Wireless Access

Reply
Highlighted
Frequent Contributor I

COA on AOS 8

In A setup MM and cluster two Controllers.

 

For COA to work we need to configure VRRP IP for each controllers.

 

For Management of two controllers one IP (Example 192.168.1.1 and 192.168.1.2) each and one VIP (192.168.1.3) for AP's to Discover and download the configuration.

Management Vlan 10 - 192.168.1.1

                                      192.168.1.2

                      VIP   - 192.168.1.3

For COA to work we need one IP User vlan Each 

Vlan 20 - 192.168.2.1

               192.168.2.2

 

In the above scenario are we allowed  to use Management IP 192.168.1.1  by configuring at Specific controller in Hierarchy as NAS -IP to ensure COA works . This will reduce customer to allocate less number of IP.

 

This is one of the query from Secure Site Customer as they need to clear for more number of IP's moving to AOS 8.

 

Please advice.


Accepted Solutions
Highlighted
Guru Elite

Re: COA on AOS 8

You honestly don't need VRRPs for COA to work. 

 

The VRRP ip address created in the Cluster Profile, that automatically creates VRRP IDS from 220 and up are only really used if there is a cluster failover/election, so that the ip address of the NAS stays the same as that in the user's in the access tracker.  If there are no cluster failovers between when the user first authenticates and when you expect to do a COA, the cluster VRRP configuration is excess, really.  COA will still work without configuring VRRPs in the cluster profile.


*Answers and views expressed by me on this forum are my own and not necessarily the position of Aruba Networks or Hewlett Packard Enterprise.*
ArubaOS 8.5 User Guide
InstantOS 8.5 User Guide
Airheads Knowledgebase
Airheads Video Knowledge Base
Remote Access Point Solution Guide
ArubaOS Consolidated Release Notes
ArubaOS 8 ViA VPN Solution Guide

View solution in original post


All Replies
Guru Elite

Re: COA on AOS 8

Highlighted
Frequent Contributor I

Re: COA on AOS 8

So if i understand correctly  i need VIP for each MD for COA to work. :-(

 

 

Highlighted
Guru Elite

Re: COA on AOS 8

You honestly don't need VRRPs for COA to work. 

 

The VRRP ip address created in the Cluster Profile, that automatically creates VRRP IDS from 220 and up are only really used if there is a cluster failover/election, so that the ip address of the NAS stays the same as that in the user's in the access tracker.  If there are no cluster failovers between when the user first authenticates and when you expect to do a COA, the cluster VRRP configuration is excess, really.  COA will still work without configuring VRRPs in the cluster profile.


*Answers and views expressed by me on this forum are my own and not necessarily the position of Aruba Networks or Hewlett Packard Enterprise.*
ArubaOS 8.5 User Guide
InstantOS 8.5 User Guide
Airheads Knowledgebase
Airheads Video Knowledge Base
Remote Access Point Solution Guide
ArubaOS Consolidated Release Notes
ArubaOS 8 ViA VPN Solution Guide

View solution in original post

Highlighted
Frequent Contributor I

Re: COA on AOS 8

Thanks a lot for more detailed information

Search Airheads
cancel
Showing results for 
Search instead for 
Did you mean: