Legal Disclaimer: The resource assets in this website may include abbreviated and/or legacy terminology for HPE Aruba Networking products. See www.arubanetworks.com for current and complete HPE Aruba Networking product lines and names.
Configuring LAN Interface for an AOS-10 Mobility Gateway
This section focuses on the LAN Local Area Network. A LAN is a network of connected devices within a distinct geographic area such as an office or a commercial establishment and share a common communications line or wireless link to a server. configuration of the AOS-10 Mobility Gateways. By default, LAN interfaces have LLDP Link Layer Discovery Protocol. LLDP is a vendor-neutral link layer protocol in the Internet Protocol suite used by network devices for advertising their identity, capabilities, and neighbors on an IEEE 802 local area network, which is principally a wired Ethernet. enabled and a role-based security. However, this setting can be changed when you configure security policies.
- In the WebUI, set the filter to an AOS-10Mobility Gateway group that contains at least one Mobility Gateway.
The group dashboard is displayed. - Under , click > .
A list of gateways is displayed in the view. - Click a gateway under .
The gateway device dashboard is displayed. - Under , Click .
The gateway configuration page is displayed.
If you are accessing the Mobility Gateway configuration page for the first time, the wizard opens automatically. Otherwise, click the . - In the LAN > page, select the check box for the gateways to act as DHCP Dynamic Host Configuration Protocol. A network protocol that enables a server to automatically assign an IP address to an IP-enabled device from a defined range of numbers configured for a given network. servers.
- Click the + icon in the table to add a new VLAN.
- Enter a for the VLAN.
- Enter the .
- —Enter a unique static IP address for each gateway in the group or a common address for all gateways in the group.
- —Enter the subnet Subnet is the logical division of an IP network. mask of the IP address.
Ensure that the VLAN used here is configured as a non-routable VLAN, as the VLAN overlaps with the other gateways.
- To configure branch gateways as DHCP server, turn on the toggle switch and configure the following parameters:
- —The network IP address.
- —The subnet mask of the network.
- —The IP address of the device used by clients if they want to communicate with devices outside of their subnet. By default, this is the Branch Gateway IP address for the particular VLAN, or the VRRP Virtual Router Redundancy Protocol. VRRP is an election protocol that dynamically assigns responsibility for a virtual router to one of the VRRP routers on a LAN. virtual IP, if configured.
- Reserve first—The first IPv4 address for the CIDR Classless Inter-Domain Routing. CIDR is an IP standard for creating and allocating unique identifiers for networks and devices. The CIDR IP addressing scheme is used as a replacement for the older IP addressing scheme based on classes A, B, and C. With CIDR, a single IP address can be used to designate many unique IP addresses. A CIDR IP address ends with a slash followed by the IP network prefix, for example, 192.0.2.0/24. range.
- Reserve last—The last IPv4 address for the CIDR range.
- —The DNS Domain Name System. A DNS server functions as a phone book for the intranet and Internet users. It converts human-readable computer host names into IP addresses and IP addresses into host names. It stores several records for a domain name such as an address 'A' record, name server (NS), and mail exchanger (MX) records. The Address 'A' record is the most important record that is stored in a DNS server, because it provides the required IP address for a network peripheral or element. domain name assigned to branch devices.
- —Type of the DNS server. You can use either a public DNS server or add a DNS server by selecting the DNS option.
- —If you use a , select the name of the DNS service provider from the list. For example, Google.
- —If you use a DNS server, enter the IP addresses here. You can specify up to eight IP addresses separated by a comma.
- Turn on the toggle switch to relay the incoming DHCP requests to an external DHCP server. Select this option when centralized DHCP servers are deployed to provide addressing to branch devices or if device profiling is performed by services such as HPE Aruba Networking ClearPass ClearPass is an access management system for creating and enforcing policies across a network to all devices and applications. The ClearPass integrated platform includes applications such as Policy Manager, Guest, Onboard, OnGuard, Insight, Profile, QuickConnect, and so on..
- Click the + icon in the table.
- Add the IPV4 addresses.
- Click .
- Click .
The page is displayed.
- To add a LAN port, click the + icon in the table.
- Enter a for the port.
- Select a port from the drop-down list.
- Select one of the following s:
- —Select this option to allow the LAN port to carry traffic only for the VLAN to which they are assigned. All transmitted and received traffic on the port is untagged.
- —Select the VLAN ID assigned to the port or port channel.
- — Select this option to allow the LAN port to carry traffic for multiple VLANs. If you select the mode, configure a list of allowed VLANs.
- —Select the untagged VLAN ID for the port or port channel.
- —Enter the range of VLAN IDs assigned to the port or port channel including the Native VLAN.
- —Select this option to allow the LAN port to carry traffic only for the VLAN to which they are assigned. All transmitted and received traffic on the port is untagged.
-
Select the Client Authentication checkbox to make the VLAN port as untrusted. Untrusted VLAN ports support cloud guest and Cloud Auth Cloud Authentication and Policy allows you to configure user and client access policies that provide a secured, cloud-based network access control (NAC). in Mobility Gateways.
-
Select the LLDP Enabled checkbox to allow network devices advertise their identity and capabilities on a LAN.
-
Select the Jumbo Frames checkbox to allow data frames that are larger than 1500 bytes and includes the Layer 2 header and Frame Check Sequence (FCS).
- Click Save.
- Click Next.
- Review the Summary page and click .
The Finish button is disabled if there are any errors in the configuration. Resolve the errors to proceed to the next step.
- Click to apply the Mobility Gateway settings.
The following GIF illustrates the workflow:
