Controller-less WLANs

How to configure VPN Fast Failover on IAP ?

Aruba Employee

Product and Software:  This articles applies to Aruba Instant Access Points (IAP's) running on Aruba InstantOS 6.2.0.0-3.2.0.0 and later.

 

Starting from Instant 3.2, IAP supports fast-failover with two tunnels with controllers. Both the tunnels are UP at the same time and when one of the tunnel goes down, IAP will use another tunnel which is already UP. Thus minimizing the time required for VPN switchover.

 

Before Instant 3.2, IAP establishes only one tunnel to the Controller (Either Primary or Backup). If the current tunnel goes down, IAP has to establish tunnel with the another controller.

rtaImage (8).jpg

 

Follow the below steps to enable VPN Fast-Failover :

  1. Using GUI, login into Virtual Controller

  2. Click VPN in the top-right Main Menu

  3. Click on the Controller Tab and configure as shown in below example:

rtaImage (9).jpg

 

Note:  "Connection Test Frequency" and "Test Packet Count"  fields appear only when a character is entered is "Primary Host" field.

 

Connection Test Frequency:  This defines the interval in seconds between two consecutive heartbeats. The default value is 10 seconds. In this case, ping to the controller's loopback address  is considered as heartbeat.

Test Packet Count:   The default value is 2. If two consecutive ping to controller's loopback address (heartbeats) goes unresponded, then fast failover is triggered.

Configuration via CLI is not supported, but we can always verify the configuration by SSH to the Virtual Controller.

 

rtaImage (10).jpg

 

As of Instant 3.2, Configuration via CLI is not supported.

 

 

 

 

 

 

 

Version history
Revision #:
1 of 1
Last update:
‎07-02-2014 03:12 PM
Updated by:
 
Labels (1)
Contributors
Search Airheads
cancel
Showing results for 
Search instead for 
Did you mean: 
Is this a frequent problem?

Request an official Aruba knowledge base article to be written by our experts.