Legal Disclaimer: The resource assets in this website may include abbreviated and/or legacy terminology for HPE Aruba Networking products. See www.arubanetworks.com for current and complete HPE Aruba Networking product lines and names.
Enabling Branch Gateways to Automatically Connect to VPNCs
To enable Branch Gateways to automatically connect to VPNCs, complete the following steps:
- To enable a Branch Gateway group or Branch Gateway to automatically connect to VPNC, complete either one of these steps:
-
To select a gateway group:
-
In the HPE Aruba Networking Central app, set the filter to a group that contains at least one Branch Gateway.
The dashboard context for a group is displayed.
-
Under
, click > .A list of gateways is displayed in the List view.
-
Click
.The configuration page is displayed for the selected group.
-
-
To select a gateway:
-
In the HPE Aruba Networking Central app, set the filter to Global or a group that contains at least one Branch Gateway.
-
Under
, click > .A list of gateways is displayed in the List view.
-
Click a gateway under
.The dashboard context for the gateway is displayed.
-
Under
, click .The gateway device configuration page is displayed.
-
-
If you are in the
, click to access the advanced configuration options. -
Click
> . -
Select the
as . -
Under Spoke Settings, turn on the
toggle switch. -
Enter a passphrase for VPN Virtual Private Network. VPN enables secure access to a corporate network when located remotely. It enables a computer to send and receive data across shared or public networks as if it were directly connected to the private network, while benefiting from the functionality, security, and management policies of the private network. This is done by establishing a virtual point-to-point connection through the use of dedicated connections, encryption, or a combination of the two. peer authentication. Ensure that the same passphrase is configured on the Branch Gateways.
-
If required, advertise branch VLANs Virtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN. to all hubs. For more information, see Advertising Branch Subnets to Hub Sites.
- Click from the table and add the following information:
-
MAC Media Access Control. A MAC address is a unique identifier assigned to network interfaces for communications on a network. address of the primary VPNC.
—Enter the -
VPNC deployed at your site, enter the MAC address of the backup VPNC.
—If you have a backup -
VPNC.
—Enter the IP address of the -
VPNC, enter the VLAN of WAN Wide Area Network. WAN is a telecommunications network or computer network that extends over a large geographical distance. uplink VLAN interface of the Branch Gateway on which the VPN tunnel must initiate.
—If you have more than one -
Select any of the following encryption methods from the
drop-down list:-
TPM Trusted Platform Module. TPM is an international standard for a secure cryptoprocessor, which is a dedicated microcontroller designed to secure hardware by integrating cryptographic keys into devices. certificate for mutual authentication.
—To use the built-in -
CA Certificate Authority or Certification Authority. Entity in a public key infrastructure system that issues certificates to clients. A certificate signing request received by the CA is converted into a certificate when the CA adds a signature generated with a private key. See digital certificate. and Server certificates are uploaded to the certificate inventory on HPE Aruba Networking Central. For more information, see Certificates.
—To use custom certificates for mutual authentication. If you want to use custom certificates, ensure that the
-
-
If required, advertise branch VLANs to this hub. For more information, see Advertising Branch Subnets to Hub Sites.
-
Click
.
This animation will help you to enable Branch Gateways to automatically connect to VPNCs, complete the following steps.