Configuring LAN Interface for an AOS-10 Mobility Gateway

This section focuses on the LAN Local Area Network. A LAN is a network of connected devices within a distinct geographic area such as an office or a commercial establishment and share a common communications line or wireless link to a server. configuration of the AOS-10 Mobility Gateways. By default, LAN interfaces have LLDP Link Layer Discovery Protocol. LLDP is a vendor-neutral link layer protocol in the Internet Protocol suite used by network devices for advertising their identity, capabilities, and neighbors on an IEEE 802 local area network, which is principally a wired Ethernet. enabled and a role-based security. However, this setting can be changed when you configure security policies.

To configure VLANS Virtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN. on Mobility Gateway:

  1. In the WebUI, set the filter to an AOS-10Mobility Gateway group that contains at least one Mobility Gateway.
    The group dashboard is displayed.
  2. Under Manage, click Devices > Gateways.
    A list of gateways is displayed in the List view.
  3. Click a gateway under Device Name.
    The gateway device dashboard is displayed.
  4. Under Manage, Click Device.
    The gateway configuration page is displayed.
    If you are accessing the Mobility Gateway configuration page for the first time, the Guided Setup wizard opens automatically. Otherwise, click the Guided Setup.
  5. In the LAN > VLAN page, select the IP DHCP server check box for the gateways to act as DHCP Dynamic Host Configuration Protocol. A network protocol that enables a server to automatically assign an IP address to an IP-enabled device from a defined range of numbers configured for a given network.  servers.
  6. Click the + icon in the VLANs table to add a new VLAN.
  7. Enter a Name for the VLAN.
  8. Enter the VLAN ID.
  9. IPV4 Address—Enter a unique static IP address for each gateway in the group or a common address for all gateways in the group.
  10. Netmask—Enter the subnet Subnet is the logical division of an IP network. mask of the IP address.

    Ensure that the VLAN used here is configured as a non-routable VLAN, as the VLAN overlaps with the other gateways.

  11. To configure branch gateways as DHCP server, turn on the Act as DHCP server toggle switch and configure the following parameters:
  12. Turn on the Enable DHCP relay toggle switch to relay the incoming DHCP requests to an external DHCP server. Select this option when centralized DHCP servers are deployed to provide addressing to branch devices or if device profiling is performed by services such as HPE Aruba Networking ClearPass ClearPass is an access management system for creating and enforcing policies across a network to all devices and applications. The ClearPass integrated platform includes applications such as Policy Manager, Guest, Onboard, OnGuard, Insight, Profile, QuickConnect, and so on..
    1. Click the + icon in the External DHCP Server table.
    2. Add the IPV4 addresses.
  13. Click Save.
  14. Click Next.

    The LAN Ports page is displayed.

  15. To add a LAN port, click the + icon in the LAN Ports/Port Channel table.
  16. Enter a NAME for the port.
  17. Select a port from the Port drop-down list.
  18. Select one of the following VLAN modes:
    • Access—Select this option to allow the LAN port to carry traffic only for the VLAN to which they are assigned. All transmitted and received traffic on the port is untagged.
      • Access VLAN—Select the VLAN ID assigned to the port or port channel.
    • Trunk— Select this option to allow the LAN port to carry traffic for multiple VLANs. If you select the Trunk mode, configure a list of allowed VLANs.
      • Native VLAN—Select the untagged VLAN ID for the port or port channel.
      • Allowed VLAN—Enter the range of VLAN IDs assigned to the port or port channel including the Native VLAN.
  19. Select the Client Authentication checkbox to make the VLAN port as untrusted. Untrusted VLAN ports support cloud guest and Cloud Auth Cloud Authentication and Policy allows you to configure user and client access policies that provide a secured, cloud-based network access control (NAC). in Mobility Gateways.

  20. Select the LLDP Enabled checkbox to allow network devices advertise their identity and capabilities on a LAN.

  21. Select the Jumbo Frames checkbox to allow data frames that are larger than 1500 bytes and includes the Layer 2 header and Frame Check Sequence (FCS).

  22. Click Save.
  23. Click Next.
  24. Review the Summary page and click Finish.

    The Finish button is disabled if there are any errors in the configuration. Resolve the errors to proceed to the next step.

  25. Click Continue to apply the Mobility Gateway settings.

The following GIF illustrates the workflow: