Controller Based WLANs

How to open the desired ports on sys-ap-role for an Access Point?
Q:
How to open the desired ports on sys-ap-role for an Access Point?


A:
In some scenarios we may use Aruba Access Points for capturing the packets over the Air which will need to open certain packets and it can be achieved as below.

(ArubaController) #
(ArubaController) #ap packet-capture open-port 2300    
(ArubaController) #
(ArubaController) #show rights sys-ap-role             

Valid = 'Yes'
CleanedUp = 'No'
Derived Role = 'sys-ap-role'
 Up BW:No Limit   Down BW:No Limit  
 L2TP Pool = default-l2tp-pool
 PPTP Pool = default-pptp-pool
 Number of users referencing it = 0
 Periodic reauthentication: Disabled
 DPI Classification: Enabled
 Youtube education: Disabled
 Web Content Classification: Enabled
 ACL Number = 11/0
 Max Sessions = 65535
 Check CP Profile for Accounting = TRUE

Application Exception List
--------------------------
Name  Type
----  ----

Application BW-Contract List
----------------------------
Name  Type  BW Contract  Id  Direction
----  ----  -----------  --  ---------

access-list List
----------------
Position  Name         Type     Location
--------  ----         ----     --------
1         sys-control  session  
2         sys-ap-acl   session  

sys-control
-----------
Priority  Source  Destination  Service               Application  Action  TimeRange  Log  Expired  Queue  TOS  8021P  Blacklist  Mirror  DisScan  ClassifyMedia  IPv4/6  Contract
--------  ------  -----------  -------               -----------  ------  ---------  ---  -------  -----  ---  -----  ---------  ------  -------  -------------  ------  --------
1         any     any          sys-svc-icmp                       permit                           Low                                                           4        
2         any     any          sys-svc-dns                        permit                           Low                                                           4        
3         any     any          sys-svc-papi                       permit                           Low                                                           4        
4         any     any          sys-svc-sec-papi                   permit                           Low                                                           4        
5         any     any          sys-svc-cfgm-tcp                   permit                           Low                                                           4        
6         any     any          sys-svc-adp                        permit                           Low                                                           4        
7         any     any          sys-svc-tftp                       permit                           Low                                                           4        
8         any     any          sys-svc-dhcp                       permit                           Low                                                           4        
9         any     any          sys-svc-natt                       permit                           Low                                                           4        
10        any     any          sys-svc-openflow-tcp               permit                           Low                                                           4        
sys-ap-acl
----------
Priority  Source  Destination  Service               Application  Action  TimeRange  Log  Expired  Queue  TOS  8021P  Blacklist  Mirror  DisScan  ClassifyMedia  IPv4/6  Contract
--------  ------  -----------  -------               -----------  ------  ---------  ---  -------  -----  ---  -----  ---------  ------  -------  -------------  ------  --------
1         any     any          sys-svc-gre                        permit                           Low                                                           4        
2         any     any          sys-svc-syslog                     permit                           Low                                                           4        
3         any     any          sys-svc-snmp                       permit                           Low                                                           4        
4         any     any          sys-svc-http                       permit                           Low                                                           4        
5         user    any          sys-svc-kerberos-tcp               permit                           Low                                                           4        
6         user    any          sys-svc-smb-tcp                    permit                           Low                                                           4        
7         any     any          sys-svc-snmp-trap                  permit                           Low                                                           4        
8         any     any          sys-svc-ntp                        permit                           Low                                                           4        
9         user    any          sys-svc-ftp                        permit                           Low                                                           4        
10        any     user         sys-svc-telnet                     permit                           Low                                                           4        
11        user    any          sys-svc-am-4500                    permit                           Low                                                           4        
12        user    any          sys-svc-am-500                     permit                           Low                                                           4        
13        user    any          sys-svc-am-2300                    permit                           Low                                                           4        


Expired Policies (due to time constraints) = 0

(ArubaController) # 

Version history
Revision #:
2 of 2
Last update:
‎03-26-2017 04:04 AM
Updated by:
 
Labels (1)
Contributors
Search Airheads
Showing results for 
Search instead for 
Did you mean: 
Is this a frequent problem?

Request an official Aruba knowledge base article to be written by our experts.