Managed Devices Configuration Workflow

The tasks in deploying a basic user-centric network fall into the following two main areas:

  • Configuring and connecting the managed device to the wired network (described in this section)
  • Deploying APs (described later in this section)

The following workflow lists the tasks to configure a managed device. Click any of the links below for details on the configuration procedures for that task.

  1. Managed Devices Configuration Workflow.
  2. Setting System Clock
  3. View current licenses and install new licenses. For details on installing licenses, refer to the Aruba Managed Device Licensing Guide.
  4. For topologies similar to Deployment Scenario #3 — APs on Multiple Different Subnets from Managed Devices), see Configuring VLANs to connect the managed device to your network.

  5. Configuring the Mobility Conductor IP Address.

    The managed device IP address is used by the managed device to communicate with external devices such as APs.

  6. (Optional) Configuring the Loopback IP Address.

  7. Configuring the Default Gateway Perform this step if you need to configure a trunk port between the managed device and another layer-2 switch (shown in Deployment Scenario #3 — APs on Multiple Different Subnets from Managed Devices).
  8. Trusted and Untrusted Ports and VLANs for this managed device.

Connecting the Managed Device to the Network

To connect the managed device to the wired network, run the initial setup to configure administrative information for the managed device.

Initial setup can be done using the browser-based Setup Wizard or by accessing the initial setup dialog via a serial port connection. Both methods are described in the Getting Started Guide and are referred to throughout this section as “initial setup.”

The following is a high-level description of the steps required in initial setup:

  1. When you connect to the managed device for the first time using either a serial console or a Web browser, you must set the role (conductor, managed device, or stand-alone) for the managed device and passwords for administrator and configuration access.

    Do not connect the managed device to your network when running the initial setup. The factory-default managed device boots up with a default IP address and both DHCP Dynamic Host Configuration Protocol. A network protocol that enables a server to automatically assign an IP address to an IP-enabled device from a defined range of numbers configured for a given network.  server and spanning tree functions are disabled. After you have completed the initial setup, you can use either the CLI Command-Line Interface. A console interface with a command line shell that allows users to execute text input as commands and convert these commands to appropriate functions. or WebUI for further configuration before connecting the managed device to your network.

  2. Specify the country code for the country in which the managed device will operate; this sets the regulatory domain for the radio frequencies that the APs use.

     

    You cannot change the country code for managed device designated for certain countries, such as the U.S. Improper country code assignment can disrupt wireless transmissions. Many countries impose penalties and sanctions for operators of wireless networks with devices set to improper country codes. If none of the channels supported by the AP you are provisioning have received regulatory approval by the country whose country code you selected, the AP reverts to Air Monitor mode.

  3. Configure an IP address for the VLAN Virtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN. 1 interface, which you can use to access and configure the managed device remotely via an SSH Secure Shell. SSH is a network protocol that provides secure access to a remote device. or WebUI session.

    Configuring an IP address for the VLAN Virtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN. 1 interface ensures that there is an IP address and default gateway Gateway is a network node that allows traffic to flow in and out of the network. assigned to the managed device upon completion of the initial setup.

    The full setup dialog provides flexibility to configure only IPv4 or IPv6 address, or a combination of both. If IPv6 address is used to terminate IPsec Internet Protocol security. IPsec is a protocol suite for secure IP communications that authenticates and encrypts each IP packet in a communication session. tunnel, then it is no longer mandatory to configure IPv4 address in conductor IP configuration in the setup dialog.

Connecting to the Managed Device after Initial Setup

After you complete the initial setup, the managed device reboots using the new configuration. You can then connect to and configure the managed device in several ways using the administrator password you entered during the initial setup: