Cluster

A gateway cluster is a combination of multiple Aruba gateways operating as a single entity to provide High Availability and service continuity to the WLAN clients in a network. Gateway clusters provide full redundancy to access points (APs) and WLAN clients in the event of a failover.

To navigate to a gateway cluster, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, select a site from the Sites menu.

    Alternatively, you can click the expand icon on the Sites menu to search for a site from the list.

    The site dashboard is displayed with the network and connectivity information for the site.

  2. In the Site dashboard, click Network.

    The Devices table is displayed.

  3. On the Devices table, select a cluster leader gateway.

    The Gateway Cluster page is displayed.

Note:

For clustered gateways, when you click on a cluster member gateway, you will be directed to the Gateway Dashboard page.

The Gateway Cluster page displays the following cards:

  • Cluster—The Cluster card displays the following details:

    • Member—Displays the health status and name of the member.

    • Role—Displays the role of the gateway in the cluster, as member, leader, or isolated leader.

    • Site—Displays the site name where the member is located.

    You can click the expand icon on the Cluster card to view additional details of the cluster.

    Figure 1: Cluster Details page

    The Cluster page displays the following information:

    • Name of the cluster.

    • Image of the cluster.

    • Model—Model number of the cluster leader.

    • Site—Name of the site to which the cluster is associated.

    • VLAN—The health status of the VLANs in the cluster. It displays the number of VLAN mismatches as well as the number of successful VLAN configurations.

    • IPSec Tunnels—The health status of the IPSec tunnels in the cluster. It displays the number of tunnels that are currently up and down in the cluster. Selecting either the Up or Down tunnel count redirects to the LAN Tunnels page with the Inter Gateway tunnel filter applied.

    • Alerts—Number of alerts generated for the cluster.

    • Clients—Number of clients connected to the cluster.

    The chord diagram in the expanded view of the Cluster card in the expanded view displays the Layer 2 (L2) connections between the nodes of the cluster. When you hover over the cluster leader or a cluster member in the chord diagram, it indicates the L2 connections with other nodes in the cluster, along with the status of the configured VLANs, which are color-coded for clarity. A VLAN mismatch between any two nodes in the cluster shows the connection line in red, while a successful VLAN configuration displays it in green. When you click on any node in the chord diagram, the cluster side panel will provide you with detailed information about the selected node. The following information will be displayed in the panel:

    • Name of the cluster leader or cluster member.

    • Role of the node in the cluster.

    • IP Address—IP address of the node.

    • MAC Address—MAC address of the node.

    • Model—Model number of the node.

    • Uptime—The time since the node is operational.

    • Firmware—The firmware version of the node.

    • Last Reboot Reason—The reason for the last reboot of the node.

    • Site—The name of the site to which the node is associated.

    • VLAN—The status of the VLANs connected to the other nodes in the cluster. It displays the number of VLAN mismatches as well as the number of successful VLAN configurations.

    • Alerts—Number of alerts generated for the node.

    • Clients—Number of clients connected to the node.

    When you hover over the hostname of a cluster leader or a cluster member in the chord diagram, it displays the number of switches connected between the two nodes in a cluster. When you hover over a switch in the chord diagram, it displays the port numbers of the gateways to which the switches are connected in the cluster. In the Layers panel, select Tunnels to view the health status of the switches connected between two nodes in a cluster. The connection line between two nodes is displayed in red if the switches are down and in green if the switches are up.

    Figure 2: Cluster Card—Switch Details

  • Capacity—The Capacity card displays the following details:

    • Clients—The Clients bar displays the number of connected clients and the percentage of gateway capacity occupied by this cluster. Each tunneled client device (unique MAC) consumes one client resource within a cluster and counts against the cluster’s published client capacity. For each gateway series and model, HPE Aruba Networking Central provides the maximum number of clients that can be supported per gateway and per homogeneous cluster. Each gateway model and cluster cannot support more clients than the stated maximum. For more information on client capacity and cluster capacity for different gateway models, see Gateway Planning.

