Creating a VLAN Profile
To create a VLAN profile for a PSM site, complete the following steps:
-
In the Classic Central app, turn on the New Central toggle switch.
The HPE Aruba Networking Central landing page is displayed.
-
On the Sites menu, select a PSM-specific site from the list.
-
Click the configuration
icon.The Profiles tab is displayed.
-
Click Library.
-
On the VLANs & Networks card, click VLAN.
Alternatively, you can complete the following steps:-
On the VLANs & Networks card, click Manage.
-
On the VLAN card, click Manage.
The VLAN list view is displayed.
-
-
Click Create Profile.
The Create Profile side panel is displayed.
-
Configure the following VLAN profile parameters as described in Table 1.
Table 1: VLAN Profile Parameters
Parameter Description Create as a local profile
Select this option if you want to configure this profile as local.
Note: The Create as a local profile option is available at the Global, Site Collections, Sites, Devices, and Device Groups levels; it is not available at the Library level.VLAN ID
Enter the numeric VLAN ID.
Description
Enter the description for the VLAN profile.
Admin State
Select this check box to enable the admin state of the VLAN interface. This option is enabled by default.
Switch Specific Parameters Select the check box to enable the following switch parameters for the VLANs profile:
-
—Select the policy that you want to apply for the inbound traffic or outbound traffic from the drop-down.
-
—Select the access list for inbound network for the VLAN profile.
-
—Select the access list for outbound network for the VLAN profile.
Enable L3
Select this check box to configure the following layer 3 parameters:
-
IP Address Assignment—Select one of the following options:
-
Static
-
DHCP
-
-
Relay to External—Select this check box to enable DHCP relay configuration. Relays the DHCP requests for the interface to the external DHCP servers configured in the DHCP Helper table. You need not configure this parameter if the VLAN interface is in the same subnetwork as that of the DHCP server.
-
DHCP Helper—Select the DHCP address from the table. Click the Add
icon, configure the following parameters, and click Add.-
DHCP Helper—Enter the IP address.
-
Switch Specific Parameters—Select this check box to configure switch parameters.
-
VRF Profile—Select the profile from the drop-down list.
-
-
MTU—Enter the MTU (Maximum Transmission Unit) for the interface. To support jumbo frames (frames larger than 1522 bytes), increase the MTU as required by your network. A frame size of up to 9198 bytes is supported.
-
IGMP—Select one of the following options:
-
Disabled
-
Proxy
-
-
Switch Specific Parameters—Select this check box to configure switch parameters.
-
VRF Profile—Select a VRF profile from the drop-down list.
-
Gateway Specific Parameters—Select this check box to configure gateway parameters.
Gateway Parameters Act as DHCP Server
Select this check box to configure a gateway as a DHCP server.
DHCP Profile
Select a DHCP profile from the drop-down list. This option is enabled if you select Act as DHCP Server check box.
Force Operational Status Up
Select this check box to enable the operational state of the VLAN ID. By default, this is disabled. Enabling this option keeps the state of the VLAN interface as up irrespective of the state of the physical interface.
Enable Routing
Enable this option to route traffic between the VLANs that are mapped to the IP subnetworks.
Broadcast Multicast Optimizations
Select this check box to enable controlled flooding of broadcast or multicast traffic without compromising the client connectivity.
Suppress ARP
Select this check box to prevent flooding of ARP broadcasts on all the untrusted interfaces. By default, this is disabled.
Local Proxy ARP
Select this check box to activate the local proxy ARP feature on the interface.
Client Mode
Select the mode as one of the following options:
-
Host MAC
-
Gateway MAC
NAT Inside
Select this check box to perform NAT with the desired IP address of the VLAN interface as the source address.
NAT Outside
Select this check box to enable NAT only for the outbound traffic on public-facing egress VLAN interfaces. When this feature is enabled on an uplink VLAN interface, the source address is translated with the IP address of the VLAN interface to all the outbound traffic.
Adjust TCP MSS
Enter the value to configure the TCP maximum segment size.
Note: If you set the TCP MSS on an interface, the size of each TCP segment received or sent on the interface cannot exceed the MSS value. -
-
Click Create to create the VLAN profile.
-
To edit a VLAN profile, complete the following steps:
-
Click anywhere on the row of the profile in the list view.
The profile edit view is displayed in the side panel.
-
Edit the required parameters.
-
Click Update.
-
-
To delete a VLAN profile, hover on the profile name, and click the delete
icon. -
To search for a profile, type the VLAN profile ID in the search bar.
The search bar displays dynamic results as soon as you start typing.
The following image displays the Create Profile side panel of a VLAN profile.
Figure 1: Create VLAN Profile