Aruba 交换机与Aruba控制器做PBT

需求

  1. 有线pc连接到Aruba 交换机。
  2. 有线用户通过交换机与ac控制器做隧道。
  3. 有线用户拿到控制器上的vlan用户地址。

拓扑

支持的交换机型号?

  • 5400R交换机系列
  • 3810系列交换机
  • 2930F交换机系列

开启有线隧道服务

控制器配置

新建aaa profiles 为有线用户提供服务,Vlan 分配等信息,在role 分配的角色中配置

交换机配置

Switch(config)# tunneled-node-server controller-ip 10.10.100.1
Switch(config)# tunneled-node-server backup-controller-ip 10.10.100.2
Switch(config)# tunneled-node-server keepalive interval 1
Switch(config)# vlan 310
Switch(config)# name "VLAN310"
Switch(config)# tagged 3
Switch(config)# ip address 101.6.248.10 255.255.255.248
Switch(config)# exit
Switch(config)# ip default-gateway 101.6.248.9

状态查看-交换机

2930F# show tunneled-node-server state
Tunneled Node Port State
Active Controller IP Address  : 10.1.30.100
Port   State
------ -------------------------
1      Complete
2930F# show tunneled-node-server statistics
Tunneled Node Statistics
Port : 1
Control Plane Statistics
Bootstrap packets sent      : 5
Bootstrap packets received  : 3
Bootstrap packets invalid   : 0
Tunnel Statistics
Rx Packets                                    : 3042
Tx Packets                                    : 1432
Rx 5 Minute Weighted Average Rate (Pkts/sec)  : 1
Tx 5 Minute Weighted Average Rate (Pkts/sec)  : 0
Aggregate Statistics
Heartbeat packets sent           : 5426
Heartbeat packets received       : 5426
Heartbeat packets invalid        : 0
Fragmented Packets Dropped (Rx)  : 0
Packets to Non-Existent Tunnel   : 0
MTU Violation Drop               : 0

状态查看-控制器

(MC1) #show tunneled-node state
Tunneled Node State
------------------
IP         MAC                port  state     vlan  tunnel  inactive-time
--         ---                ----  -----     ----  ------  -------------
10.1.30.5  54:80:28:5e:91:60  1     complete  1     10      0
(MC1) #show user
This operation can take a while depending on number of users. Please be patient ....
Users
-----
IP              MAC            Name         Role           Age(d:h:m)  Auth  VPN link  AP name    Roaming   Essid/Bssid/Phy                Profile               Forward mode  Type    Host Name  User Type
----------     ------------       ------        ----           ----------  ----  --------  -------    -------   ---------------                -------               ------------  ----    ---------  ---------
192.168.0.109  3c:97:0e:d2:07:62  3c970ed20762  YX  00:00:29    MAC             tunnel 10  Tunneled  10.1.30.5:1/54:80:28:5e:91:60  hrbcu-YX  tunnel        Win XP             WIRED

请登录评论。