Onboarding IDPS-Supported Gateways

Which devices are supported by IDPS?

Starting Classic Central 2.5.8.0 (AOS 10.6) HPE Aruba Networking 9240 and 9114 gateways with IDPS Intrusion Detection and Prevention System (IDPS) monitors, detects, and prevents threats in the inbound and outbound traffic. Aruba IDPS provides an extra layer of protection that actively analyzes the network and takes actions on the traffic flows based on the defined rules. It inspects data packets, and if any threat is identified, acts real-time to prevent it. in branch and mobility gateway persona are supported. For the list of all IDPS-supported gateways, see Preparing to add IDPS-Supported Gateways.

HPE Aruba Networking 9106 does not support IDPS although the SKU Stock Keeping Unit. SKU refers to the product and service identification code for the products in the inventory. is still 91xx (which is applied to 9114 and 9106).

What is the difference in on-boarding an IDPS-enabled gateway or other gateways?

There is no difference in on-boarding an IDPS-enabled gateway or other gateway. Only the IDPS-enabled gateway will require a reboot after the onboarding.

Do I need to on-board devices to Classic Central before assigning subscriptions?

Yes, you must on-board devices to Classic Central before assigning subscriptions.

How to on-board an IDPS gateway for a new customer?

For a new customer, the IDPS-supported gateways associated with your account are automatically retrieved. If the device you purchased does not show up in your account, you can manually add it.

To verify if the devices are added to the device inventory, see the Managing Devices section in the HPE GreenLake Edge to Cloud Platform User Guide.

How to on-board a gateway with IDPS support for an existing customer ?

For an existing customer with IDPS supported gateways, you must remove the devices from the production cluster and then on-board the devices to the new cluster.

For more information, see the Managing Devices section in the HPE GreenLake Edge to Cloud Platform User Guide.

How to on-board a gateway without IDPS support for an existing customer?

For an existing customer without IDPS supported gateways, you should purchase IDPS supported gateways and then on-board the devices to the new cluster.

For more information, see the Managing Devices section in the HPE GreenLake Edge to Cloud Platform User Guide.

How do I upgrade the firmware on the device?

You can manually upgrade or set the compliance for gateways in standalone mode to upgrade the firmware. To upgrade the device firmware, see Managing Firmware Upgrades and Manage Firmware Upgrades for Gatewayss.

I see "single sign on enabled". How do I change or disable this?

If your email address is in the arubanetworks.com or hpe.com domain, the single sign on is enabled. You can change or disable through SAML Security Assertion Markup Language. SAML is an XML-based framework for communicating user authentication, entitlement, and attribute information. SAML enables single sign-on by allowing users to authenticate at an identity provider and then access service providers without additional authentication. SSO Single Sign-On. SSO is an access-control property that allows the users to log in once to access multiple related, but independent applications or systems to which they have privileges. The process authenticates the user across all allowed resources during their session, eliminating additional login prompts. configuration.

For more information, see the HPE GreenLake Single Sign-On (SSO) Management section in the HPE GreenLake Edge to Cloud Platform User Guide.

Why do I see the "Server Details" drop-down menu with a list of names? Which one should I select?

The Registration page displays a list of zones in which the Classic Central servers are available for account creation. Based on the country you select, the Classic Central server is automatically selected. If you want your account and Classic Central data to reside on a server from another zone, you can select an Classic Central server from the list of available servers. For more information, see Classic Central Online Help.

I see a drop-down list on the top right where I can select languages. What other languages are supported? 

Gateway IDS/IPS supports a total of seven different languages. The languages supported are English, Spanish, Brazilian Portuguese, French, German, Japanese, and Chinese.