Wireless Access

last person joined: yesterday 

Access network design for branch, remote, outdoor, and campus locations with HPE Aruba Networking access points and mobility controllers.
Expand all | Collapse all

How to use DHCP Local in Branch Office

This thread has been viewed 1 times
  • 1.  How to use DHCP Local in Branch Office

    Posted Mar 29, 2017 05:43 AM

    Hi All, 

     

    I Need your advise for this case.

    I Got topology Like Bellow.

    IEB.JPG

    AP in Branch Office already Configured with Controller Base without RAP. and in Tunnel Mode I got DHCP from Head Office, So what should i do to make user in Branch Office get DHCP Local ?

     

    Kindly need your advice

     

    Thanks



  • 2.  RE: How to use DHCP Local in Branch Office

    Posted Mar 29, 2017 05:55 AM

    Hi,

    Your AP already configured as rap,You may want to change the working mode (from tunnel to split or bridge)

     

    Bridge mode gives you the same firewall policies, but there is no VPN tunnel. All traffic stays local. IP addressing comes from the local site. (Actually a VPN tunnel does exist, but it is used only for control and management traffic).

    In bridge mode, traffic is never re-encrypted. There are no performance limitations, because wireless encryption and decryption is done in the hardware.


    More info here:
    https://community.arubanetworks.com/t5/Controller-Based-WLANs/What-is-bridge-mode-and-split-tunnel-mode/ta-p/179460

    https://community.arubanetworks.com/aruba/attachments/aruba/115/6161/1/split-tunneling.pdf



  • 3.  RE: How to use DHCP Local in Branch Office

    Posted Apr 04, 2017 01:35 AM

    Hi kdisc98

     

    Thanks for your response,

     

    How about Split Tunnel ? Where is DHCP Comes from ? HQ or Local ?

     

    Thanks



  • 4.  RE: How to use DHCP Local in Branch Office

    Posted Apr 11, 2017 09:20 AM

    Hi,

     

    In split-tunnel, DHCP will be on the HQ network.

     

    We can add acl's in the user -role to define the traffic which needs to be tunneled to the controller & rest of traffic can be locally bridged using another ACL