    • Devices—The Devices bar displays the number of connected devices and the percentage of gateway capacity occupied by this cluster. Each tunneled device (unique MAC) consumes one device resource within a cluster and counts against the cluster’s published device capacity. For each gateway series and model, HPE Aruba Networking Central provides the maximum number of devices that can be supported per gateway and per homogeneous cluster. Each gateway model and cluster cannot support more devices than the stated maximum. For more information on device capacity and cluster capacity for different gateway models, see Gateway Planning.

    Figure 3: Gateway Cluster Page

    You can click on the expand icon on the Capacity card to view additional capacity details for each cluster client and cluster device.

    When you hover over the graph, it displays the number of active and standby clients in the cluster for the selected time range. When you click on Show Gateway Members Client Details, it displays the number of active and standby clients connected to each gateway member of the cluster for the selected time range. When a client connects to a cluster, it is distributed among the leader and members within the cluster. According to the gateway model, each gateway has a different maximum capacity for clients. For more information on client capacity and cluster capacity for different gateway models, see Gateway Planning.

    Note:

    The correct client capacity will be displayed from ArubaOS 10.7.0.2 version.

    Figure 4: Expanded Capacity Card—Clients

    When you hover over the graph, it displays the number of active and standby devices present in the cluster for the selected time range. When you click on Show Gateway Members Devices Details, it displays the number of active and standby devices connected to each gateway member of the cluster for the selected time range. When a device connects to a cluster, it is distributed among the leader and members within the cluster. According to the gateway model, each gateway has a different maximum capacity for devices. For more information on device capacity and cluster capacity for different gateway models, see Gateway Planning.

    Figure 5: Expanded Capacity Card—Devices

    When you hover over the graph, it displays the number of IPSec and VxLAN tunnels in the cluster for the selected time range. When you click on Show Gateway Members Tunnels Details, it displays the number of IPSec and VxLAN tunnels for each gateway member of the cluster for the selected time range.

    Note:

    The GRE tunnels count is not displayed in the Tunnels graph of the expanded Capacity card.

    Figure 6: Expanded Capacity Card—Tunnels

  • Health—The Health card displays the operational and health status of the gateways within the cluster. It also displays the configuration status of the gateways in the cluster. When you hover over the bar graph, it displays the number of gateways in the cluster and their health status. When a cluster member is synchronized with HPE Aruba Networking Central, the count of synchronized configuration statuses increases. When a cluster member is not synchronized with HPE Aruba Networking Central, the count of unsynchronized configuration statuses increases.

    Figure 7: Health Card for a Gateway Cluster

    The following table describes the Health card parameters:

    Table 1: Gateway Health Card Information for a Gateway Cluster

    Parameter

    Description

    Displays the following details:

    • Status—Online

    • Health—Good (CPU usage is <70% and Memory utilization is < 90%)

    Displays the following details:

    • Status—Online

    • Health—Fair (CPU and memory utilization is between 70-90% or interface error rate is > 40%)

    The reason for the fair health is displayed next to this icon.

    Displays either one of the following details:

    • Status—Online
    • Health—Poor (CPU usage is >70% and Memory utilization is > 90%)

    The reason for the poor health is displayed next to this icon.

    Or

    • Status—Offline
    • Health—Poor

    The date and timestamp of when the gateway cluster was last seen online are displayed next to this icon.

    Configuration Status

    Displays the configuration status of the gateways in the cluster as Synchronized or Unsynchronized. The configuration state will change only when the configuration is pushed from HPE Aruba Networking Central.

    The health status of the gateway cluster and connectivity performance health is calculated based on the following considerations:

    • Severity of the alert generated for the gateway cluster.

    • Priority of the health metric for which the alert is generated

    Note: You can configure the severity and threshold conditions for an alert on the Alert Management page. For more information, see Configuring Alerts.

