Aruba IAP-335 User Manual page 61

Instant software
Hide thumbs Also See for IAP-335:
Table of Contents

Advertisement

Table 17: System Parameters
Parameter
Dynamic Proxy
MAS Integration
NTP Server
61
| Initial Configuration Tasks
Description
This parameter allows you to enable or disable the
dynamic proxy for RADIUS and Terminal Access
Controller Access Control System (TACACS) servers.
Dynamic RADIUS proxy—When dynamic
l
RADIUS proxy is enabled, the VC network will use
the IP address of the VC for communication with
external RADIUS servers. Ensure that you set the
VC IP address as a Network Access Server (NAS)
client in the RADIUS server if Dynamic RADIUS
proxy is enabled.
Dynamic TACACS proxy—When enabled, the VC
l
network will use the IP address of the VC for
communication with external TACACS servers.
The IP address is chosen based on one of the
following rules:
If a VPN tunnel exists between the IAP and the
TACACS server, then the IP address of the tunnel
interface will be used.
If a VC IP address is configured, the the same will be
used by the VC network to communicate with the
external TACACS server.
If a VC IP is not configured, then the IP address of the
bridge interface is used.
NOTE: When dynamic-tacacs-proxy is enabled on
the IAP, the TACACS server cannot identify the slave
IAP that generates the TACACS traffic as the source
IP address is changed.
Select Enabled/Disabled from the MAS
integration drop-down list to enable or disable the
Link Layer Discovery Protocol (LLDP) protocol for
Mobility Access Switch integration. With this
protocol, IAPs can instruct the Mobility Access
Switch to turn off ports where rogue access points
are connected, as well as take actions such as
increasing PoE priority and automatically
configuring VLANs on ports where Instant Access
Points are connected.
This parameter allows you to configure NTP server.
To facilitate communication between various
elements in a network, time synchronization
between the elements and across the network is
critical. Time synchronization allows you to:
Trace and track security gaps, monitor network
l
usage, and troubleshoot network issues.
CLI Configuration
To enable dynamic
RADIUS proxy:
(Instant AP)(config)
# dynamic-radius-
proxy
To enable TACACS proxy:
(Instant AP)(config)
# dynamic-tacacs-
proxy
(Instant AP)(config)
# mas-integration
To configure an NTP
server:
(Instant AP)(config)
# ntp-server <name>
Aruba Instant 6.5.0.0-4.3.0.0 | User Guide

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents