AOS-10 AP-Only Configuration

This section provides an overview of the AOS-10 AP-only configuration and operations journey. The following image displays the high-level steps to deploy and configure AOS-10 APs.

Figure 1: AOS-10 AP-only Configuration and Operations

The following sections describe the first three steps displayed in AOS-10 AP-only Configuration and Operations

Step 1—Configuring AOS-10 APs

The following image displays the steps to configure AOS-10 APs on the network.

Figure 2: AOS-10 AP-only Configuration Steps

To configure the AOS-10 APs and get the clients connected over wireless network, complete the following steps:

  1. Setting the User Administrator Password

  2. Configuring VLAN Profile

  3. Configuring AP System Profile

  4. Configuring AP Uplink Port Profile

Setting the User Administrator Password

You can edit the default user administrator profile for Campus Access Points to set your own password.

Note:

The user administrator is an optional setup for user management.

To configure the user administrator password, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the configurationicon.
    The Profiles tab is displayed.

  2. In the left navigation menu, select Global.

  3. Under Profiles Management page on the right, select Campus Access Point from the Device Function drop-down list.

  4. On the System card, click User Administration.

    Figure 3: User Administrator Profile Option

    Alternatively, you can complete the following steps:

    1. On the System card, click Manage.

    2. On the User Administration card, click Manage.

    The User Administration list view is displayed.

  5. Click anywhere on the row of the existing administrator profile in the list view.

    The Edit Profile side panel is displayed.

  6. Under Password and Retype Password, enter the same password.

  7. From the Role drop-down list, select Admin.

  8. Click Update.

    Figure 4: User Administration Profile Configuration

    The new password is assigned to the user administrator.

    For more information, see User Administration Profile.

Configuring VLAN Profile

To configure VLAN profile, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the configurationicon.
    The Profiles tab is displayed.

  2. In the left navigation menu, select Library.

  3. On the VLANs & Networks card, click VLAN.

    Figure 5: VLAN Profile Option


    Alternatively, you can complete the following steps:

    1. On the VLANs & Networks card, click Manage.

    2. On the VLAN card, click Manage.

    The VLAN list view is displayed.

  4. Click Create Profile.

    The Create Profile side panel is displayed.

  5. Configure the following VLAN profile parameters:

    • VLAN ID—Enter the numeric VLAN ID.

    • Switch Specific Parameters—Select this check box to configure switch parameters for the VLAN profile.

    • Enable VLAN—Select this check box to enable VLAN.

    • Enable L3—(Optional) Select this check box to configure Layer 3 parameters.

  6. Click Create.

    Figure 6: VLAN Profile Configuration

  7. Assign the VLAN profile created to Access Switch, Aggregation Switch, Core Switch, and Mobility Gateway device functions and appropriate scope, as per the requirements.

  8. Repeat steps 3 to 6 for each VLAN.

For more information on the VLAN profile parameters, see VLAN Profile.

Configuring AP System Profile

You must configure country code, timezone, and other custom parameters for the AP using AP System profile.

Note:

If you created your sites with real street addresses or GPS coordinates, then the Timezone and Country Code parameters are automatically assigned based on the site's location that the AP belongs to. However, if you do not use real addresses for your sites, then follow these steps to configure the AP System Profile.

To configure an AP System profile, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the configurationicon.
    The Profiles tab is displayed.

  2. In the left navigation menu, select Library.

  3. On the System card, click AP System.

    Figure 7: AP System Profile Option

    Alternatively, you can complete the following steps:

    1. On the System card, click Manage.

    2. On the AP System card, click Manage.

    The AP System list view is displayed.

  4. Click Create Profile.

    The Create Profile side panel is displayed.

  5. Configure the following AP System profile parameters:

    • Name—Enter the name of the AP system profile.

    • Country Code—Select the required country code from the drop-down list.

    • Timezone—Select the required timezone from the drop-down list.

  6. Click Create.

    Figure 8: AP System Profile Configuration

  7. Assign this AP System profile to Campus Access Point device function and appropriate scope, as per the requirements.

For more information on the AP System profile parameters, see AP System Profile.