    The following table describes the alert severity and health status mapping:

    Table 2: Alert and Health Status Mapping

    Alert Severity

    Health Status

    Critical

    Poor

    Major

    Fair

    Minor or any severity other than Critical and Major

    Good

    Note:

    If there is no alert generated for a gateway device, then the health is always displayed as Good.

    The health metrics of a gateway cluster is based on the generated alert.

    • Hardware

      • CPU 

      • Memory

    Note:

    The health reasons outlined above are based on alerts, while all other health reasons are determined strictly by health metrics.

    For more information on the alerts generated for gateways, see Gateway Alerts.

  • The System card provides an overview of the operational status of the gateway cluster at the hardware level.

    Figure 8: System Card for a Gateway Cluster

    The following table describes the System card parameters:

    Table 3: System Card Information

    Parameter

    Description

    CPU

    Indicates the CPU health of the gateway cluster.

    • —Good CPU health when the CPU utilization is less than 70%.

    • —Poor CPU health when the CPU utilization is more than 70%.

    Memory

    Indicates the memory health of the gateway cluster.

    • —Good memory health when the memory utilization is less than 90%.

    • —Poor memory health when the memory utilization is more than 90%.

    Temperature

    Indicates the temperature status of the gateway cluster. The status can be can be Good, or Poor. Health is good if CPU and ambient temperature are low or medium. Health is poor if any one of the CPU or ambient temperature is high.

    Note:

    The health indicators such as Good or Poor are based on specific thresholds that vary across different gateway models.

    Fans

    Indicates the status of the fans. The status can be Good or Fair. Health is good if all fans are operational and their speed is low or medium. Health is fair if atleast one fan is not operational or operating at a high speed.

    Note:

    The health indicators such as Good or Fair are based on specific thresholds that vary across different gateway models.

    Power Supplies

    Indicates the status of the power supplies. The status can be Good or Fair. Health is good if all power supplies are up. Health is fair if few of the power supplies are not up. The details of the power supplies vary depending on the number of members in a gateway cluster. For example, if a cluster has four members and the health status of two members is fair, it will be displayed as 2 up of 4.

    Click on the expand icon to view additional system details about the members in a gateway cluster. In the expanded view of the System card, the System table displays the following details:

    Table 4: System Card Parameters

    Parameter

    Description

    Member

    Displays the name of the cluster member.

    Role

    Indicates the role of the member in the gateway cluster.

    Model

    Displays the model number of the cluster member.

    CPU

    Indicates the CPU health of the gateway cluster.

    • —Good CPU health when the CPU utilization is less than 70%.

    • —Poor CPU health when the CPU utilization is more than 70%.

    Memory

    Indicates the memory health of the gateway cluster.

    • —Good memory health when the memory utilization is less than 90%.

    • —Poor memory health when the memory utilization is more than 90%.

    Temperature

    Indicates the temperature status of the gateway cluster. The status can be can be Good, or Poor. Health is good if CPU and ambient temperature are low or medium. Health is poor if any one of the CPU or ambient temperature is high.

    Note:

    The health indicators such as Good or Poor are based on specific thresholds that vary across different gateway models.

    Fans

    Indicates the status of the fans. The status can be Good or Fair. Health is good if all fans are operational and their speed is low or medium. Health is fair if atleast one fan is not operational or operating at a high speed.

    Note:

    The health indicators such as Good or Fair are based on specific thresholds that vary across different gateway models.

    Power Supplies

    Indicates the status of the power supplies. The status can be Good or Fair. Health is good if all power supplies are up. Health is fair if few of the power supplies are not up. The details of the power supplies vary depending on the number of members in a gateway cluster. For example, if a cluster has four members and the health status of two members is fair, it will be displayed as 2 up of 4.

    You can view the following line charts in the expanded view of the System card:

    • CPU Utilization—This chart displays the percentage of CPU utilized by the gateway cluster over the selected time interval. By default, the chart displays data for the last three hours. When you hover over the chart, you can view the CPU utilization value of the gateway cluster in percentage.

