Allowlist Synchronization

ArubaOS allows managed devices to synchronize their remote AP Remote APs extend corporate network to the users working from home or at temporary work sites. Remote APs are deplyed at branch office sites and are connected to the central network on a WAN link. allowlists with the Aruba Activate cloud-based services. When you configure Activate allowlist synchronization, the managed device will securely contact the Activate server and download the contents of the allowlist on the Activate server to the allowlist on the managed device. The managed device and the Activate server must have layer-3 connectivity to communicate.

By default, this feature will both add new remote AP Remote APs extend corporate network to the users working from home or at temporary work sites. Remote APs are deplyed at branch office sites and are connected to the central network on a WAN link. entries to the managed device allowlist and delete any obsolete entries on the managed device allowlist that were not on the Activate server allowlist. Select the add-only option to allow this feature to add or modify entries, but not delete any existing entries.

The following example enables the Activate allowlist service on the managed device. The add-only parameter allows only the addition of entries to the Activate remote AP Remote APs extend corporate network to the users working from home or at temporary work sites. Remote APs are deplyed at branch office sites and are connected to the central network on a WAN link. allowlist database. This parameter is enabled by default. If this setting is disabled, the activate-allowlist-download command can both add and remove entries from the Activate database.

(host) [md] (config)# activate

(host) [md] (activate) #username

(host) [md] (activate) #password pass

(host) [md] (activate) #allowlist-enable

(host) [md] (activate) #add-only

The following command prompts the managed device to synchronize its remote AP Remote APs extend corporate network to the users working from home or at temporary work sites. Remote APs are deplyed at branch office sites and are connected to the central network on a WAN link. allowlist with the associated allowlist on the Activate server:

(host) [md] (config) #activate allowlist download