Packet Capture

HPE Aruba Networking Central On-Premises allows you to interact and launch a targeted packet capture on a client connected to a specific access point. Users with read-write and admin role can use live packet capture for troubleshooting devices. After you start packet capture from the UI User Interface. , Aruba Central notifies the access point and the switch. The default packet capture duration is 15 minutes. After you start packet capture, use the toggle button to stop packet capture, or go back to the Client Overview page.

Starting Packet Capture

You can start packet capture from the wireless or wired clients page. Packet capture can be done at a site level (wireless client only) or for a selected client.

At a site level, HPE Aruba Networking Central On-Premises does not support Packet Capture in the following scenarios:

  • For a wired client connected to a switch.

  • If there are more than 25 APs in a site.

To start packet capture at a site level, perform the following steps:

  1. In the WebUI, set the filter to a Site that contains at least one device. The dashboard context for the selected site is displayed.
  2. Under Analyze, click Live Events.The Live Events page is displayed.
  3. Enter the MAC Media Access Control. A MAC address is a unique identifier assigned to network interfaces for communications on a network.  address of the client.
  4. Enable the Packet Capture toggle button to start live packet capture for the selected client.
  5. Click Start Troubleshooting.

To start packet capture for a wireless or wired client, perform the following steps:

  1. In the WebUI, set the filter to one of the options under Groups, Labels, or Sites. For all devices, set the filter to Global.

    The dashboard context for the selected filter is displayed.

  2. Under Manage, click Clients. The clients overview page is displayed in List view.
  3. By default, the Clients table displays a unified list of clients.
  4. Click the name of the wireless or wired client to open the corresponding Client Details page. If there are many clients connected to the network, click Wireless or Wired to filter the clients connected to the wireless or wired client respectively.
  5. Enter the client name in the Client Name column, and click the client name.
  6. Under Analyze, click Live Events. The Live Events page is displayed. The client live troubleshooting starts automatically for the selected client.
  7. Click Stop Troubleshooting to stop live troubleshooting.
  8. Enable the Packet Capture toggle button to start live packet capture for the selected client.
  9. Click Start Troubleshooting to live troubleshoot the selected client. Live packet capture starts for the selected client.

    The live troubleshooting session runs for a duration of 15 minutes. After the live troubleshooting session ends, a Download PCAP text appears above the live events table. Click Download PCAP to download the generated pcap file on your local system.

Packet capture can only be enabled or disabled before live troubleshooting is started. You cannot enable or disable packet capture while a live troubleshooting session is in progress.

Packet capture is not supported in single node deployments.