    • Memory Utilization—This chart displays the percentage of memory utilized by the gateway cluster over the selected time interval. By default, the chart displays data for the last three hours. When you hover over the chart, you can view the memory utilization value of the gateway cluster in percentage.

    • Temperature—This chart displays the ambient and CPU temperature of the gateway cluster over the selected time interval. When you hover over the chart, you can view the ambient and CPU temperature of the gateway cluster in degree Celsius. By default, the chart displays data for the last three hours.

    Click the customize columns icon to adjust the visibility and position of columns in the System table. Select Customize Columns to select or reorder the columns and select Reset Column Sizes to reset the columns to default view.

    Figure 9: Expanded System Card for a Gateway Cluster

Gateways Cluster Members List

When you select Network in the Gateway Cluster page, you can view the Gateway Cluster Members List page. This page displays detailed information about all the gateways in that cluster.

You can quickly filter based on status, online or offline gateways. For additional filters, you can click the filter icon. On the Filters page, you can further filter gateways based on their health, model number, role, software version, and site where it is located.

To navigate to gateway cluster members list page, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, select a site from the Sites menu.

    Alternatively, you can click the expand icon on the Sites menu to search for a site from the list.

    The site dashboard is displayed with the network and connectivity information for the site.

  2. In the Site dashboard, click Network.

    The Devices table is displayed.

  3. On the Devices table, select a cluster leader gateway.

    The Gateway Cluster page is displayed.

  4. In the Gateway Cluster page, click Network.

    By default, the Gateways Cluster Members List page is displayed in List view.

Figure 10: Gateway Cluster Members List

Table 5: Gateway Cluster Member List Parameters

Parameter

Description

Name

Displays the name of the gateway along with:

  • —Gateway is online. The health status is displayed next to this icon.

  • —Gateway is offline. The last seen timestamp is displayed next to this icon.

Role

Displays the role assigned to the gateway. It can be leader, isolated leader, or member.

Access Point

Displays the number of active and standby access points in a cluster.

Switch

Displays the number of active and standby switches in a cluster.

Client

Displays the number of active and standby clients in a cluster.

Tunnel

Displays the type and number of orchestrated tunnel(s).

Model

Displays the hardware model of the gateway.

Software Version

Displays the version of the software that is currently running on the gateway.

IP Address

Displays the IP address of the gateway.

MAC Address

Displays the MAC address of the gateway.

Site

Displays the site where the gateway is located.

LAN Tunnels

The Gateway Cluster Members List page displays the details of LAN tunnels in the gateway cluster.

To navigate to LAN tunnels page, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, select a site from the Sites menu.

    Alternatively, you can click the expand icon on the Sites menu to search for a site from the list.

    The site dashboard is displayed with the network and connectivity information for the site.

  2. In the Site dashboard, click Network.

    The Devices table is displayed.

  3. On the Devices table, select a cluster leader gateway.

    The Gateway Cluster page is displayed.

  4. In the Gateway Cluster page, click Network.

    By default, the Gateways Cluster Members List page is displayed in List view.

  5. Click the Summary icon.

    The Gateways Cluster Members List page is displayed by default in the Summary View.

The Gateway Cluster Members List page displays the following information:

  • LAN Tunnels—The LAN Tunnels summary card displays the list of gateways in the cluster along with the number and health status of LAN tunnels for each node.

Figure 11: LAN Tunnels—Summary Card

You can click on the expand icon on the LAN Tunnels card to view additional details for each LAN tunnel in the cluster. The expanded view of LAN Tunnels card displays the following details:

Table 6: Expanded LAN Tunnels Card Parameters

Parameter

Description

Name

Displays the name of the LAN tunnel along with:

  • —Tunnel is up.

  • —Tunnel is down.

Gateway

Displays the name and role of the gateway. It can be leader, isolated leader, or member.

Encapsulation

Displays the type of encapsulation. For example, IPSec, GRE, or VxLAN.

Source IP Address

Displays the source IP address.

Destination Device

Displays the MAC address of the destination device.

Destination IP Address

Displays the source IP address.

