June 22nd 2026

Important:

Upcoming Security Feature—Default Support Access

In the upcoming release, HPE Aruba Networking Central will introduce Default Support Access to your workspace for authorized HPE Aruba Networking support engineers.

This feature is enabled by default and allows support engineers to perform approved troubleshooting and diagnostic activities in your workspace. Support engineers cannot make configuration changes to your setup.

You can disable this feature at any time through your HPE GreenLake workspace settings.

This release includes:

New Capabilities

This section highlights new features and functionalities introduced in this release.

Alerts and Events

Switch Alerts

Health and Health Metrics support is added for the following switch alerts:

  • Duplicate IP Detected

  • Transceiver Temperature

  • Transceiver Voltage

  • Transceiver Transmit Power

  • Transceiver Transmit Current Bias

  • Transceiver Receive Power

  • Transceiver Transmit Fault

Gateway Alerts

Root Cause and Recommendations card is added for the following gateway alerts:

  • Cluster Leader Change

  • Gateway Joined Cluster

  • Gateway Left Cluster

  • Gateway Offline

  • Gateway Interface Giants Error

APIs

To view the list of new, modified, deprecated, and removed APIs, see the API topic.

Streaming API

The Streaming API section is updated to include the following streaming APIs:

  • Gateway streaming—A new streaming endpoint is introduced to stream gateway status and statistics information in real time.

  • Alert streaming—A new streaming endpoint is introduced to stream all device and system level alert information in real time.

  • Unified Clients—A new streaming endpoint is introduced to stream information related to Unified clients. This includes client state and stats telemetry for clients with advanced License.

  • Switches—A new streaming endpoint is introduced to provide real-time information for AOS-CX switches. This includes switch status and statistics such as hardware utilization, VLAN information, errors, data packet metrics, port details, device roles, and other operational data.

For more information about streaming APIs, see Cloud Events.

Configuration

Switch Configuration

The following new profile is added for AOS-CX switch configuration:

Hardware Profile—The Hardware Profile provides advanced configuration options for both power and connectivity. It supports Quick PoE, which powers PoE ports before the line card finishes booting, and Always-On PoE, which keeps Power over Ethernet active when the line card or module resets. In addition, it allows defining system interface groups, where multiple ports can be bundled together with specified speeds.

For more information, see Hardware Profile.

Mesh Cluster Profile

HPE Aruba Networking Central now supports the Mesh Cluster Profile under Wireless card. This profile provides the framework of the mesh network. For more information, see Mesh Cluster Profile.

Improvements

This section highlights enhancements made to existing features and workflows.

CLI Viewer Support for Gateways

HPE Aruba Networking Central now supports CLI Viewer for gateways. The CLI Viewer enables access to both the Running and Candidate configurations of the HPE Aruba Networking device. The Running Config displays the active configuration currently applied on the device, whereas the Candidate Config displays the configuration to be provisioned by HPE Aruba Networking Central.

For more information on CLI Viewer, see CLI Viewer.

Enhancement to Alert Configuration

Alert configuration page now supports a set of pre-defined roles with different privileges and access permissions. With role-based access (RBAC) support, administrators can configure alerts, while users with read-only access cannot perform any configuration tasks. Actions that are unavailable due to permission restrictions are disabled, and a warning message is displayed to indicate that the user does not have sufficient permissions. For more information, see Configuring Alerts.

Enhancement to AP Health Insights

The Radio Auto Recovery toggle button is now controlled through RBAC permissions. Only users with Read Write permissions will be able to enable or disable the radio auto recovery. For more information, see AP Health Insights.

Enhancement to AP System Profile

The following parameters are now added to support the configuration of location alias and AP location altitude alias:

  • Use Location Alias

  • Location Alias

  • Use AP Location Altitude Alias

  • AP Location Altitude Alias

For more information, see AP System Profile.

Enhancement to Configuration Health

A force resync option is now available, ensuring proper synchronization within the system. For more information, see Force re-sync at the Device level.

Enhancements to Central NAC

The following enhancements are added to Central NAC:

  • The NAC Events expanded window displays two new error messages for the error codes unauthorized.concurrent_auth and certificate.server.unknown_ca. For more information, see NAC Events under Monitoring Central NAC.

  • Two new conditional attributes, MPSK Type and MPSK Ownership are added as part of the MPSK authentication. The value for MPSK Type is limited to unbound and MPSK Ownership is limited to user-owned. For more information, see Attributes and Operators.

  • Two new attributes, Simultaneous Sessions Limit and Allow MAC Caching are added in the Authorization Policy Rules. The Simultaneous Sessions Limit attribute, you can limit the number of sessions for a user. The Allow MAC Caching attribute enables administrators to control MAC caching behavior as part of the user and custom policy rules.

    For more information, see Adding a Rule.

  • A Data Use Acknowledgment window is introduced for users while creating an Air Pass profile for AT&T or while editing an existing Air Pass profile by adding AT&T as a provider. This enhancement ensures that users are informed about data reporting practices and requirements associated with AT&T. For more information, see Configuring Air Pass Profile and Editing an Air Pass Profile. [CNX-243017]

  • Static tag names are now validated and cannot start with a special character or number. An error message is displayed if the tag name does not meet this criteria. For more information, see Adding Static Tags.

  • Third-party NAD or vendor-specific attributes can be added in the Authorization Policy Rules. For more information, see Adding a Rule.

  • Vendor-specific attributes are now displayed in the expanded Authorization card in the Client details screen. For more information, see Authorization card under Client Details in Monitoring Central NAC.

Enhancement to Floorplan Manager

HPE Aruba Networking Central now displays a centralized map of all sites. Use the map to get a visual representation of all sites with their health statuses. For more information, see Location Overview.

