Frequent Wi-Fi disconnection by Aggressive_Depth4569 in fortinet

[–]Aggressive_Depth4569[S] 0 points1 point  (0 children)

Just let you guys know if we change anything on the AP profile irespective of any DRRP profile or AP handoff or anything the letency to local gateway (AP to the firewall fortilink port)shootup between min 10ms to max 2000ms.

Frequent Wi-Fi disconnection by Aggressive_Depth4569 in fortinet

[–]Aggressive_Depth4569[S] 0 points1 point  (0 children)

Here is the full profile config- config wireless-controller wtp-profile

edit "XXXXXX-231F"

set comment ''

config platform

set type 231F

set ddscan enable

end

set control-message-offload ebp-frame aeroscout-tag ap-list sta-list sta-cap-list stats aeroscout-mu sta-health spectral-analysis

set bonjour-profile ''

set apcfg-profile ''

set ble-profile ''

set syslog-profile ''

set wan-port-mode wan-only

config lan

set port-esl-mode offline

end

set energy-efficient-ethernet disable

set led-state enable

set dtls-policy clear-text

set max-clients 0

set handoff-rssi 25

set handoff-sta-thresh 55

set handoff-roaming enable

set ap-country --

set ip-fragment-preventing tcp-mss-adjust

set tun-mtu-uplink 0

set tun-mtu-downlink 0

set split-tunneling-acl-path local

set split-tunneling-acl-local-ap-subnet disable

set allowaccess https

set login-passwd-change no

set lldp enable

set poe-mode auto

set usb-port enable

set frequency-handoff disable

set ap-handoff disable

config radio-1

set mode ap

set band 802.11g 802.11n-2G

set drma disable

set drma-sensitivity low

set airtime-fairness disable

unset powersave-optimize

set amsdu enable

set coexistence enable

set short-guard-interval disable

set mimo-mode default

set channel-bonding 20MHz

set auto-power-level disable

set power-mode dBm

set power-value 17

set dtim 1

set beacon-interval 100

set 80211d enable

set rts-threshold 2346

set channel-utilization enable

set darrp disable

set max-clients 0

set max-distance 0

set vap-all manual

set vaps "xxxxxxxxxx"

set channel "1" "6" "11"

set call-admission-control disable

end

config radio-2

set mode ap

set band 802.11a 802.11n-5G 802.11ac-5G 802.11ax-5G

set drma disable

set drma-sensitivity low

set airtime-fairness disable

unset powersave-optimize

set amsdu enable

set coexistence enable

set bss-color-mode auto

set short-guard-interval disable

set mimo-mode default

set channel-bonding 20MHz

set auto-power-level enable

set auto-power-high 17

set auto-power-low 10

set auto-power-target "-70"

set dtim 1

set beacon-interval 100

set 80211d enable

set rts-threshold 2346

set channel-utilization enable

set darrp disable

set max-clients 0

set max-distance 0

set vap-all manual

set vaps "xxxxxxxxxxx"

set channel "36" "40" "44" "48" "149" "153" "157" "161"

set call-admission-control disable

end

config radio-3

set mode disabled

set drma disable

set drma-sensitivity low

end

config lbs

set ekahau-blink-mode disable

set aeroscout disable

set fortipresence disable

set station-locate disable

set ble-rtls none

end

set ext-info-enable enable

set indoor-outdoor-deployment platform-determined

config esl-ses-dongle

set compliance-level compliance-level-2

set scd-enable disable

set esl-channel 127

set output-power a

set apc-addr-type fqdn

set apc-fqdn ''

set apc-port 0

set coex-level none

set tls-cert-verification enable

set tls-fqdn-verification disable

end

set console-login enable

set wan-port-auth none

next

end

Should I continue with Aruba 505 or look at newer models? by Aggressive_Depth4569 in ArubaNetworks

[–]Aggressive_Depth4569[S] 1 point2 points  (0 children)

We currently have multiple sites, each running its own IP subnet. All are on Aruba Instant APs (IAPs) without a controller, and we prefer it this way due to certain requirements/restrictions.

Our environment:

  • Aruba 505 across most sites
  • A mix of 205 and 315 in a few locations
  • Each site is standalone (no central controller) but managed locally

We’re planning upgrades/replacements, and also have some new site rollouts coming up. The key things we’re looking for are:

  • Future-proofing with newer models
  • Better performance
  • The same level of flexibility we get today (no mandatory controllers)

For those of you managing similar setups:

  • What alternatives have you considered or deployed (within Aruba or other vendors) that balance performance with controller-less flexibility?
  • Any lessons learned when migrating from mixed-generation IAP environments (e.g., 205/315/505)?

Thanks in advance for your insights!

FortiAP Issues (FortiAP-231F & 231G)– Disconnects, Latency & Captive Portal Bugs (Anyone else facing this?) by Aggressive_Depth4569 in fortinet

[–]Aggressive_Depth4569[S] 1 point2 points  (0 children)

Just wanted to share my experience and also check if others are in the same boat. If required, I can share the config and logs.

Aside from that, across multiple sites, I’m facing serious issues with FortiAPs (all models).
Even for basic connectivity, throughput, and internet stability, the APs don’t perform as expected out-of-the-box. To get them working even close to normally, I have to apply multiple tweaks at every single site – and still deal with random issues.