You can filter LAN tunnels based on criteria such as Gateway member and status. You can use the search bar to locate specific LAN tunnels using keywords such as name, gateway model, or destination IP address.

Click the customize columns icon to adjust the visibility and position of columns in the LAN Tunnels table.

Figure 12: LAN Tunnels Expanded View

You can also use the quick filters to filter LAN tunnels as per status (Up or Down) and encapsulation type (IPSec, GRE, or VxLAN) to search any specific LAN tunnel(s).

IPSec LAN Tunnels

To view the details of LAN tunnels for IPsec encapsulation, filter the tunnels by selecting IPsec as the encapsulation type, and then click on a tunnel listed on the LAN Tunnels page.

The IPSec LAN tunnel page displays the following details:

  • Properties—The Properties section displays the following details:

    • Mode—Displays the mode of encapsulation.

    • Encapsulation—Displays the type of encapsulation.

    • Destination Device—Displays the MAC address of the destination device.

    • Destination IP Address—Displays the IP address of the destination device.

    • Source IP Address—Displays the IP address of the source device.

    • SSID—Displays the name of the SSID(s).

    • Uptime—Displays the total time duration that the device has been operational.

    • Authentication—Displays the type of authentication.

    • Encryption—Displays the type of encryption.

    • MTU—Displays the Maximum Transmission Unit (MTU) for the tunnel.

    • In SPI—Displays the inward SPI for the tunnel.

    • Out SPI—Displays the outward SPI for the tunnel.

    • Last Change Reason—Displays the reason for the last change of the tunnel.

    • Last Down Reason—Displays the reason for the last down state of the tunnel.

    • Last Key Recorded BY Gateway—Displays the last key recorded by the gateway.

    • Last Connected—Displays the time when the device was last connected.

    • Status—Displays the operational state of the IPSec LAN tunnel using a color-coded view. The operational states displayed in color-coded view are Up, Partial, Down, Survivability, and Unknown.

  • Usage—The Usage graph displays the received and transmitted throughput usage over the last three hours.

Figure 13: IPSec LAN Tunnel

GRE LAN Tunnels

To view the details of LAN tunnels for GRE encapsulation, filter the tunnels by selecting GRE as the encapsulation type, and then click on a tunnel listed on the LAN Tunnels page.

The GRE LAN tunnel page displays the following details:

  • Mode—Displays the mode of encapsulation.

  • Encapsulation—Displays the type of encapsulation.

  • Tunnel ID—Displays the ID of the tunnel.

  • Tunnel IP Address—Displays the IP address of the tunnel.

  • MTU—Displays the Maximum Transmission Unit (MTU) for the tunnel.

  • Uptime—Displays the total time duration that the device has been operational.

  • Destination Device—Displays the MAC address of the destination device.

  • Destination IP Address—Displays the IP address of the destination device.

  • Source Name—Displays the MAC address of the source.

  • Source IP Address—Displays the IP address of the source.

  • SSID—Displays the name of the SSID(s).

  • Last Connected—Displays the time when the device was last connected.

Figure 14: GRE LAN Tunnel

VxLAN LAN Tunnels

To view the details of LAN tunnels for VxLAN encapsulation, filter the tunnels by selecting VxLAN as the encapsulation type, and then click on a tunnel listed on the LAN Tunnels page.

The VxLAN tunnel page displays the following details:

  • Properties—The Properties section displays the following details:

    • Encapsulation—Displays the type of encapsulation.

    • VNI—Displays the Virtual Network Identifier (VNI) of the VxLAN.

    • Destination Device—Displays the MAC address of the destination device.

    • Destination IP Address—Displays the IP address of the destination device.

    • Source IP Address—Displays the IP address of the source device.

    • Status—Displays the operational state of the VxLAN tunnel using a color-coded view. The operational states displayed in color-coded view are Up, Partial, Down, and Unknown.

  • Usage—The Usage graph displays the received and transmitted throughput usage over the last three hours.

Figure 15: VxLAN Tunnel