|
Hits Table Enhancements
|
ArubaOS 8.8.0.0 implements an enhancement to the hits-indices allocation by not allocating hits-indices for Expanded-ACEs by default and only allocate when the /user-role is being debugged for hits. A new command, acl-debug alias-rule-hits type, is introduced to allocate hits-indices for debugging purpose.
|
|
Ability to Specify NTP Server Using FQDN
|
ArubaOS now allows users to add servers using a hostname/ instead of an IP address.
|
|
AP Failover to Different Cluster
|
ArubaOS now allows to disable the link and/or PSE of the wired downlink ports during AP
failover. ArubaOS also configures the wired port down time after the AP fails over to backup cluster or falls back to the
primary cluster.
|
|
AirGroup Version
|
ArubaOS now supports AirGroup version1 (older AirGroup) and version2 (redesigned AirGroup) on the Mobility Master. On boot, the Mobility Master runs AirGroup version1 by default and can be switched to run AirGroup version2.
|
|
Configure an EST Profile
|
The output is modified to specify the keytype in a csr attribute.
The default server configuration is accepted first during the enrollment/re-enrollment process. If the server does not provide the csr attribute, then the user configured csr_attribute is accepted.
|
|
Captive Portal DUR Restriction
|
With this enhancement, users can push profiles along with the user role from CPPM.
|
|
Changes to Firmware Upgrade
|
Starting from this release, ArubaOS allows a firmware upgrade without changing the default boot option.
|
|
Cluster Live Upgrade Optimization
|
Live upgrade feature is enhanced to handle failures more gracefully and take less time to upgrade a cluster.
|
|
Cluster Live Upgrade Updates
|
Cluster live upgrade is now supported with IPv6 setup.
|
|
Datazone Redundancy Support
|
Datazone now supports redundancy to avoid a long time service outage and the user can configure a backup controller or cluster for a datazone configuration.
|
|
Dashboard Monitoring- Access Devices
|
The following changes are introduced:
The Infrastructure dashboard in the WebUI displays the following additional information for an AP that is down:
Timestamp—Displays the date and time from when the AP is down.
Reason—Displays the reason due to which the AP is down.
An Outer IP addresses column is added to the Access Points table.
The Security dashboard in the WebUI displays a new field Match Source under Detected Radios table, which provides information about the various types of sources used for manual reclassification of monitored APs.
|
|
Deny Inter-User Bridging
|
This feature prevents the forwarding of Layer-2 traffic between wired or wireless users even when the users are on different controllers in a cluster.
|
|
Discovering Disconnected Antennas
|
The show ap antenna status command has been introduced to display the operational antenna status of APs. This command helps in identifying broken or disconnected antennas and thus, helps in faster troubleshooting.
|
|
DPI Classification to Support App-based PBR
|
ArubaOS now supports an ability to classify applications from the first packet. This allows Aruba to use application classification information for Policy Based Routing () and Dynamic Path Steering (DPS).
|
|
Dynamic Packet Event Capture
|
ArubaOS now supports Dynamic Packet Capture. This feature automates packet captures on the AP, based on anomalous events detected by the APs.
|
|
Enabling DHCPv6 Relay-Option (Option 18 and Option 37)
|
The DHCPv6 Relay-Option (Option 18 and Option 37) feature allows the DHCPv6 relay agent to insert circuit and remote specific information in the form of a (type-length-value) into the client message, which is forwarded to the DHCPv6 server.
|
|
Enhancements to 530 Series and 550 Series Access Points
|
The 530 Series and 550 Series access points are now optimized for better power management based on the following scenarios:
-
For on E0 and on E1, the AP power changes to failover mode and gives priority to E0 port so that the overall power is .
-
For 802.3bt on E0 and on E1, the AP power changes to failover mode and gives priority to E0 port so that the overall power is 802.3bt.
