Gateway Interface Configuration Profile
The Gateway Interface Configuration profile card allows you to view all the ports, configure LAGs, and modify port settings for gateways. Link aggregation group (LAG) bundles multiple physical Ethernet links into one logical link.
Link aggregation has the following benefits:
-
Increased bandwidth beyond the limits of single link. In an aggregate link, traffic is distributed across the member ports.
-
Improved link reliability. The member ports dynamically back up one another. When a member port fails, its traffic is automatically switched to other member ports.
You can add, modify, or delete LAGs and also modify port settings.
Editing a Gateway Interface Configuration Profile
To edit a Gateway Interface Configuration profile, complete the following steps:
-
In the HPE Aruba Networking Central landing page, click the configuration
icon.The Profiles tab is displayed.
-
In the left navigation menu, select Devices.
The Devices list view is displayed.
-
Select a gateway from the list.
The Profiles Management view for the selected gateway is displayed.
-
On the Interfaces card, click Gateway Interface Configuration.
-
Alternatively, you can complete the following steps:
-
On the Interfaces card, click Manage.
-
On the Gateway Interface Configuration card, click Manage.
The Ports list view is displayed by default. Additionally, the Gateway Interface Configuration page displays the faceplate representation of the selected gateway.
-
-
Click anywhere on the row of the port you want to modify.
The Configure Interface side panel is displayed.
-
Configure the port parameters as described in the following table.
Parameter
Description
Port
Displays the selected port number.
Description
Enter the description for the port.
Use Port Profile
Select the check box to use a port profile. When Use Port Profile is selected, you need to select a port profile.
-
Port Profile*—Select a port profile from the drop-down list or click New Port Profile to configure a new port profile.
Note:In the Gateway Interface Configuration profile, the default configuration for a Ethernet interface is also applicable to the gateway Port profile. For more information, see Port Profile for Gateways.
Enable Port
Select the check box to enable the port.
Type
Select the port type from the drop-down list.
-
LAN
-
WAN
Speed
Select the speed mode of the port from the drop-down list:
-
Auto
-
10Mbps
-
1000Mbps
-
1Gbps
Duplex
Select one of the following values for duplex operation of the port:
-
Auto
-
Full
-
Half
Speed Mode
Select the speed mode of the port from the drop-down list:
-
Noneuto
-
1Gbps
-
10Gbps
-
40Gbps
Note:The speed mode configuration is applicable only to port 0/0/0, 0/0/4, 0/0/8, and 0/0/12 of HPE Aruba Networking 7280 gateway platforms.
Client Authentication
Select this check box to set the port as trusted.
Network Parameters VLAN Mode
Select a VLAN mode from the drop-down list:
-
Access—Select this check box to set the access mode to carry traffic only for the VLAN to which they are assigned. When Access mode is selected, select a VLAN from the Access VLAN drop-down list. Only one VLAN ID can be assigned to each access interface. In Access mode, VLAN Policy configuration is not applicable.
-
Trunk—Select this check box to allow a port to carry traffic for multiple VLANs. When Trunk mode is selected, select a VLAN from the Native VLAN drop-down list and enter the range of VLAN IDs assigned in the Allowed VLANsfield. In Trunk mode, Port Policy configuration is not applicable.
Note:Port will always be TRUSTED in both Access and Trunk mode.
Security Client Authentication When you select this check box, the VLANs are untrusted and you must assign an authentication policy to the selected VLANs to complete the client authentication configuration. Port Policy
Select one of the security levels from the following options:
-
Inbound & Outbound—Select this check box to apply a firewall policy for the incoming and outgoing traffic.
-
Inbound Network Policy —Select a network policy for the incoming traffic from the drop-down list.
-
Outbound Network Policy—Select a network policy for the outgoing traffic from the drop-down list.
-
-
Per session—Select this check box to apply a firewall policy for the session.
-
Network Policy—Select a network policy for the current session from the drop-down list.
-
-
Not defined—Select this check box if you do not want to define any policy.
PoE Select this check box to set the port interface as a PoE source. Jumbo MTU Select this check box to enable Jumbo frame MTU configured on the interface. This setting is functional only if the Jumbo frame processing is enabled in the firewall policies. Spanning Tree
Select this check box to enable spanning tree protocol on the port.
-
Cost—Specify the spanning tree path cost of the port. The allowed range is 1-65535. The default value is 2000.
-
Priority—Specify the spanning tree priority of the port. The allowed range is 0-255. The default value is 128.
-
Point-to-point—Select this option to enable the port as a point-to-point link. By default, this option is disabled.
-
BPDU guard—Enable BPDU guard to protect the port from receiving STP BPDUs. However, the port can transmit STP BPDUs.
-
Port Fast—Select this option to enable forwarding of traffic from the port. By default, this option is disabled.
