Dell PowerConnect W-7200 Series Reference Manual page 195

Arubaos 6.2
Hide thumbs Also See for PowerConnect W-7200 Series:
Table of Contents

Advertisement

The master controller operating as the cluster root will use the control plane security feature to create a self-signed
certificate, then certify it's own local controllers and APs. Next, the cluster root will send the certificate to each
cluster member, which in turn certifies their own local controllers and APs. Since all controllers and APs in the
cluster get their certificates from the cluster root, they will all have the same trust anchor, and the APs can switch to
any other controller in the cluster and still remain connected to the secure network. Issue the
command on the controller you want to define as the cluster root to select the certificate or define the IPsec key for
secure communication between the cluster root and each cluster member.
Once the cluster root has defined an IPsec key or certificate for all cluster members, you must access each of the
member controllers and issue the command
to the cluster root.
NOTE: For information on installing certificates on your controller, refer to the Management Utilities chapter of the Dell
PowerConnect W-Series ArubaOS User Guide .
Example
The following command defines the IPsec key for communication between the cluster member and the root
controller172.21.45.22:
(host) (config) #cluster-root-ip 172.21.45.22 ipsec ipseckey1
Related Commands
Parameter
control-plane-security
show cluster-config
show cluster-switches
Command History
Release
ArubaOS 5.0
ArubaOS 6.1
Command Information
Platforms
All platforms
Dell PowerConnect W-Series ArubaOS 6.2 | Reference Guide
cluster-root-ip
Description
Configure the control plane security profile.
Show the multi-master cluster configuration for the control plane
security feature.
Issue this command on a master controller using control plane
security in a multi-master environment to show other the other
controllers to which it is connected.
Modification
Command introduced.
The ipsec-factory-cert and ipsec-custom-cert parameters were introduced to allow
certificate-based authentication of cluster members.
Licensing
Base operating system
to define the IPsec key or certificate for communication
Command Mode
Config mode on cluster member controllers
cluster-member-ip
Mode
Config mode
Enable mode
Enable mode
cluster-root-ip | 195

Advertisement

Table of Contents
loading

This manual is also suitable for:

Powerconnect w-series

Table of Contents