Gateway Interface Configuration Profile

The Gateway Interface Configuration profile card allows you to view all the ports, configure LAGs, and modify port settings for gateways. Link aggregation group (LAG) bundles multiple physical Ethernet links into one logical link.

Link aggregation has the following benefits:

  • Increased bandwidth beyond the limits of single link. In an aggregate link, traffic is distributed across the member ports.

  • Improved link reliability. The member ports dynamically back up one another. When a member port fails, its traffic is automatically switched to other member ports.

You can add, modify, or delete LAGs and also modify port settings.

Editing a Gateway Interface Configuration Profile

To edit a Gateway Interface Configuration profile, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the configurationicon.

    The Profiles tab is displayed.

  2. In the left navigation menu, select Devices.

    The Devices list view is displayed.

  3. Select a gateway from the list.

    The Profiles Management view for the selected gateway is displayed.

  4. On the Interfaces card, click Gateway Interface Configuration.

  5. Alternatively, you can complete the following steps:

    1. On the Interfaces card, click Manage.

    2. On the Gateway Interface Configuration card, click Manage.

    The Ports list view is displayed by default. Additionally, the Gateway Interface Configuration page displays the faceplate representation of the selected gateway.

  6. Click anywhere on the row of the port you want to modify.

    The Configure Interface side panel is displayed.

  7. Configure the port parameters as described in the following table.

    Parameter

    Description

    Port

    Displays the selected port number.

    Description

    Enter the description for the port.

    Use Port Profile

    Select the check box to use a port profile. When Use Port Profile is selected, you need to select a port profile.

    • Port Profile*—Select a port profile from the drop-down list or click New Port Profile to configure a new port profile.

      Note:

      In the Gateway Interface Configuration profile, the default configuration for a Ethernet interface is also applicable to the gateway Port profile. For more information, see Port Profile for Gateways.

    Enable Port

    Select the check box to enable the port.

    Type

    Select the port type from the drop-down list.

    • LAN

    • WAN

    Speed

    Select the speed mode of the port from the drop-down list:

    • Auto

    • 10Mbps

    • 1000Mbps

    • 1Gbps

    Duplex

    Select one of the following values for duplex operation of the port:

    • Auto

    • Full

    • Half

    Speed Mode

    Select the speed mode of the port from the drop-down list:

    • Noneuto

    • 1Gbps

    • 10Gbps

    • 40Gbps

    Note:

    The speed mode configuration is applicable only to port 0/0/0, 0/0/4, 0/0/8, and 0/0/12 of HPE Aruba Networking 7280 gateway platforms.

    Client Authentication

    Select this check box to set the port as trusted.

    Network Parameters

    VLAN Mode

    Select a VLAN mode from the drop-down list:

    • Access—Select this check box to set the access mode to carry traffic only for the VLAN to which they are assigned. When Access mode is selected, select a VLAN from the Access VLAN drop-down list. Only one VLAN ID can be assigned to each access interface. In Access mode, VLAN Policy configuration is not applicable.

    • Trunk—Select this check box to allow a port to carry traffic for multiple VLANs. When Trunk mode is selected, select a VLAN from the Native VLAN drop-down list and enter the range of VLAN IDs assigned in the Allowed VLANsfield. In Trunk mode, Port Policy configuration is not applicable.

      Note:

      Port will always be TRUSTED in both Access and Trunk mode.

    Security  
    Client Authentication When you select this check box, the VLANs are untrusted and you must assign an authentication policy to the selected VLANs to complete the client authentication configuration.

    Port Policy

    Select one of the security levels from the following options:

    • Inbound & Outbound—Select this check box to apply a firewall policy for the incoming and outgoing traffic.

      • Inbound Network Policy —Select a network policy for the incoming traffic from the drop-down list.

      • Outbound Network Policy—Select a network policy for the outgoing traffic from the drop-down list.

    • Per session—Select this check box to apply a firewall policy for the session.

      • Network Policy—Select a network policy for the current session from the drop-down list.

    • Not defined—Select this check box if you do not want to define any policy.

    PoE Select this check box to set the port interface as a PoE source.
    Jumbo MTU Select this check box to enable Jumbo frame MTU configured on the interface. This setting is functional only if the Jumbo frame processing is enabled in the firewall policies.

    Spanning Tree

    Select this check box to enable spanning tree protocol on the port.

    • Cost—Specify the spanning tree path cost of the port. The allowed range is 1-65535. The default value is 2000.

    • Priority—Specify the spanning tree priority of the port. The allowed range is 0-255. The default value is 128.

    • Point-to-point—Select this option to enable the port as a point-to-point link. By default, this option is disabled.

    • BPDU guard—Enable BPDU guard to protect the port from receiving STP BPDUs. However, the port can transmit STP BPDUs.

    • Port Fast—Select this option to enable forwarding of traffic from the port. By default, this option is disabled.

