The CAPsMAN Server runs on a remote device. CAP and CAPsMAN Server can reach each other over a WireGuard tunnel.
CAPsMAN management itself works fine. But traffic processing seems to be not working, when connecting to the WiFi, I don't get any IP. So I assume there is no Traffic passing.
Checking ether4 succeeds, I can get a IP when connecting my Computer to this port. So VLAN seems to work.
CAPsMAN itself seems to work. Or what do you mean specific?
Configuring the datapath on AP itself seems to be wrong in this operating mode, I can't see the remote datapath on the AP.
/interface wifi
# managed by CAPsMAN 172.16.50.55, traffic processing on CAPsMAN
# mode: AP, SSID: test-cap, channel: 5805/ax/eeeC
set [ find default-name=wifi1 ] configuration.manager=capsman .mode=ap disabled=no
# managed by CAPsMAN 172.16.50.55, traffic processing on CAPsMAN
# mode: AP, SSID: test-cap, channel: 2462/ax/eC
set [ find default-name=wifi2 ] configuration.manager=capsman .mode=ap disabled=no
Can CAP communicate over IP (via Wireguard) to capsman controller ?
What IP settings does cap have ?
You only show part of the config. We may need all.
Is there something in between capsman controller and cap handling the wireguard part ?
A bit more context on the complete setup might help as well.
I never have capsman setup cross a VPN or even sites. It always stays local for me.
What if your VPN burps for one reason or the other ? Down the drain goes your capsman connection and wifi "on the other side" with it. Instantly.
CCR-2004-12S+2XS router as CAPsMANv2, CAPsMANv1 controllers :: I am seeing a lot of random unpredictable kernel failure, reboots. I am now ‘anecdotally’ speaking attribute it to the traffic-processing=on-capsman-secure, I have now reverted to pre ROSv7.21.1 traffic-processing=on-capsman instead - seeing no kernel fail reboots now so far in the last couple of days (since I reverted the traffic-processing setting).
CAPsMANv2 settings on CCR-2004 :
(Note: For brevity I am posting setup for one SSID in both 2G Hz and 5GHz radio. I have several SSIDs over 4 VLANs,.)