App Recognition and Control Profile

The Application Recognition and Control (ARC) feature enables administrators to monitor, analyze, and control application usage and bandwidth consumption in their networks. To provide in-depth visibility and insightful reporting of the applications in use, it uses Deep Packet Inspection (DPI) to recognize network applications and control them based on configurations. Based on application usage, network administrators can configure ACLs to control application access, prioritize mission-critical applications, and improve quality of experience by fine tuning bandwidth allocation per application or application category.

Creating a App Recognition and Control Profile

To create a App Recognition and Control profile, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the configurationicon.
    The Profiles tab is displayed.

  2. In the left navigation menu, select one of the following options:

    • Library—This is the default selection. If you create profiles in the Library, then you must assign scope and device functions to the profiles. For more information, see Assigning Scope to a App Recognition and Control Profile.

    • Global—If you create profiles at the Global level, then the profiles have Global scope assigned by default.

    • Site Collections—If you create profiles at the Site Collections level, then the profiles have site collection scope assigned by default.

    • Sites—If you create profiles at the Site level, then the profiles have site scope assigned by default.

    • Devices—If you create profiles at the Device level, then the profiles have device scope assigned by default.

    • Device Groups—If you create profiles at the Device Group level, then the profiles have device group scope assigned by default.

    Note:

    • To create profiles at the Global level, select the device type from the Device Function drop-down list before step 4.
    • To create profiles at the Site Collections, Sites, Devices, and Device Group level, complete the following steps before step 4:
      1. Select either Site Collection, Site, Deviceor Device Group from the left navigation menu depending on the scope of your configuration.
      2. Select either of the user created site collection, site, device, or device group from the list view depending on the scope.
      3. Select the device type from the Device Function drop-down list.

  3. On the Application Experience card, click App Recognition and Control.

    The App Recognition and Control list view is displayed.

    Alternatively, you can complete the following steps:

    1. On the Application Experience card, click Manage.

    2. On the App Recognition and Control card, click Manage.

  4. Click Create Profile.
    The Create Profile side panel is displayed.

  5. Enter the App Recognition and Control profile parameters:

    • Create as a local profile— Select this option if you want to configure this profile as local.

      Note:

      The Create as a local profile option is available at the Global, Site Collections, Sites, Devices, and Device Groups levels; it is not available at the Library level.

    • Name—Enter a name of the App Recognition and Control profile.

    • Description—Enter a description for the App Recognition and Control profile.

    • Domain Name— Enter a domain name for the App Recognition and Control profile.

    • Enable Application Recognition—Select this check box to enable application recognition.

    • Web Content Classification—Select this check box to filter URLs based on website categories and security reputation score.

    • App Performance Monitoring—Select this check box to enable monitoring of the application performance.

    • Gateway Specific Parameters—Select this check box to configure the gateway-specific parameters for the App Recognition and Control profile.

      • Firewall Visibility—Allows devices to log all firewall sessions.

      • Drop Packet During Webcc Miss—Select this check box to drop the packets that do not match any web content category or reputation levels.

      • URL to redirect to blocked session—Enter a URL to redirect the users when they access blocked sessions.

    • Switch Specific Parameters—Select this check box to configure the switch-specific parameters for the App Recognition and Control profile.

      • Limit Exceed—Select the action to be performed when the bandwidth limit is exceeded, from the drop-down menu.

  6. Click Create to add the App Recognition and Control profile.

    The newly created profile is displayed in the App Recognition and Control list.

Assigning Scope to a App Recognition and Control Profile

You must assign a scope and device function to a App Recognition and Control profile created in the Library.

To assign scope to a profile, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the configurationicon.
    The Profiles tab is displayed.

  2. Ensure that the default option Library is selected in the left navigation menu.

  3. On the Application Experience card, click App Recognition and Control.
    Alternatively, you can complete the following steps:

    1. On the Application Experience card, click Manage.

    2. On the App Recognition and Control card, click Manage.

    The App Recognition and Control list view is displayed.

  4. Select the device types from Device Function list.

  5. To add a scope, click the Addicon on the Scopes table.

  6. Select a scope from the following Scope Level options in the drop-down list.

    • Global—Selecting this option assigns the scope at the Global level.

    • Site Collections—Select the site collections from the Assign to Scope drop-down list.

    • Sites—Select the sites from the Assign to Scope drop-down list.

    • Devices—Select the devices from the Assign to Scope drop-down list.

    • Device Groups—Select the device groups from the Assign to Scope drop-down list.

  7. Click Add.

    The Scopes table displays the newly added scopes.

  8. Click Assign.

    The App Recognition and Control list displays the device functions and number of scopes assigned to the profile.

  9. To unassign a App Recognition and Control profile, hover over the App Recognition and Control profile name, and select the Ellipsis icon, and click Unassign.
    The Unassign pop-up window is displayed.

    1. Select the checkbox to unassign a scope.

    2. Click Unassign.

  10. To delete a App Recognition and Control profile, hover over the App Recognition and Control profile name, and click the deleteicon.

  11. To customize the App Recognition and Control profile list, click the Customize Columns icon.

    For more information, see Customizing List.