    LLDP transmission

    Select this check box to transmit LLDP packets and configure the following:

    • Transmit Interval—Specify the interval between LLDP TLV transmission in seconds. The supported range is 1-3600 seconds and the default value is 30 seconds.

    • Transmit Hold—Enter a value from 1-100. This value is multiplied by the transmit interval to determine the number of seconds to cache the learned LLDP information before it is cleared. If the transmit-hold value is at the default value of 4, and the transmit interval is at its default value of 30 seconds, then the learned LLDP information is cached for 4 x 30 seconds, or 120 seconds.

    • Fast Transmit Interval—Set the LLDP fast transmission interval in seconds. The supported range is 1-3600. The default value is 1.

    • Fast Transmit Count—Enter a value from 1-100. This value is multiplied by the fast transmit interval to determine the number of seconds to cache the learned LLDP information before it is cleared. If the fast transmit-hold value is at the default value of 4, and the fast transmit interval is at its default value of 1 second, then the learned LLDP information is cached for 4 x 1 seconds, or 4 seconds.

    LLDP receive

    Select this check box to enable the port to receive LLDP packets.

    LLDP-MED

    Select this check box to enable LLDP-MED on the port.

    Port Monitoring

    Select this to enable the switch to send a copy of all network packets seen on one port to another port.

Configuring LAG for Ports

To configure LAG for gateway ports, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the configurationicon.

    The Profiles tab is displayed.

  2. In the left navigation menu, select Devices.

    The Devices list view is displayed.

  3. Select a gateway from the list.

    The Profiles Management view for the selected gateway is displayed.

  4. On the Interfaces card, click Gateway Interface Configuration.

  5. Alternatively, you can complete the following steps:

    1. On the Interfaces card, click Manage.

    2. On the Gateway Interface Configuration card, click Manage.

    The Ports list view is displayed by default. Additionally, the Gateway Interface Configuration page displays the faceplate representation of the selected gateway.

  6. Click the LAGs tab.

    The pre-defined LAGs list view, from 0 to 7, is displayed.

  7. Click anywhere on the row of the port you want to modify.

    The Edit LAG side panel is displayed.

  8. Configure the Switch Interface Configuration parameters as described in the following table.

  9. Parameter

    Description

    General

    To configure additional ports for LAG, click the Add icon and select ports from the Ports drop-down list.

    To delete a port, complete the following steps:

    1. Hover over the port to be deleted and click the delete icon.

    2. Click Delete.

    LAG ID

    Displays the LAG ID for the interface.

    Description

    Enter the description for the LAG.

    This parameter is available only for AOS-CX switches.

    Admin State

    Select this check box to set the user state of the port interface as admin. This option is enabled by default.

    Client Authentication

    Select this check box to set the port as trusted.

    Protocol

    Select a protocol type from the drop-down list:

    • Static—Select this check box to enable the static protocol.

    • LACP—Select this check box to enable the Link Aggregation Control Protocol(LACP) protocol. Select the LACP mode; Active or Passive.

    VLAN Mode
    • Access—Select this check box to set the access mode to carry traffic only for the VLAN to which they are assigned. When Access mode is selected, select a VLAN from the Access VLAN drop-down list. Only one VLAN ID can be assigned to each access interface. In Access mode, VLAN Policy configuration is not applicable.

    • Trunk—Select this check box to allow a port to carry traffic for multiple VLANs. When Trunk mode is selected, select a VLAN from the Native VLAN drop-down list and enter the range of VLAN IDs assigned in the Allowed VLANsfield. In Trunk mode, Port Policy configuration is not applicable.

      Note:

      Port will always be TRUSTED in both Access and Trunk mode.

    Jumbo MTU

    Select this check box to enable Jumbo frame MTU configured on the interface. This setting is functional only if the Jumbo frame processing is enabled in the firewall policies.

    Spanning Tree

    Select this check box to enable spanning tree protocol on the port. This option is enabled by default.

    • Cost—Specify the spanning tree path cost of the port. The allowed range is 1-65535. The default value is 2000.

    • Priority—Specify the spanning tree priority of the port. The allowed range is 0-255. The default value is 128.

    • Point-to-point—Select this option to enable the port as a point-to-point link. By default, this option is disabled.

    • BPDU guard—Enable BPDU guard to protect the port from receiving STP BPDUs. However, the port can transmit STP BPDUs.

    • Port Fast—Select this option to enable forwarding of traffic from the port. By default, this option is disabled.

  10. Click Save.

    The Gateway Interface Configuration list displays the updated LAG row in the LAGs list view.

To search for a port or LAG ID, type the ID in the search bar. The search bar displays dynamic results as soon as you start typing.

To reset a LAG, complete the following steps:

  1. Hover over a LAG row and click the ellipsis icon.

  2. Click Reset LAG.

    The Reset LAG pop-up is displayed.

  3. Click Reset.

Note:

A Port Profile template can be applied to a maximum of 10 interfaces at a time.