For more information, see Aruba 530 Series Campus Access Points
Installation Guide and Aruba 555 Access Point
Installation Guide.
|
|
Enhancements to Air Slice
|
Air Slice is now supported on 500 Series, 500H Series, 510 Series, 530 Series, 570 Series and AP-555 access points.
|
|
Enhancements to Auth Requests From
|
ArubaOS now addresses and native scalability issues by increasing the max queue size for auth requests from across all platforms.
|
|
Enhancements to Dual 5GHz Mode Option on 340 Series APs
|
ArubaOS now allows to control the two radios separately in dual 5 mode of 340 Series access points. Hence, you can use different radio profiles—dot11a-radio-profile
for radio 0 and dot11a-secondary-radio-profile for radio 1 in dual 5 mode.
|
|
Enhancements to Fast BSS Transmission
|
Fast transition is now operational with WPA3-Enterprise CNSA mode with GCM-256 encryption.
|
|
Enhancements to HE Pooling
|
AirMatch now allows efficient use of available channels by dedicating specific number of channels to HE and non-HE radios.
|
|
Enhancements to Mesh Scanning Process
|
ArubaOS now allows users to configure how often the topology mesh scanning should be performed to find a better mesh link.
|
|
Fast Roaming with Mesh APs
|
ArubaOS now supports fast roaming for APs deployed in a wireless mesh network in fast
moving environments, such as buses or the subway. To support fast roaming, mobility mesh points perform a
scan of other mesh points in the background, and then choose the best neighbor to connect from all the
neighbors.
|
|
Firewall Policies
|
A description field has been added to capture the reason why an was created.
|
|
GRE tunnel traffic Load distribution
|
The traffic load passing through a tunnel can now be distributed across multiple CPUs instead of one to load balance the traffic.
|
|
IoT Authentication Type
|
ArubaOS introduces a new authentication type, Client Credentials. The new authentication type can be configured in the transport profile.
|
|
IoT Support for Azure IoT Hub
|
ArubaOS introduces a new transport type, Azure-IoTHub to send data to the Azure Hub. The new transport type can be configured in the transport profile.
|
|
IoT Dashboard
|
The IoT dashboard in the WebUI of the Mobility Controller displays the data transport and information of the devices in the network.
|
|
IoT Support for EnOcean Sensors
|
ArubaOS now supports all sub-1- -based sensors from EnOcean.
|
|
IoT Support for per Frame Filtering
|
ArubaOS now supports applying transport profile filters to each frame rather than on the device.
|
|
IoT Support for BLE Data forwarding for all Device Classes
|
ArubaOS now allows forwarding of data for all device classes.
|
|
IoT Support for Google Sensors
|
ArubaOS now supports Google sensors. Google is a leading provider of -based electronic devices.
|
|
IoT Support for Minew Sensors
|
ArubaOS now supports Minew sensors. Minew is a leading provider of -based electronic devices.
|
|
IoT Support for Solu-M Newton USBG2 GW
|
ArubaOS now supports Solu-M Newton USBG2 GW device.
|
|
|
Command modified to allow users to see the L3 redundant peer controller details along with active and standby controller details.
|
|
Microsoft Teams
|
ArubaOS now supports classification, prioritization, and visibility of Microsoft Teams voice and video calls differently from Skype for Business voice and video calls in a wireless environment. ArubaOS detects Teams calls initiated from the Teams client and also over the web browser.
|
|
NSS Usage
|
The output of the show ap debug system-status command displays the NSS usage. The NSS usage will be displayed only for AP-534, AP-535, and AP-555 access points.
|
|
Per-AP Override
|
The per-AP override feature allows to configure specific configuration at per-AP level to override AP group level
settings in the WebUI.
|
|
QOSMOS Image Upgrade
|
The QOSMOS proto bundle has been upgraded to 1.500-20 version.
|
|
Reserving IP Addresses
|
ArubaOS now allows to manually reserve IP addresses from a pool for specific devices or addresses in a large deployment. With manual IP reservation, managed devices can assign the same IP address to a client whenever it requests for a network connection.
|
|
Payload
|
ArubaOS 8.8.0.0 increments the output parameter, TAG of the show amon-sender stats-counters-all command to indicate the frames received from the receiver.