Configuring AP Uplink Port Profile

You can configure AP Uplink Port profile to establish uplink connections for the APs.

Note:

This is an optional procedure as the APs use the default uplink configuration containing the following parameter values:

  • Select LAN Port(s)Ethernet 0/0

  • Native VLAN1

  • Allowed VLANsAll

  • Management VLANNative VLAN.

    However, if you want to customize these settings, follow these steps.

To configure an AP Uplink profile, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the configurationicon.
    The Profiles tab is displayed.

  2. In the left navigation menu, select Library.

  3. On the Interfaces card, click AP Uplink.

    Figure 9: AP Uplink Profile Option


    Alternatively, you can complete the following steps:

    1. On the Interfaces card, click Manage.

    2. On the AP Uplink card, click Manage.

    The AP Uplink list view is displayed.

  4. Click Create profile.
    The Create AP Uplink Profile page is displayed.

  5. Configure the following AP uplink profile parameters:

    • Name—Enter the name of the AP uplink profile.

    • Select LAN Port(s)—Select the required Ethernet port to be used for uplink from the drop-down list.

    • Port Mode—Select the Trunk radio button.

    • Native VLAN—Enter the VLAN ID to be used for Native VLAN.

    • Allowed VLANs—Enter specific VLANs, VLANs range, or All (default).

  6. Click Create.

    Figure 10: AP Uplink Profile Configuration

For more information on the AP uplink profile parameters, see AP Uplink Profile.

Step 2—Managing User Roles and Policies

For information about managing user roles and role-based policies, see Manage Roles and Policies.

Note:

When you configure a WLAN profile for Bridge mode, a role is created that matches the ESSID and a policy rule that allows all traffic for that role. You can create additional roles and policies as per the requirement.

Step 3—Configuring the Wireless Network

To create and assign a WLAN profile to the AP, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, click the configuration icon.
    The Profiles tab is displayed.

  2. In the left navigation menu, select Library.

  3. On the Wireless card, click WLAN.

    Figure 11: WLAN Profile Option


    Alternatively, you can complete the following steps:

    1. On the Wireless card, click Manage.

    2. On the WLAN card, click Manage.

    The WLAN list view is displayed.

  4. Click Create profile.
    The Create Profile page is displayed.

  5. Configure the following WLAN profile parameters:

    • Name—Enter the name of the WLAN profile.

    • ESSID Name—Enter an ESSID name. This name defaults to the profile name.

    • 2.4 GHz/5 GHz/6 GHz—(Optional) Select one or all the radio bands that allow you to modify frequencies over which this ESSID will be broadcast.

    • Network Configuration—(Optional) Select one of the following options based on the requirement:

      • Most Compatible

      • Balanced

      • High Density

      • Custom

    • Traffic Forwarding Mode—Select the Bridge radio button.

      Note:

      You must select Bridge for AP-only deployments. The Tunnel option is for AP and Mobility Gateway deployments. The Mixed option is for AP and Mobility Gateway, but allows some VLAN to be trunked to the switching fabric based on user session VLAN assignment. However, other user sessions are tunneled to the Mobility Gateway cluster.

    • Default VLAN—Enter the default VLAN value of the WLAN profile. The default VLAN clients are used in the absence of any dynamic VLAN assignment.

      Alternatively, you can use a named VLAN by selecting the Use Named VLAN check box and selecting the named VLAN from the drop-down list.

    • Security Level—Select one of the following security levels from the drop-down list:

      • Enterprise

      • Personal

      • Open

    • Key Management—Select one of the options from the drop-down list, depending on the security level selected.

    • Passphrase/Retype Passphrase—Enter a passphrase if you selected Personal as the Security Level.

    • Default Role - [Profile Name]—Select the Override default role check box, and a previously created role from the Default Role drop-down list.

      Note:

      If you created user roles and role-based policies, you can select one of them from the Default Role that is assigned to all clients that do not have a dynamic role assignment. For information about roles and role-based policies, see Manage Roles and Policies.

  6. Click Finish.

    Figure 12: WLAN Profile Configuration

  7. Assign this WLAN profile to the Campus Access Point device function and the appropriate scope, as per the requirements.