Legal Disclaimer: The resource assets in this website may include abbreviated and/or legacy terminology for HPE Aruba Networking products. See www.arubanetworks.com for current and complete HPE Aruba Networking product lines and names.
Enabling Automatic Allowlisting of Branch Gateway on a VPNC
To allowlist a Branch Gateway automatically on a VPNC, complete the following steps:
-
In the WebUI, select a group in which VPNCs are provisioned.
The dashboard context for a group is displayed.
-
Under
, click > .A list of gateways is displayed in the
view. -
Click the Config icon.
The gateway group configuration page is displayed.
-
If you are in the
, click to access the advanced configuration options. -
Click
> . -
Select the
as . -
Under
, configure the following:-
Turn on the
toggle switch. -
Enter a passphrase for VPN Virtual Private Network. VPN enables secure access to a corporate network when located remotely. It enables a computer to send and receive data across shared or public networks as if it were directly connected to the private network, while benefiting from the functionality, security, and management policies of the private network. This is done by establishing a virtual point-to-point connection through the use of dedicated connections, encryption, or a combination of the two. peer authentication. Ensure that the same passphrase is configured on the Branch Gateways.
-
Select any of the following encryption methods from the
drop-down list:-
TPM Trusted Platform Module. TPM is an international standard for a secure cryptoprocessor, which is a dedicated microcontroller designed to secure hardware by integrating cryptographic keys into devices. certificate for mutual authentication.
—To use the built-in -
CA Certificate Authority or Certification Authority. Entity in a public key infrastructure system that issues certificates to clients. A certificate signing request received by the CA is converted into a certificate when the CA adds a signature generated with a private key. See digital certificate. and Server certificates are uploaded to the certificate inventory on HPE Aruba Networking Central. For more information, see Certificates.
—To use custom certificates for mutual authentication. If you want to use custom certificates, ensure that the
-
-
-
Click Save Settings.
-
Expand Advanced, and configure the following:
-
To apply a route ACL Access Control List. ACL is a common way of restricting certain types of traffic on a physical port. to the IPsec Internet Protocol security. IPsec is a protocol suite for secure IP communications that authenticates and encrypts each IP packet in a communication session. session, select an ACL from the drop-down.
-
To apply a session ACL, select an ACL from the
drop-down. -
If you want to assign overlapping uplink IP addresses across the branches, enable the
feature and then enter the IP address range configured for the Branch Pool.
-
-
Click
.
This animation will help you to allowlist a Branch Gateway automatically on a VPNC.