|
|
Role-based Robust Age-out Mechanism for Wired Clients
|
ArubaOS 8.8.0.0 introduces a Role-based Robust Age-out Mechanism for wired passive clients where a wired client, such as a printer, will not be deleted from the system without its network un-reachability being verified by first.
|
|
Session ACL on IPsec Map
|
Support for session on IPSec map allows to control the traffic flowing inside the IPSec tunnel by defining permit or deny rules as part of the session .
|
|
SNMP Trap Group
|
The trap groups allow to select specific traps to be configured within the group.
|
|
SNMP Trap on VLAN Probe Failure
|
A new trap, wlsxClusterVlanProbeStatus, is generated when probe fails.
|
|
Specify 802.1X auth timeout
|
ArubaOS now allows configuration of the authentication timeout option as suitable for customer environments.
|
|
Support for New Modem
|
7000 Series and 9000 Series controllers now support Netstick GLU-194ST Modem.
|
|
Support for 802.11mc Fine Timing Measurement Responder Mode
|
802.11mc Fine Timing Measurement (FTM) responder mode can be enabled on 500 Series, 500H Series, 510 Series, 530 Series, 550 Series, 560 Series, and 570 Series access points.
|
|
Support for SES-Imagotag Cloud TLS Authentication
|
ArubaOS now allows an AP to authenticate with SES-Imagotag ESL server and verify the . ArubaOS also supports channel 127 for SES Imagotag ESL.
|
|
Support for DHCP Pool for VIA VPN users
|
ArubaOS now supports getting a client IP address from an external server instead of internal pool.
|
|
Support for Web-Server Configuration and Custom Certificate in APs
|
To provide enhanced security, the following configurations available on controllers are applied to APs automatically when a virtual AP is created with authentication in bridge forwarding mode:
Web server profile configuration
Custom certificate
|
|
Troubleshooting Ethernet Related Issues
|
The output of the show ap debug system-status and show ap tech-support commands now display details related to ethernet ports. This helps in troubleshooting issues related to ethernet ports.
|
|
Updates to the Table
|
The Custom entry is replaced with the actual application name or protocol in the Services/Wireless Calls () table column .
|
|
Upgrading using Mobility Master File Server
|
The flash storage on the Mobility Master is used as a file server for live upgrade and this locally stored image will be downloaded by the managed devices using protocol.
|
|
Uplink MU-MIMO Transmission
|
ArubaOS now supports the uplink transmission of 802.11ax protocol for AP-535 and AP-555 access points. The uplink transmission helps in achieving throughput gains when applications need to upload a large amount of data.
|
|
VoIP Aware Scan Timer
|
ArubaOS now allows users to set the Aware Scan Timer range between 50 ms–1000 ms.
|
|
WebUI Support for Users with ap-provisioning Role
|
ArubaOS now extends WebUI support for users with ap-provisioing role.
|
|
WebUI Support to Display Redundant Mobility Masters
|
Starting from ArubaOS 8.8.0.0, the WebUI displays the list of all Mobility Masters including Layer 2 and Layer 3 Redundancy Mobility Masters in the Mobility Master node hierarchy. Also, the text Active is displayed next to the name of the Mobility Master indicating that the particular Mobility Master is active. This text is displayed only when redundancy is configured.
|
|
Wi-Fi Uplink Support in Tri-Radio and Dual 5 GHz Mode
|
ArubaOS now allows Uplink feature on AP-345 access points in dual 5 mode, and on AP-555 access points in tri-radio mode.
|
|
WMS Reclassification
|
For each classification type that is sent to an AP, the AP now sends a PROBE_RAP_ACK message to inform WMS that it has received the classification type.
|
|
Zero-Wait Dynamic Frequency Selection
|
Dynamic Frequency Selection (), a mandate for radio systems operating in the 5 to identify and avoid interference with systems now supports the zero-wait feature. The zero-wait feature provides seamless change of channels and avoids the one minute outage when APs change channels. Hence, stations do not lose its connectivity when an AP moves to a channel.
|