ArubaOS Center
You are here: Home > 开始 > Initial Setup on a Serial Port Connection

Initial Setup on a Serial Port

You can launch the setup wizard using any PC or workstation that can run a supported Web browser.

The PC or workstation must either be configured to obtain its IP address usingDHCPDynamic Host Configuration Protocol. A network protocol that enables a server to automatically assign an IP address to an IP-enabled device from a defined range of numbers configured for a given network., or configured to have a static IP address on the sub-network. The default IP address of themanaged deviceis Connect a PC or workstation to any line port on themanaged device, then enter this IP address into a supported Web browser to launch the Setup Wizard.

To run the Setup Wizard:

1.Connect your PC or workstation to a line port on themanaged device

2.Make sure that themanaged deviceis not connected to any device on your network.

3.Boot up themanaged device

4.On your PC or workstation, open a Web browser and connect to

5.The initial window of theMobility Controller SetupWizard asks you to select one of the following deployment modes. SelectStandaloneorManagedthen clickContinue

StandaloneController: This is the onlycontrolleron the network.

Managed Controller: Thismanaged devicewill be managed by aMobility Master

Initial Setup on a Serial Port Connection

The serial port is located on the front panel (back panel in case of7024and7008controllers) of themanaged device。You can start the Initial Setup dialog when you connect a terminal, PC or workstation running a terminal emulation program to the serial port on themanaged device

The serial port connection only allows you to configure the basic configuration required to connect themanaged deviceto the network. The recommended browser-based configuration Wizard allows you to also install software licenses and configure internal and guestWLANsWireless Local Area Network. WLAN is a 802.11 standards-based LAN that the users access through a wireless connection.。If you use the Initial Setup dialog to configure themanaged device, the browser-based Setup Wizard will not be available unless you reset themanaged deviceto its factory default configuration.

To run the Initial full setup dialog from a serial connection:

1.Configure your terminal or terminal emulation program to use the following communication settings:

Table 1:Terminal Communication Settings

Baud Rate

Data Bits


Stop Bits

Flow Control






2.Connect your terminal or PC/workstation to the serial port on themanaged devicesusing an RS-232 serial cable. RJ-45 cable and DB-9 to RJ-45 adapter is required. You may need aUSBUniversal Serial Bus. USB is a connection standard that offers a common interface for communication between the external devices and a computer. USB is the most common port used in the client devices.adapter to connect the serial cable to your PC.

3.Boot up themanaged device。After themanaged devicehas booted up, you should see a screen similar to the following setup dialog formanaged devices:

Auto-provisioning is in progress. Choose one of the following options to override or debug...

'enable-debug' : Enable auto-provisioning debug logs

'disable-debug': Disable auto-provisioning debug logs

'mini-setup' : Stop auto-provisioning and start mini setup dialog for smart-branch role

'full-setup' : Stop auto-provisioning and start full setup dialog for any role

Enter Option (partial string is acceptable):f

Are you sure that you want to stop auto-provisioning and start full setup dialog? (yes/no): y

Reading configuration from factory-default.cfg

4.(Applicable tomanaged devicesusingZTPZero Touch Provisioning. ZTP is a device provisioning mechanism that allows automatic and quick provisioning of devices with a minimal or at times no manual intervention.) enterfto invoke full-setup.

5.The Serial Port Configuration Dialog displays the configuration prompts. The prompts may vary, depending upon the switch role you choose. Enter the required information at each prompt, then pressEnterto continue to the next question.

Table 2:Serial Console Configuration Dialog

Console Prompt


Enter System Name

Enter a name for themanaged device, or pressEnterto use the default system name. You can specify a name of up to 63 characters.

Enter Switch Role,


Specify one of the following roles:

Master:This device is the7200 Seriescontrollersrunning as a mastercontroller

Stand-alone:This is the only self-managedcontrolleron your network.

md:This device will be managed by aMobility Master。You are prompted to specify the type of authentication to be used by themanaged device。If you are configuring amanaged deviceto use pre-shared key authentication to communicate with theMobility Master, enter the IP address of theMobility Masterand the pre-shared key. If you are configuring amanaged deviceto use certificate authentication, specify theMACMedia Access Control. A MAC address is a unique identifier assigned to network interfaces for communications on a network.addresses of theMobility Master

IP type to terminate IPSec


Specify if the IP type to which theIPsecInternet Protocol security. IPsec is a protocol suite for secure IP communications that authenticates and encrypts each IP packet in a communication session.tunnels use to terminate. The IP types are IPv4 and IPv6.

Master switch IP address orFQDNFully Qualified Domain Name. FQDN is a complete domain name that identifies a computer or host on the Internet.

Specify the IP or fully qualified name of theMobility Master

Is this aVPNVirtual Private Network. VPN enables secure access to a corporate network when located remotely. It enables a computer to send and receive data across shared or public networks as if it were directly connected to the private network, while benefiting from the functionality, security, and management policies of the private network. This is done by establishing a virtual point-to-point connection through the use of dedicated connections, encryption, or a combination of the two.concentrator formanaged deviceto reach Master switch

EnterNo。Most of the installations would not have aVPNVirtual Private Network. VPN enables secure access to a corporate network when located remotely. It enables a computer to send and receive data across shared or public networks as if it were directly connected to the private network, while benefiting from the functionality, security, and management policies of the private network. This is done by establishing a virtual point-to-point connection through the use of dedicated connections, encryption, or a combination of the two.concentrator installed.

NOTE:EnterYesonly if aVPNVirtual Private Network. VPN enables secure access to a corporate network when located remotely. It enables a computer to send and receive data across shared or public networks as if it were directly connected to the private network, while benefiting from the functionality, security, and management policies of the private network. This is done by establishing a virtual point-to-point connection through the use of dedicated connections, encryption, or a combination of the two.concentrator is installed in the network.

Master switch Authentication method

Provide a choice of PSKwithIP or PSKwithMAC.

If you choose PSKwithMAC, then the peerMACMedia Access Control. A MAC address is a unique identifier assigned to network interfaces for communications on a network.address value to be configured on a device for tunnel establishment is based on the platform type of the peer device. For more information on the type ofMACMedia Access Control. A MAC address is a unique identifier assigned to network interfaces for communications on a network.address to be configured as peerMACMedia Access Control. A MAC address is a unique identifier assigned to network interfaces for communications on a network.address, seePeer MAC Address Configuration for PSK with MAC

IPsecInternet Protocol security. IPsec is a protocol suite for secure IP communications that authenticates and encrypts each IP packet in a communication session.Pre-shared Key

Security key for theIPsecInternet Protocol security. IPsec is a protocol suite for secure IP communications that authenticates and encrypts each IP packet in a communication session.之间的隧道managed deviceand theMobility Master, 6 to 64 characters.

UplinkVlanVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.ID

Specify theVLANVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.ID which is an integer. Value range- 1 to 4094

Uplink port

Its not value 1 or 0, value should be 1/0 or 0/0/0 or any port based on themanaged deviceplatforms.

Uplink port mode

Specify the port mode as either Access or Trunk. In trunk mode, a port can carry traffic for multipleVLANsVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.。在访问模式下,港口s untagged packets received to themanaged deviceand they appear on the configured access modeVLANVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.

Enter NativeVLANVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.ID [1]

Specify a particularvlanVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or be configured as a nativevlanVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.

UplinkVlanVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.IP assignment


Assign manually the IP addressing of the uplink or viaDHCPDynamic Host Configuration Protocol. A network protocol that enables a server to automatically assign an IP address to an IP-enabled device from a defined range of numbers configured for a given network.

UplinkVlanVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.Static IP


Themanaged devicetakes its IP address fromVLANVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.1 and uses this IP address to communicate with othermanaged devicesand with APs. Enter an IPv4VLANVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.1 interface IP address, or pressEnterwithout specifying an IP address to use the default address

UplinkVlanVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.Static IP

netmask子网掩码是一个32位掩码使用for segregating IP address into subnets. Netmask defines the class and range of IP addresses.

Enter an IPv4VLANVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.1 interface IPsubnetSubnet is the logical division of an IP network.mask, or press Enter without specifying an IP address to use the default address

IP defaultgatewayGateway is a network node that allows traffic to flow in and out of the network.

This is usually the IP address of the interface on the upstream switch or router to which you will connect themanaged devices。The defaultgatewayGateway is a network node that allows traffic to flow in and out of the network.and theVLANVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.1 IP address need to be in the same network. Enter an IPv4gatewayGateway is a network node that allows traffic to flow in and out of the network.IP address, or press Enter to continue without specifying an IPgatewayGateway is a network node that allows traffic to flow in and out of the network.

DNSDomain Name System. A DNS server functions as a phone book for the intranet and Internet users. It converts human-readable computer host names into IP addresses and IP addresses into host names. It stores several records for a domain name such as an address 'A' record, name server (NS), and mail exchanger (MX) records. The Address 'A' record is the most important record that is stored in a DNS server, because it provides the required IP address for a network peripheral or element.IP address

IP address of theDNSDomain Name System. A DNS server functions as a phone book for the intranet and Internet users. It converts human-readable computer host names into IP addresses and IP addresses into host names. It stores several records for a domain name such as an address 'A' record, name server (NS), and mail exchanger (MX) records. The Address 'A' record is the most important record that is stored in a DNS server, because it provides the required IP address for a network peripheral or element.server.

IPV6 address onvlanVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.

IPv6 address of themanaged device

Do you want to configure

port-channel (yes|no) [no]

Specify if you want to configure the port-channel.LACPLink Aggregation Control Protocol. LACP is used for the collective handling of multiple physical ports that can be seen as a single channel for network traffic purposes.will be configured on port

members with port-channel ID asLACPLink Aggregation Control Protocol. LACP is used for the collective handling of multiple physical ports that can be seen as a single channel for network traffic ID.

Enter Port-channel ID [0]

Specify the port-channel ID.

UplinkVlanVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.Static IPv6


Themanaged devicetakes its IP address fromVLANVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.1 and uses this IP address to communicate with othermanaged devicesand with APs. SupportedsubnetsSubnet is the logical division of an IP network.are: Global Unicast: 2000::/3, Unique local unicast: fc00::/7

Enter an IPv6VLANVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.1 interface IP address, or pressEnterwithout specifying an IP address to use the default address 2000::1.

UplinkVlanVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.interface IPV6

prefix length

Enter a value from 0 to 128 to define an IPv6VLANVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.1 interface IP prefix length, or pressEnterwithout specifying a prefix length to use the default value of 64.

IPv6 defaultgatewayGateway is a network node that allows traffic to flow in and out of the network.

This optional value is usually the IP address of the interface on the upstream switch or router to which you will connect themanaged device。The defaultgatewayGateway is a network node that allows traffic to flow in and out of the network.and theVLANVirtual Local Area Network. In computer networking, a single Layer 2 network may be partitioned to create multiple distinct broadcast domains, which are mutually isolated so that packets can only pass between them through one or more routers; such a domain is referred to as a Virtual Local Area Network, Virtual LAN, or VLAN.1 IP address need to be in the same network. Enter an IPv6gatewayGateway is a network node that allows traffic to flow in and out of the network.IP address to configure this setting, or pressEnterto continue without specifying an IPgatewayGateway is a network node that allows traffic to flow in and out of the network.

Country code

If yourmanaged devicehas a country code that restricts its usage, enteryesto confirm this code.

Time Zone

Enter the time zone for themanaged device, or pressEnterto select the default time zone.

Time inUTCCoordinated Universal Time. UTC is the primary time standard by which the world regulates clocks and time.

Enter the current time inUTCCoordinated Universal Time. UTC is the primary time standard by which the world regulates clocks and time.format, or pressEnterto select the default time.


Enter the current date, or pressEnterto select the default date.

Password for admin login

Enter a password to allow the admin user to login to the WebUI,CLI命令行界面。有一个控制台界面command line shell that allows users to execute text input as commands and convert these commands to appropriate functions.and console interfaces. This password can be up to 32 alphanumeric characters long.

Re-type password for

admin login

Confirmation for the admin login password

6.At the end of the Initial Setup, you are asked to review and confirm your configuration changes. Enteryto accept the changes. Themanaged devicereboots.

If you want to complete optional configuration options (e.g. disabling spanning tree or installing software licenses) before connecting themanaged deviceto the network, refer to theArubaOS8.6.0.x User Guide for additional information on configuration.
