Discovery of cnMaestro Failed

Do you have any suggestions on what I may be doing wrong? I have added a few AP’s and SM’s to the cnMaestro, but am having issues with the 2 AP’s on this tower. This tower has a management VLAN, my other ones don’t. I can add an SM that is linked to this tower but only if it is in NAT mode. I have an SM in bridge mode that lost connection to cnMaestro once I changed from NAT to Bridge. On the home page it says "Connecting" or "Connecting in 1 minute" or "Connecting in 5 minutes" but never connects. Here is a copy of the syslog from the AP.

Sep  1 00:02:06 Onion Prairie AP1 DEVICE-AGENT[2047]: Discovery of cnMaestro Failed

Sep  1 00:02:06 Onion Prairie AP1 DEVICE-AGENT[2047]: Unable to discover cnMaestro

Sep  1 00:03:12 Onion Prairie AP1 DEVICE-AGENT[2047]: EINPROGRESS in connect()

Sep  1 00:03:27 Onion Prairie AP1 DEVICE-AGENT[2047]: Timeout in select() - Cancelling!

Sep  1 00:03:27 Onion Prairie AP1 DEVICE-AGENT[2047]: OpenConnection to cloud.cambiumnetworks.com:443 failed

Sep  1 00:03:27 Onion Prairie AP1 DEVICE-AGENT[2047]: Not able to find cnMaestro, Try Discovering again

Can you please confirm if you are able to ping cloud.cambiumnetworks.com from the GUI of the radio.

Regards,

Vivek Gupta 

No, I am not able to ping cloud.cambiumnetworks.com.

Do you have valid DNS in place?

Yes

Can you confirm that DNS resolution works? Can you ping anything out on the interwebs?

Yes, the DNS works. I'm pretty sure the firewall on my router is causing the connection issue.

Do you still see this problem?

I hate to revive an old thread but I'm having the same issue.  

We are new to ePMP.  We have our AP's in bridge mode with nonroutable IP's and typically have our CPE's in NAT/Router mode with a routable IP.  I have a few customers that do have their routable IP in their own router and their CPE in bridge with non routable for Port forwarding reasons.  I am not having any problems onboarding devices with routable IPs.  The non routables won't onboard.  I get a fail to resolve URL on cnMaestro Status.  I have put in a 2 working DNS's and still have the problem.  Our network is a flat network  with backhauls going tower to tower and the main router is at the edge of our network.  

I have tried to ping addresses from the devices and get no response. 

When you ping from the devices, does the URL resolve to an IP address?  If they do, then it is at least getting the IP from your DNS servers correctly.  In that case there might be a firewall blocking outbound access from your devices to the cnMaestro cloud servers.

Also having a similar issue to this on a force 180 device. Can ping cloud.cambiumnetworks.com just fine from the GUI of the radio. Here's the errors i'm receiving. Currently running 2.6.2 on this device.

Sep  1 00:16:44 Lopez DEVICE-AGENT[13673]: EINPROGRESS in connect()
Sep  1 00:16:44 Lopez DEVICE-AGENT[13673]: SSL_connect Not succesful 1
Sep  1 00:16:44 Lopez DEVICE-AGENT[13673]: Not able to find cnMaestro, Try Discovering again
Sep  1 00:16:44 Lopez DEVICE-AGENT[13673]: Discovery of cnMaestro Failed 
Sep  1 00:16:44 Lopez DEVICE-AGENT[13673]: Unable to discover cnMaestro
Sep  1 00:18:00 Lopez DEVICE-AGENT[13673]: EINPROGRESS in connect()
Sep  1 00:18:00 Lopez DEVICE-AGENT[13673]: SSL_connect Not succesful 1
Sep  1 00:18:00 Lopez DEVICE-AGENT[13673]: Not able to find cnMaestro, Try Discovering again
Sep  1 00:18:00 Lopez DEVICE-AGENT[13673]: Discovery of cnMaestro Failed 
Sep  1 00:18:00 Lopez DEVICE-AGENT[13673]: Unable to discover cnMaestro
Sep  1 00:19:13 Lopez DEVICE-AGENT[13673]: EINPROGRESS in connect()
Sep  1 00:19:13 Lopez DEVICE-AGENT[13673]: SSL_connect Not succesful 1
Sep  1 00:19:13 Lopez DEVICE-AGENT[13673]: Not able to find cnMaestro, Try Discovering again
Sep  1 00:19:13 Lopez DEVICE-AGENT[13673]: Discovery of cnMaestro Failed 
Sep  1 00:19:13 Lopez DEVICE-AGENT[13673]: Unable to discover cnMaestro

Please send me your cambiumID and device MAC which is having problem to onboard via private message.