Enhancements to Gateway Configuration

The following enhancements are added to gateway configuration profiles:

  • GRE Tunnel Profile—HPE Aruba Networking Central now supports VLAN as a tunnel source for creating GRE Tunnel profiles.

  • DNS Server Profile—HPE Aruba Networking Central now supports IPv6 address for creating a DNS Server profile.

For more information, see the following topics:

Enhancements to Interface Profile

The following enhancements have been made to Interface Profiles:

  • Interface Profiles can now be applied at multiple scope levels, with a single profile selected per device based on hierarchy precedence (Device Group > Site > Site Collection > Global).

  • HPE Aruba Networking Central now supports assigning different Interface Profiles to the same device model based on device function/persona.

  • New uniqueness criteria are introduced for Standalone, Custom, and Automatic Interface Profiles to prevent duplicate profile creation within a scope.

  • A migration process is added for stack profiles, creating -v2 copies of referenced standalone profiles for stack member use.

  • For Stack and Chassis devices, Custom Interface Profiles now take precedence over Automatic Interface Profiles.

  • Interface Profiles are not applied to interfaces with existing interface-level configurations. Profiles are inherited automatically when those configurations are reset to default.

For more information, see Interface Profile.

Enhancements to Mesh Profile

The Mesh Mobility option is now available to perform large mesh deployments within the Mesh Profile. The Mesh Mobility RSSI Threshold parameter is now renamed to Mesh Mobility SNR Threshold. For more information, see Mesh Profile.

Enhancements to Managed Service Provider (MSP)

The MSP summary view is enhanced with the Alerts card For more information, see Alerts Card.

Enhancements to Networking Copilot

Networking Copilot now displays multiple clickable hyperlinks in QueryGen results tables, where each column links to its respective entity page. For additional details, see Networking Copilot QueryGen.

Enhancement to Network Overview

  • Client Connectivity Matrix List view now enhanced to display the Total Attempts and Total Clients column. For more information, see Client Connectivity Metrics.

  • The Sites card navigation experience is updated to streamline access to site details. The expanded Sites card pop-up window is removed because the global Networking Monitoring > Sites table now provides the same information and functionality. The new redirection option on the Sites card navigates directly to the global Networking Monitoring > Sites table. Existing detail-view capabilities remain unchanged, and selecting a row in the global Networking Monitoring > Sites table continues to display site-specific information. For more information, Navigating and Searching a Site.

Enhancements to Notification Rules

An alert can be associated with multiple notification rules.

Enhancements to RBAC

The RBAC banner is updated by replacing the permanent warning with a non-intrusive informational banner, improving clarity for read-only users. Additionally, a Learn more link has been included for easy access to further details. For more information, see Role-Based Access Control (RBAC).

Enhancements to Reports

The following enhancements were made to the Reports capability:

Enhancements to Switch Configuration

VSF Stack Builder Profile Support for 4100i and 6100 Series

The VSF Stack Builder profile now supports configuration using the 4100i and 6100 switch series.

For more information, see VSF Stack Builder Profile.

Interface Profile—New Stack Member Type

In Interface Profile, a new Type called Stack Member is introduced for devices that are part of a stack, instead of using the Standalone/Member type for both standalone devices and stack members.

For more information, see Interface Profile.

Client Insight & Event Log in Switch System Profile

A new Client Insight & Event Log field is now available in the Switch System profile under the Telemetry section, enabling enhanced visibility into client activities by capturing onboarding details and logging client onboarding status events. For more information, Switch System Profile

Auto-Generated LAG ID in Port Profiles (AOS-CX)

LAG IDs are now generated automatically in port profiles, eliminating the need to manually track LAG IDs in interface profiles. This helps avoid configuration push issues and allows reuse of port profiles to create multiple LAGs on the same switch. It can be used with interface profiles at the site level or higher scopes. For more information, see Port Profile for Switches.

Enhancements to Topology Link Node View

The following enhancements have been made to the Topology Link Node View page:

  • While viewing link nodes in the topology, only one node or group of devices can be expanded at a time.

  • A new information icon has been added to the Topology Link Node View page. It displays details about the Topology Hierarchy.

  • A Go to Device option has been introduced to the side panel. Clicking this option navigates you to the device context page.

  • A new Show unmanaged device at the edge option has been added to the Layers panel under Common Overlays. Selecting this option allows you to view the unmanaged devices at the edge in the link node topology.

  • The third-party devices have an associated child device. Navigating to the child device dashboard displays the corresponding third-party device in the connection path, providing visibility into the device hierarchy and network connectivity.

For more information, see Topology Link Node View and Link Node Navigation.

Enhancements to Troubleshooting Tools

Packet captures are now supported on AOS-CX devices. For more information, see Packet Capture for AOS-CX Switches.

Enhancements to Unified Clients List

The following enhancements are now available for Unified Clients List:

  • You can now select IPv6 address as a filter within the Clients dashboard. Additionally, Key Management is also introduced as a filter across the following dashboards:

    • Global, Site, and Device levels in the Summary dashboard

    • Site and Device levels in the Health Metrics dashboard

  • Global Data Protection Regulation (GDPR) allows for both opt-in and opt-out.

  • You can now select the Locate Client action within the Clients list at the Global and Site levels. This enhancement allows a more seamless access to the floorplan page.

Enhancements to Unified Device List

You can now view the number of clients a device has in the Unified Device List and in the device specific WLAN list.

Enhancement to Webhooks

To protect sensitive information, configured Client Secret and API Key values are displayed in a masked format. For more information, see Configuring Webhooks.

Enhancement to WLAN Profile

The SAE Sub Mode parameter is introduced to control the operational modes for WPA3 security configurations under Personal security level of the WLAN SSID. For more information, see WLAN Profile.