Creating a VLAN Profile

To create a VLAN profile for a PSM site, complete the following steps:

  1. In the Classic Central app, turn on the New Central toggle switch.

    The HPE Aruba Networking Central landing page is displayed.

  2. On the Sites menu, select a PSM-specific site from the list.

  3. Click the configuration icon.

    The Profiles tab is displayed.

  4. Click Library.

  5. On the VLANs & Networks card, click VLAN.

    Alternatively, you can complete the following steps:

    1. On the VLANs & Networks card, click Manage.

    2. On the VLAN card, click Manage.

    The VLAN list view is displayed.

  6. Click Create Profile.

    The Create Profile side panel is displayed.

  7. Configure the following VLAN profile parameters as described in Table 1.

    Table 1: VLAN Profile Parameters

    Parameter Description

    Create as a local profile

    Select this option if you want to configure this profile as local.

    Note: The Create as a local profile option is available at the Global, Site Collections, Sites, Devices, and Device Groups levels; it is not available at the Library level.

    VLAN ID

    Enter the numeric VLAN ID.

    Description

    Enter the description for the VLAN profile.

    Admin State

    Select this check box to enable the admin state of the VLAN interface. This option is enabled by default.

    Switch Specific Parameters

    Select the check box to enable the following switch parameters for the VLANs profile:

    • Policy—Select the policy that you want to apply for the inbound traffic or outbound traffic from the drop-down.

    • Inbound Network Policy—Select the access list for inbound network for the VLAN profile.

    • Outbound Network Policy—Select the access list for outbound network for the VLAN profile.

    Enable L3

    Select this check box to configure the following layer 3 parameters:

    • IP Address Assignment—Select one of the following options:

      • Static

      • DHCP

    • Relay to External—Select this check box to enable DHCP relay configuration. Relays the DHCP requests for the interface to the external DHCP servers configured in the DHCP Helper table. You need not configure this parameter if the VLAN interface is in the same subnetwork as that of the DHCP server.

    • DHCP Helper—Select the DHCP address from the table. Click the Add icon, configure the following parameters, and click Add.

      • DHCP Helper—Enter the IP address.

      • Switch Specific Parameters—Select this check box to configure switch parameters.

      • VRF Profile—Select the profile from the drop-down list.

    • MTU—Enter the MTU (Maximum Transmission Unit) for the interface. To support jumbo frames (frames larger than 1522 bytes), increase the MTU as required by your network. A frame size of up to 9198 bytes is supported.

    • IGMP—Select one of the following options:

      • Disabled

      • Proxy

    • Switch Specific Parameters—Select this check box to configure switch parameters.

    • VRF Profile—Select a VRF profile from the drop-down list.

    • Gateway Specific Parameters—Select this check box to configure gateway parameters.

    Gateway Parameters

    Act as DHCP Server

    Select this check box to configure a gateway as a DHCP server.

    DHCP Profile

    Select a DHCP profile from the drop-down list. This option is enabled if you select Act as DHCP Server check box.

    Force Operational Status Up

    Select this check box to enable the operational state of the VLAN ID. By default, this is disabled. Enabling this option keeps the state of the VLAN interface as up irrespective of the state of the physical interface.

    Enable Routing

    Enable this option to route traffic between the VLANs that are mapped to the IP subnetworks.

    Broadcast Multicast Optimizations

    Select this check box to enable controlled flooding of broadcast or multicast traffic without compromising the client connectivity.

    Suppress ARP

    Select this check box to prevent flooding of ARP broadcasts on all the untrusted interfaces. By default, this is disabled.

    Local Proxy ARP

    Select this check box to activate the local proxy ARP feature on the interface.

    Client Mode

    Select the mode as one of the following options:

    • Host MAC

    • Gateway MAC

    NAT Inside

    Select this check box to perform NAT with the desired IP address of the VLAN interface as the source address.

    NAT Outside

    Select this check box to enable NAT only for the outbound traffic on public-facing egress VLAN interfaces. When this feature is enabled on an uplink VLAN interface, the source address is translated with the IP address of the VLAN interface to all the outbound traffic.

    Adjust TCP MSS

    Enter the value to configure the TCP maximum segment size.

    Note: If you set the TCP MSS on an interface, the size of each TCP segment received or sent on the interface cannot exceed the MSS value.
  8. Click Create to create the VLAN profile.

  9. To edit a VLAN profile, complete the following steps:

    1. Click anywhere on the row of the profile in the list view.

      The profile edit view is displayed in the side panel.

    2. Edit the required parameters.

    3. Click Update.

  10. To delete a VLAN profile, hover on the profile name, and click the delete icon.

  11. To search for a profile, type the VLAN profile ID in the search bar.
    The search bar displays dynamic results as soon as you start typing.

The following image displays the Create Profile side panel of a VLAN profile.

Figure 1: Create VLAN Profile