Aruba IAP-335 User Manual page 408

Instant software
Hide thumbs Also See for IAP-335:
Table of Contents

Advertisement

Table 86: IAP Configuration for Scenario 3—IPsec: Multiple Datacenter Deployment
Configuration Steps
7. Create access rule for
wired and wireless
authentication. In this
example, the rule
permits all traffic. For
contractor SSID role, the
rule allows only
Aruba Instant 6.5.0.0-4.3.0.0 | User Guide
CLI Commands
(Instant AP)(wired-port-profile "wired-port")# auth-
server server2
(Instant AP)(wired-port-profile "wired-port")# dot1x
(Instant AP)(wired-port-profile "wired-port")# exit
(Instant AP)(config)# enet1-port-profile wired-port
Configure a wireless SSID to operate in L3 mode for employee
and associate Distributed, L3 mode VLAN 30 to the WLAN SSID
profile.
(Instant AP)(config) # wlan ssid-profile wireless-
ssid
(Instant AP)(SSID Profile "wireless-ssid")# enable
(Instant AP)(SSID Profile "wireless-ssid")# type
employee
(Instant AP)(SSID Profile "wireless-ssid")# essid
wireless-ssid
(Instant AP)(SSID Profile "wireless-ssid")# opmode
wpa2-aes
(Instant AP)(SSID Profile "wireless-ssid")# vlan 30
(Instant AP)(SSID Profile "wireless-ssid")# auth-
server server1
(Instant AP)(SSID Profile "wireless-ssid")# auth-
server server2
(Instant AP)(SSID Profile "wireless-ssid")# auth-
survivability
Configure a wireless SSID to operate in L3 mode for contractor
and associate Distributed, L3 mode VLAN 40 to the WLAN SSID
profile.
(Instant AP)(config) # wlan ssid-profile wireless-
ssid-contractor
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# enable
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# type contractor
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# essid wireless-ssid-contractor
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# opmode wpa2-aes
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# vlan 40
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# auth-server server1
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# auth-server server2
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# auth-survivability
For wired profile:
(Instant AP)(config)# wlan access-rule wired-port
(Instant AP)(Access Rule "wired-port")# rule any any
match any any any permit
For WLAN SSID employee roles:
UI Procedure
See
Configuring
ACL Rules for
Network
Services
IAP-VPN Deployment Scenarios |
408

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents