Aruba Stuff in EVE-NG

EVE-NG - Device ID

Reading Time: 8 minutesI discovered that EVE-NG supports a lot of Aruba Stuff and in this post, I will show how to get it running in EVE-NG. I did a first post on this with the topic on how to install EVE-NG in Azure here: https://www.flomain.de/2020/11/eve-ng-in-azure/(opens in a new tab) This was related to EVE-NG in Azure, the … Read more

Aruba VIA VPN with IKEv2

Aruba VIA VPN - Successful VPN Connection

Reading Time: 12 minutesThis post is to show how Aruba VIA VPN with IKEv2 works. With IKEv2 we switch to a certificate-based authentication which makes it easier for users and more secure for the whole organization. In an older post here I did a basic setup with IKEv1 and username password. This new post will leverage IKEv2 and … Read more

Aruba AP Authentication

Campus AP Authentication - Provision AP for EAP-TLS

Reading Time: 19 minutesMost organizations are moving to a network where all ports are authenticated. This could lead to problems when we try to connect an AP to a network port as AP authentication is more than just an accept. There are two types of AP that might be considered. First, the Campus AP, which needs to connect … Read more

ClearPass SSO with Azure AD

ClearPass SSO with Azure AD - Setup SSO

Reading Time: 7 minutesIn this post, I show how to configure ClearPass SSO with Azure AD. I use SSO (single sign-on) to authenticate operators, using ClearPass. To use SSO for users to authenticate against the network and onboard new devices, for example, will be a later post. What and Why? So what is SSO or single sign-on? Actually … Read more

Port Forwarding with SD-Branch

Port Forwarding with SD-Branch - Add Policy to the WAN Port

Reading Time: 6 minutesAfter some time of absence, I’m back now, with a new lab in a new home. So I can build new cool stuff to test different and new setups. One part of the new LAB is SD-Branch and as I use my Synology Diskstation to backup this blog I need to create a rule to … Read more

LACP For AP’s With Two Ethernet Ports

LACP for AP's - Set GRE Striping IP

Reading Time: 9 minutesI was asked on how to configure LACP for AP’s connected to a controller and I was not able to answer this question out of my mind so I decided to figure it out for myself. And as always, when I need to test something, I write a post about it. This is my post … Read more

DHCP Vendor Class Identifier – DHCP Option 60

Reading Time: 4 minutesIn several meetings I get the question, how can I sent different DHCP options to different devices. The answer is to use the DHCP Vendor Class Identifier, DHCP option 60. Every device sends this option to the DHCP Server, and each DHCP Server can answer with specific options, depending on the option 60. I will … Read more