需求
- 有线pc连接到Aruba 交换机。
- 有线用户通过交换机与ac控制器做隧道。
- 有线用户拿到控制器上的vlan用户地址。
拓扑

支持的交换机型号?
- 5400R交换机系列
- 3810系列交换机
- 2930F交换机系列

开启有线隧道服务

控制器配置
新建aaa profiles 为有线用户提供服务,Vlan 分配等信息,在role 分配的角色中配置


交换机配置
Switch(config)# tunneled-node-server controller-ip 10.10.100.1
Switch(config)# tunneled-node-server backup-controller-ip 10.10.100.2
Switch(config)# tunneled-node-server keepalive interval 1
Switch(config)# vlan 310
Switch(config)# name "VLAN310"
Switch(config)# tagged 3
Switch(config)# ip address 101.6.248.10 255.255.255.248
Switch(config)# exit
Switch(config)# ip default-gateway 101.6.248.9
状态查看-交换机
2930F# show tunneled-node-server state
Tunneled Node Port State
Active Controller IP Address : 10.1.30.100
Port State
------ -------------------------
1 Complete
2930F# show tunneled-node-server statistics
Tunneled Node Statistics
Port : 1
Control Plane Statistics
Bootstrap packets sent : 5
Bootstrap packets received : 3
Bootstrap packets invalid : 0
Tunnel Statistics
Rx Packets : 3042
Tx Packets : 1432
Rx 5 Minute Weighted Average Rate (Pkts/sec) : 1
Tx 5 Minute Weighted Average Rate (Pkts/sec) : 0
Aggregate Statistics
Heartbeat packets sent : 5426
Heartbeat packets received : 5426
Heartbeat packets invalid : 0
Fragmented Packets Dropped (Rx) : 0
Packets to Non-Existent Tunnel : 0
MTU Violation Drop : 0
状态查看-控制器
(MC1) #show tunneled-node state
Tunneled Node State
------------------
IP MAC port state vlan tunnel inactive-time
-- --- ---- ----- ---- ------ -------------
10.1.30.5 54:80:28:5e:91:60 1 complete 1 10 0
(MC1) #show user
This operation can take a while depending on number of users. Please be patient ....
Users
-----
IP MAC Name Role Age(d:h:m) Auth VPN link AP name Roaming Essid/Bssid/Phy Profile Forward mode Type Host Name User Type
---------- ------------ ------ ---- ---------- ---- -------- ------- ------- --------------- ------- ------------ ---- --------- ---------
192.168.0.109 3c:97:0e:d2:07:62 3c970ed20762 YX 00:00:29 MAC tunnel 10 Tunneled 10.1.30.5:1/54:80:28:5e:91:60 hrbcu-YX tunnel Win XP WIRED