Configuration Steps
CLI Commands
UI Procedure
(Instant AP)(wired-port-profile "wired-port")# auth-
server server2
(Instant AP)(wired-port-profile "wired-port")# dot1x
(Instant AP)(wired-port-profile "wired-port")# exit
(Instant AP)(config)# enet1-port-profile wired-port
Configure a wireless SSID to operate in L3 mode for employee
and associate Distributed, L3 mode VLAN 30 to the WLAN SSID
profile.
(Instant AP)(config) # wlan ssid-profile wireless-
ssid
(Instant AP)(SSID Profile "wireless-ssid")# enable
(Instant AP)(SSID Profile "wireless-ssid")# type
employee
(Instant AP)(SSID Profile "wireless-ssid")# essid
wireless-ssid
(Instant AP)(SSID Profile "wireless-ssid")# opmode
wpa2-aes
(Instant AP)(SSID Profile "wireless-ssid")# vlan 30
(Instant AP)(SSID Profile "wireless-ssid")# auth-
server server1
(Instant AP)(SSID Profile "wireless-ssid")# auth-
server server2
(Instant AP)(SSID Profile "wireless-ssid")# auth-
survivability
Configure a wireless SSID to operate in L3 mode for contractor
and associate Distributed, L3 mode VLAN 40 to the WLAN SSID
profile.
(Instant AP)(config) # wlan ssid-profile wireless-
ssid-contractor
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# enable
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# type contractor
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# essid wireless-ssid-contractor
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# opmode wpa2-aes
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# vlan 40
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# auth-server server1
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# auth-server server2
(Instant AP)(SSID Profile "wireless-ssid-
contractor")# auth-survivability
7. Create access rule for
wired and wireless
authentication. In this
example, the rule
permits all traffic. For
contractor SSID role, the
rule allows only
For wired profile:
(Instant AP)(config)# wlan access-rule wired-port
(Instant AP)(Access Rule "wired-port")# rule any any
match any any any permit
For WLAN SSID employee roles:
See
Configuring
ACL Rules for
Network
Services
Table 86:
IAP Configuration for Scenario 3—IPsec: Multiple Datacenter Deployment
Aruba Instant 6.5.0.0-4.3.0.0 | User Guide
IAP-VPN Deployment Scenarios |
408