LLDP transmission
Select this check box to transmit LLDP packets and configure the following:
-
Transmit Interval—Specify the interval between LLDP TLV transmission in seconds. The supported range is 1-3600 seconds and the default value is 30 seconds.
-
Transmit Hold—Enter a value from 1-100. This value is multiplied by the transmit interval to determine the number of seconds to cache the learned LLDP information before it is cleared. If the transmit-hold value is at the default value of 4, and the transmit interval is at its default value of 30 seconds, then the learned LLDP information is cached for 4 x 30 seconds, or 120 seconds.
-
Fast Transmit Interval—Set the LLDP fast transmission interval in seconds. The supported range is 1-3600. The default value is 1.
-
Fast Transmit Count—Enter a value from 1-100. This value is multiplied by the fast transmit interval to determine the number of seconds to cache the learned LLDP information before it is cleared. If the fast transmit-hold value is at the default value of 4, and the fast transmit interval is at its default value of 1 second, then the learned LLDP information is cached for 4 x 1 seconds, or 4 seconds.
LLDP receive
Select this check box to enable the port to receive LLDP packets.
LLDP-MED
Select this check box to enable LLDP-MED on the port.
Port Monitoring
Select this to enable the switch to send a copy of all network packets seen on one port to another port.
-
Configuring LAG for Ports
To configure LAG for gateway ports, complete the following steps:
-
In the HPE Aruba Networking Central landing page, click the configuration
icon.The Profiles tab is displayed.
-
In the left navigation menu, select Devices.
The Devices list view is displayed.
-
Select a gateway from the list.
The Profiles Management view for the selected gateway is displayed.
-
On the Interfaces card, click Gateway Interface Configuration.
-
Alternatively, you can complete the following steps:
-
On the Interfaces card, click Manage.
-
On the Gateway Interface Configuration card, click Manage.
The Ports list view is displayed by default. Additionally, the Gateway Interface Configuration page displays the faceplate representation of the selected gateway.
-
-
Click the LAGs tab.
The pre-defined LAGs list view, from 0 to 7, is displayed.
-
Click anywhere on the row of the port you want to modify.
The Edit LAG side panel is displayed.
-
Configure the Switch Interface Configuration parameters as described in the following table.
-
Hover over the port to be deleted and click the delete
icon. -
Click Delete.
-
Static—Select this check box to enable the static protocol.
-
LACP—Select this check box to enable the Link Aggregation Control Protocol(LACP) protocol. Select the LACP mode; Active or Passive.
-
Access—Select this check box to set the access mode to carry traffic only for the VLAN to which they are assigned. When Access mode is selected, select a VLAN from the Access VLAN drop-down list. Only one VLAN ID can be assigned to each access interface. In Access mode, VLAN Policy configuration is not applicable.
-
Trunk—Select this check box to allow a port to carry traffic for multiple VLANs. When Trunk mode is selected, select a VLAN from the Native VLAN drop-down list and enter the range of VLAN IDs assigned in the Allowed VLANsfield. In Trunk mode, Port Policy configuration is not applicable.
Note:Port will always be TRUSTED in both Access and Trunk mode.
-
Cost—Specify the spanning tree path cost of the port. The allowed range is 1-65535. The default value is 2000.
-
Priority—Specify the spanning tree priority of the port. The allowed range is 0-255. The default value is 128.
-
Point-to-point—Select this option to enable the port as a point-to-point link. By default, this option is disabled.
-
BPDU guard—Enable BPDU guard to protect the port from receiving STP BPDUs. However, the port can transmit STP BPDUs.
-
Port Fast—Select this option to enable forwarding of traffic from the port. By default, this option is disabled.
-
Click Save.
The Gateway Interface Configuration list displays the updated LAG row in the LAGs list view.
|
Parameter |
Description |
|---|---|
|
General |
To configure additional ports for LAG, click the Add To delete a port, complete the following steps: |
|
LAG ID |
Displays the LAG ID for the interface. |
|
Description |
Enter the description for the LAG. This parameter is available only for AOS-CX switches. |
|
Admin State |
Select this check box to set the user state of the port interface as admin. This option is enabled by default. |
|
Client Authentication |
Select this check box to set the port as trusted. |
|
Protocol |
Select a protocol type from the drop-down list: |
| VLAN Mode |
|
|
Jumbo MTU |
Select this check box to enable Jumbo frame MTU configured on the interface. This setting is functional only if the Jumbo frame processing is enabled in the firewall policies. |
|
Spanning Tree |
Select this check box to enable spanning tree protocol on the port. This option is enabled by default. |
To search for a port or LAG ID, type the ID in the search bar. The search bar displays dynamic results as soon as you start typing.
To reset a LAG, complete the following steps:
-
Hover over a LAG row and click the ellipsis
icon. -
Click Reset LAG.
The Reset LAG pop-up is displayed.
-
Click Reset.
A Port Profile template can be applied to a maximum of 10 interfaces at a time.