Hy Will,

bascically, the aruba controller (at least My IAPs) are looking for a
radius attributes sent by packetfence (Tunnel-Private-Group-Id) using this
radius attribute, my IAPs changes dynamically the vlan attribution related
to if the client is registred or not.

this can be configured in the VLAN tab of your SSID configuration.

hoping this helps,

On Tue, May 28, 2013 at 10:46 PM, Rossing, Will <[email protected]> wrote:

> Thanks for the responses!   I've followed the Network Device Config
> docs for the Aruba and also verified the pf radius via the Aruba AAA
> tester/ radius debug but I still must be missing something.    What all
> needs
> to be specified on the PF side for the Aruba switches.conf entry for
> the Radius method, I can't find any examples of that.  This is what I
> have:
>
>
> [default]
> vlans=220,221,223,224,225
> normalVlan=223
> registrationVlan=220
> isolationVlan=221
> macDetectionVlan=225
> voiceVlan=223
> inlineVlan=224
> inlineTrigger=
> normalRole=normal
> registrationRole=registration
> isolationRole=isolation
> macDetectionRole=macDetection
> voiceRole=voice
> inlineRole=inline
> VoIPEnabled=no
> mode=production
> macSearchesMaxNb=30
> macSearchesSleepInterval=2
> uplink=dynamic
>
> [121.140.1.17]
> mode=production
> SNMPCommunityRead=Public
> triggerInline=
> deauthMethod=RADIUS
> SNMPVersionTrap=2c
> type=Aruba
> SNMPVersion=2c
> uplink=dynamic
>
> Thanks
> Will
>
> On Fri, May 24, 2013 at 1:38 PM, Rossing, Will <[email protected]> wrote:
> > A couple probably dumb questions, we are trying to get our Aruba
> > controller working with PF and  can't find any documentation on a
> > couple pieces.
> >
> > 1.  How do you set up a SNMP write  community on the Aruba controller
> > for PF to talk with?  (only see read community settings)?
> >
> > 2.  We have all the vlans trunked to the wireless controller, do we
> > also have to have a trunk on the switch port  the AP is plugged into?
> >
> > 3.   In the Virtual AP proflie setup on the Aruba controller, what
> > VLAN should it be on, "none"?
> >
> > Thanks for any help.
> >
> > Will
>
>
>
> --
>
>
> Will Rossing
> Manager, Network Services  | 218.723.6729 | [email protected]
>
>
> ------------------------------------------------------------------------------
> Introducing AppDynamics Lite, a free troubleshooting tool for Java/.NET
> Get 100% visibility into your production application - at no cost.
> Code-level diagnostics for performance bottlenecks with <2% overhead
> Download for free and get started troubleshooting in minutes.
> http://p.sf.net/sfu/appdyn_d2d_ap1
> _______________________________________________
> PacketFence-users mailing list
> [email protected]
> https://lists.sourceforge.net/lists/listinfo/packetfence-users
>
------------------------------------------------------------------------------
Introducing AppDynamics Lite, a free troubleshooting tool for Java/.NET
Get 100% visibility into your production application - at no cost.
Code-level diagnostics for performance bottlenecks with <2% overhead
Download for free and get started troubleshooting in minutes.
http://p.sf.net/sfu/appdyn_d2d_ap1
_______________________________________________
PacketFence-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/packetfence-users

Reply via email to