Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

RED15W changed IP now Access Point cannot ARP to 1.2.3.4 unreplied, remains inactive

I have a RED15W which was working fine, with WiFi. AP was active.

Because the IP range assigned to this RED became to small, I changed the IP and Subnetmask.

Changed the DHCP Server object on the XG accordningly.

The built-in AP of that RED has the IP 192.168.9.210 with MAC Address 00:1a:8c:94:a1:c0

So far so good.

..

Problem now is:

AP of that RED is inactive since the change.

I disabled, enabled and re-saved the RED several times, stopped and restarted the DHCP. Did not help.

The cause for the AP beeing inactive is, AP received an IP address but now is not getting an ARP reply from the XG for the magic IP 1.2.3.4

I think, this is because the XG has no ARP for the IP of the AP as seen below. There is an ARP Entry for all the other RED15W AP devices, why not for this?

Why is XG not answering with ARP Reply?

Time;In interface;Out interface;Ethernet type;Source IP;Destination IP;Packet type;Ports [src,dst];NAT ID;Rule ID;Status;Reason;Connection ID;Connection status
18.08.2021 19:35;reds19;;ARP;192.168.9.210;1.2.3.4;ARP - NDP request;--;0;0;Consumed;;0;UNREPLIED
18.08.2021 19:35;reds19;;ARP;192.168.9.210;1.2.3.4;ARP - NDP request;--;0;0;Consumed;;0;UNREPLIED
18.08.2021 19:35;reds19;;ARP;192.168.9.210;1.2.3.4;ARP - NDP request;--;0;0;Consumed;;0;UNREPLIED

Ethernet header
Source MAC address:00:1a:8c:94:a1:c0
Destination MAC address: ff:ff:ff:ff:ff:ff
Ethernet type ARP (0x806)
 
ARP Header
ARP type: ARP - NDP request
Source MAC address: 00:1a:8c:94:a1:c0
Source IP address: 192.168.9.210
Destination MAC address: 00:00:00:00:00:00
Destination IP address: 1.2.3.4

Why has the MAC of that AP of the RED no ARP entry on the XG? It has served the IP via DHCP!

Why is the magic IP shown on an other RED??



This thread was automatically locked due to age.
  • Any idea on this?

    After a power cycle of the RED at least it's AP's ARP entry at XG is existing, but still the XG refuses to answer the ARP request. I don't understand why.

    Time

    In interface

    Out interface

    Ethernet type

    Source IP

    Destination IP

    Packet type

    Ports [src,dst]

    NAT ID

    Rule ID

    Status

    Reason

    Connection ID

    Connection status

    19.08.2021 11:16

    reds19

    ARP 192.168.9.210 1.2.3.4 ARP - NDP request --

    0

    0

    Consumed

    0

    UNREPLIED

    19.08.2021 11:16

    reds19

    ARP 192.168.9.210 1.2.3.4 ARP - NDP request --

    0

    0

    Consumed

    0

    UNREPLIED

    19.08.2021 11:16

    reds19

    ARP 192.168.9.210 1.2.3.4 ARP - NDP request --

    0

    0

    Consumed

    0

    UNREPLIED

    ARP Header
    ARP type: ARP - NDP request
    Source MAC address: 00:1a:8c:94:a1:c0
    Source IP address: 192.168.9.210
    Destination MAC address: 00:00:00:00:00:00
    Destination IP address: 1.2.3.4

    tcpdump: listening on reds19, link-type EN10MB (Ethernet), capture size 262144 bytes
    11:47:20.701971 reds19, IN: ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 1.2.3.4 tell 192.168.9.210, length 28
    11:47:21.701604 reds19, IN: ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 1.2.3.4 tell 192.168.9.210, length 28
    11:47:22.701482 reds19, IN: ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 1.2.3.4 tell 192.168.9.210, length 28
    11:47:23.703054 reds19, IN: ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 1.2.3.4 tell 192.168.9.210, length 28
    11:47:24.702919 reds19, IN: ARP, Ethernet (len 6), IPv4 (len 4), Request who-has 1.2.3.4 tell 192.168.9.210, length 28



    AP still inactive since the change yesterday.

  • I deleted the inactive AP object: no solution

    Then I deleted the RED device, recreated it with exactly the same settings, recreated the DHCP Server with the two static entries.

    AP immediatey showed up as new pending AP

    I configured it and now everything is working.


    What a mess with those RED's so many times when you change something on them...!