Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-1
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-2
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-3
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-4
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-5
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-6
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-7
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-8
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
When L2 roaming (VLAN Roaming) is enabled on the SSID profile then all user associated to that SSID will keep their IP address when roaming from one controller to another controller in an L2 environment.
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-9
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
Note that VLAN mobility can be enabled in the VAP profile. But remember not to enable L3 Mobility at the same time.
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-10
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-11
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-12
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
Place controllers in the same domain where it is logical that client will roam. Controller may be part of several domains.
Domains are global configurations. Therefore they are created on the master controller and pushed down to the local controllers.
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-13
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-14
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
Enable L3 roaming must be done on every controller where L3 roaming will take place.. This is like turning L3 roaming ON
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-15
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
A local controller may get many domains pushed down from the master. But more than probably only one or two domains are relevant to this local controller It is therefore necessary to enable the domains needed in each local controller.
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-16
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
Global function determines such events
Max. Station Mobility Events per Second Max. Visitors Allowed Ma
Mobility Trail Loggingx. Binding Allowed
These are basically engineering parameters on the performance of roaming. It would be available to get TAC involved before making modifications in this window
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-17
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-18
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
Roaming is done on a per VAP basis. Therefore we may decide that employees will roam but that guest will not. When turning on L3 roaming it is recommended to turn off L2 roaming (VLAN roaming)
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-19
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
ArubaOS provides support for Fast BSS Transition as part of the 802.11r implementation. Fast BSS Transition mechanism minimizes the delay when a client transitions from one BSS to another within the same ESS. Fast BSS Transition establishes security and QoS states at the target AP before or during a reassociation. This minimizes the time required to resume data connectivity when a BSS transition happens.
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-20
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
802.11r is enabled in the dot11r profile. Use the show wlan dot11r profile command to view the setting for 802.11r. Additional support for 802.11r on the client side can be verified using the show ap association command.
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-21
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
We can see here on the Home Agent, where the client originated (kind of like where the client started his/her day) is no longer directly associated to an AP on this controller. We retain the users session. The user is listed as AWAY on another AP associated to a controller(Foreign Agent) that is tunneling the traffic back to the Home Agent controller. We can see on the Foreign Agent controller that this user did not originate here but is simply a visitor who’s traffic must be tunneled to another controller the Home Agent.
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-22
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
In these windows we can check the tunnel binding between the two controllers
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-23
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-24
Aruba Bootcamp – Mobility
y l n O l Use
a n r e t In
y l n O e s U l a n r e t In
CONFIDENTIAL © Copyright 2014. Aruba Networks, Inc. All rights reserved
17-25