Monday, August 30, 2021

PoE issue with Cisco 9300 switch and Aruba APs - requesting class 4 (30W) but only returning class 3 (15W)?

I'm having some issues in a lab setup with a Cisco 9300 switch, and some Aruba AP-325 APs.

We recently changed from a Ruckus to a Cisco switch. However, now the Aruba APs have a steady amber system light. According to this link, this means they are in power restricted mode (802.3af).

If I check the Aruba MC (AOS 8.8.0.1), this does seem to be the case - the AP's are showing the r (power restricted) flag:

(FOO) *#show ap database long AP Database ----------- Name Group AP Type IP Address Status Flags Switch IP Standby IP Wired MAC Address Serial # Port FQLN Outer IP User ---- ----- ------- ---------- ------ ----- --------- ---------- ----------------- -------- ---- ---- -------- ---- 00:4e:35:c9:51:32 default 325 10.134.1.54 Up 4m:31s 2r 10.134.1.5 0.0.0.0 00:4e:35:c9:51:32 CNH2HN77X4 N/A N/A N/A 00:4e:35:ca:cf:aa default 325 10.134.1.175 Up 4m:41s 2r 10.134.1.5 0.0.0.0 00:4e:35:ca:cf:aa CNHGHN7242 N/A N/A N/A 48:4a:e9:c5:de:a2 default 375 10.134.1.192 Up 3m:56s 2rI 10.134.1.5 0.0.0.0 48:4a:e9:c5:de:a2 CNHQK8018F N/A N/A N/A 48:4a:e9:c5:df:f2 default 375 10.134.1.189 Up 4m:28s 2rI 10.134.1.5 0.0.0.0 48:4a:e9:c5:df:f2 CNHQK80198 N/A N/A N/A b0:b8:67:cd:e7:18 default 325 10.134.1.59 Up 4m:13s 2r 10.134.1.5 0.0.0.0 b0:b8:67:cd:e7:18 CNGZHN700L N/A N/A N/A Flags: 1 = 802.1x authenticated AP use EAP-PEAP; 1+ = 802.1x use EST; 1- = 802.1x use factory cert; 2 = Using IKE version 2 B = Built-in AP; C = Cellular RAP; D = Dirty or no config E = Regulatory Domain Mismatch; F = AP failed 802.1x authentication G = No such group; I = Inactive; J = USB cert at AP; L = Unlicensed M = Mesh node N = Duplicate name; P = PPPoe AP; R = Remote AP; R- = Remote AP requires Auth; S = Standby-mode AP; U = Unprovisioned; X = Maintenance Mode Y = Mesh Recovery b = bypass of AP1x timeout; c = CERT-based RAP; e = Custom EST cert; f = No Spectrum FFT support i = Indoor; o = Outdoor; s = LACP striping; u = Custom-Cert RAP; z = Datazone AP p = In deep-sleep status; m = Protocol Mismatch 4 = WiFi Uplink r = Power Restricted; T = Thermal ShutDown; t = Temperature Restricted Total APs:5 

I checked the POE status on the Cisco switch, and it's showing class 4 for those ports:

Switch>show power inline Module Available Used Remaining (Watts) (Watts) (Watts) ------ --------- -------- --------- 1 755.0 107.8 647.2 Interface Admin Oper Power Device Class Max (Watts) --------- ------ ---------- ------- ------------------- ----- ---- Gi1/0/1 auto on 15.4 Ieee PD 0 30.0 Gi1/0/2 auto on 15.4 Ieee PD 0 30.0 Gi1/0/3 auto off 0.0 n/a n/a 30.0 Gi1/0/4 auto off 0.0 n/a n/a 30.0 Gi1/0/5 auto off 0.0 n/a n/a 30.0 Gi1/0/6 auto off 0.0 n/a n/a 30.0 Gi1/0/7 auto on 15.4 Ieee PD 4 30.0 Gi1/0/8 auto off 0.0 n/a n/a 30.0 Gi1/0/9 auto off 0.0 n/a n/a 30.0 Gi1/0/10 auto on 15.4 Ieee PD 4 30.0 Gi1/0/11 auto on 15.4 Ieee PD 4 30.0 Gi1/0/12 auto off 0.0 n/a n/a 30.0 Gi1/0/13 auto off 0.0 n/a n/a 30.0 Gi1/0/14 auto off 0.0 n/a n/a 30.0 Gi1/0/15 auto off 0.0 n/a n/a 30.0 Interface Admin Oper Power Device Class Max (Watts) --------- ------ ---------- ------- ------------------- ----- ---- Gi1/0/16 auto off 0.0 n/a n/a 30.0 Gi1/0/17 auto off 0.0 n/a n/a 30.0 Gi1/0/18 auto off 0.0 n/a n/a 30.0 Gi1/0/19 auto on 15.4 Ieee PD 4 30.0 Gi1/0/20 auto on 15.4 Ieee PD 4 30.0 Gi1/0/21 auto off 0.0 n/a n/a 30.0 Gi1/0/22 auto off 0.0 n/a n/a 30.0 Gi1/0/23 auto off 0.0 n/a n/a 30.0 Gi1/0/24 auto off 0.0 n/a n/a 30.0 --------- ------ ---------- ---------- ---------- ------ ----- Totals: 7 on 107.8 

I thought class 4 means they should be able to draw at 802.3at power levels? (And the max watts is showing 30W - although I do note they're pulling at 15W).

I took a POE tester to one of the ports on the Cisco switch - and requested Class 4 - however, it seemed to return to me Class 3 - so to my untrained eye it seems like an issue with the Cisco switch - but the Cisco power inline output shows Class 4 for those ports?

https://i.imgur.com/OFMMbWd.jpg (POE Tester Output)

Does anybody have any ideas what's going on?



No comments:

Post a Comment