Environment : This article applies to Aruba Instant Access Points with InstantOS 3.2 or higher terminating on Aruba Mobility Controller running ArubaOS 6.2 or above.
With the introduction of Instant 3.0 release, the Virtual Controller on the IAP can build an IPsec VPN tunnel back to an Aruba Controller. The Aruba controller is just a VPN termination point and will not be used for provisioning the IAP.
Below are the minimum requirements:
ArubaOS version running on the Aruba Controller should be 6.2 or higher
InstantOS version running on Instant AP should be 3.2 or higher
NOTE:PEFV license needed to change role assigned to IAP (optional)
PEF-NG license needed to add firewall policies to default VPN role (optional)