unknown-source no bridge-group 1 source-learning no bridge-group 1 unicast-flooding bridge-group 1 spanning-disabled ! interface Dot11Radio0.200 encapsulation dot1Q 200 no ip route-cache bridge-group 200 bridge-group 200 subscriber-loop-control bridge-group 200 block-unknown-source no bridge-group 200 source-learning no bridge-group 200 unicast-flooding bridge-group 200 spanning-disabled ! interface Dot11Radio0.201 encapsulation dot1Q 201 no ip route-cache bridge-group 201 bridge-group 201 subscriber-loop-control bridge-group 201 block-unknown-source no bridge-group 201 source-learning no bridge-group 201 unicast-flooding bridge-group 201 spanning-disabled ! interface Dot11Radio1 no ip address no ip route-cache shutdown no dfs band block channel dfs station-role root bridge-group 1 bridge-group 1 subscriber-loop-control bridge-group 1 block-unknown-source no bridge-group 1 source-learning no bridge-group 1 unicast-flooding bridge-group 1 spanning-disabled ! interface FastEthernet0 no ip address no ip route-cache duplex auto speed auto bridge-group 1 no bridge-group 1 source-learning bridge-group 1 spanning-disabled ! interface FastEthernet0.200 encapsulation dot1Q 200 no ip route-cache bridge-group 200 no bridge-group 200 source-learning bridge-group 200 spanning-disabled ! interface FastEthernet0.201 encapsulation dot1Q 201 no ip route-cache bridge-group 201 no bridge-group 201 source-learning bridge-group 201 spanning-disabled ! interface BVI1 ip address XXXXXXXXXXXXXXXXX 255.255.255.0 no ip route-cache ! ip http server ip http authentication local ip http secure-server ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag ip radius source-interface BVI1 logging XXXXXXXXXXXXXXXXX radius-server attribute 32 include-in-access-req format %h radius-server host XXXXXXXXXXXXXXXXX auth-port 1645 acct-port 1646 key 7 XXXXXXXXXXXXXXXXX radius-server vsa send accounting bridge 1 route ip ! ! ! line con 0 line vty 0 4 exec-timeout 20 0 transport input telnet ssh ! sntp server XXXXXXXXXXXXXXXXX end AP1130AG#
Blog : http://www.caerffili.co.uk/
Previous : Passed Configuring Microsoft Office SharePoint Server 2007 (70-630)
Currently : EIGRP & OSPF
Next : CCNP Route -
sulaywan Registered Users Posts: 3 ■□□□□□□□□□Default password for the APs is Cisco with a capital C.
Thanks man,
May God Bless you !