9036946-01 Extreme Campus Controller v05.26.02.0014 RelNotes

9036946-01, Extreme, Campus, Controller, v05.26.02.0014 RelNotes

ExtremeNetworks Extreme Networks, Inc.

Extreme Campus Controller version 5.26.02 Release Notes Mar 2021

Extreme Campus Controller Version 5.26 - Extreme Networks

PDF Viewing Options

Not Your Device? Search For Manuals or Datasheets below:


File Info : application/pdf, 18 Pages, 389.66KB

Document DEVICE REPORT9036946-01 Extreme Campus Controller v05.26.02.0014 RelNotes
Customer Release Notes
Extreme Campus Controller
Firmware Version V05.26.02.0014
March 26, 2021

6480 Via Del Oro San Jose, CA 95119
+1 888-257-3000

INTRODUCTION:
The Extreme Campus Controller, is a next generation orchestration application offering all the mobility services required for modern unified access deployments. The Extreme Campus Controller includes comprehensive critical network services for wireless and wired connectivity, wireless device secure onboarding, distributed and centralized data paths, role-based access control through the Application Layer (Layer 7), integrated location services, and IoT device onboarding through a single platform. Built on field proven architectures with the latest technology, the embedded operating system supports containerization of applications enabling future expansion of value-added applications for the unified access edge.
The E3120 is a large application appliance meeting the needs of high-density and mission critical deployments with support for up to 10,000 APs/Defenders, 2000 switches, and 100,000 mobility sessions in high-availability mode. An optional redundant power supply is available for ordering separately.
The E2120 is an application appliance meeting the needs of medium sized high-density and mission critical deployments with support for up to 4,000 APs/Defenders, 800 switches and 32,000 mobility sessions in highavailability mode. An optional redundant power supply is available for ordering separately.
The E2122 is an application appliance meeting the needs of medium sized high-density and mission critical deployments with support for up to 4,000 APs/Defenders, 800 switches and 32,000 mobility sessions in highavailability mode. An optional redundant power supply is available for ordering separately.
The E1120 is an entry to mid-level platform expandable to 250 APs/Defenders, 100 switches, and 4,000 mobility sessions in high-availability mode.
The VE6120 is an elastic virtual appliance that supports up to 1,000 APs/Defenders, up to 400 switches and 16,000 mobility sessions in high-availability mode depending on the hosting hardware.
The VE6120 and VE6120H offer elastic capacities to cover the full range of offering as VMWare/MS Hyper-V, ranging from VE6120/VE6120H-Small to VE6120/VE6120H-Large.
The VE6125 XL is an virtual appliance that supports up to 4,000 APs/Defenders, up to 400 switches and 32,000 mobility sessions in high-availability mode, depending on the hosting hardware.
The Extreme Campus Controller offers the ability to expand capacity to meet any growing business needs. The hardware and virtual packages are available for purchase using a traditional CAPEX model. Customer has the option to purchase adoption capacity via a Perpetual (CAPEX) model or as a Right-To-Use Subscription model, supporting flexible quantites (per managed device) and term (multiple-year extended term) option.

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 1 of 18

Extreme Campus Controller Customer Release Notes

Enhancements in 05.26.02.0014

Added support for adoption of AP302W, the new 2x2 802.11ax wallplate Universal AP. Supported models are: · AP302W-FCC · AP302W-WR · AP302W-CAN

XCC-495

Introduced the Extreme Campus Controller E2122, supporting expandable management for up to 4000 APs (HA). Requires Activation License (XCC-ACT-V5-HW) and device Adoption Capacity Licenses (XCC-ORC-x-xxx).
Extreme Campus Controller V5.26.02 or newer installs only.

XCC-664

Enhanced Reports facility to provide better aggregate reporting representative of large venue installations. Added ability to support reports based on customer-defined user groups, enabling consolidation of metrics from different user categories combined in the same widget.
Scheduler for Extreme Campus Controller v1.1.04 recommended in support of automatic report scheduling.

XCC-715

Improved workflow for configuring physical link aggregation (LAG). LAG configuration will automatically remap topologies assigned to member ports to the LAG port.

XCC-775

Improved control over "Locate" LED pattern by providing explicit control for enabling and disabling the pattern.

XCC-825

Introduced new notification event conveying significant changes in the X/Y positioning of an associated device relative to the site's floorplan, providing improved efficiency of external location related applications. Programmable access to this new event is facilitated though the Extreme Campus Controller Python SDK (https://test.pypi.org/project/pyxccsdk/).

XCC-661

Improved utilization metrics widgets to provide customers with better insight as to actual average utilization and the usage contribution from each client.

XCC-844

Improved naming of techsupport files for easier sorting.

XCC-856

(Beta) Added widgets for monitoring of AP connectivity and network link metrics.

XCC-446

Addressed issue with reporting visualization in the User Interface for Mesh Reports of a Root ECA-565 AP with Ethernet connection.

Enhancements in 05.26.01.0023
Added support for adoption of Universal AP variants: AP410C and AP460C. Minimum serial number required: - First 410C SN = 04102101280001 - First 460C SN = 24602101250001 - First 460S6C SN = 34602101250001 - First 460S12C SN = 44602101250001
Added support for adoption of Universal AP variants: AP305C and AP305CX. Minimum serial number required: - First 305C SN = 03052009040001 - First 305CX SN = 13052009040001

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

XCC-562 XCC-665
Page: 2 of 18

Extreme Campus Controller Customer Release Notes

Expanded capacity of wired ports on AP5xx/AP4xx and AP410C to 128 clients per port.
Enhanced dashboards to provide top-level and site-level mixed aggregate views for: - Multi-level time chart of users per network (SSID) across all networks - Utilization per Network - Multi-level chart of network utilization across all networks
Extend Central Web Authentication (CWA) capabilities to AP3900 installs, enabling support for redirecting wireless client to HTTP splash page after 802.1x authentication.
Improved configuration of mesh network: - Expose CMCX-ACS parameters on Profile and AP Override - Added configuration for Preferred Neighbor and Preferred Root on Profile and AP Override - Improved Mesh Statistic page, displaying additional details about the mesh connection, including information about the neighboring AP and link quality.
Added support configuration of Mesh Point operation for Universal AP models, including wireless and wired connectivity extension, for AP types: - AP410C - AP460C/S6/S12 - AP305C/CX
Note: AP305C/CX does not support a wired Mesh Network extension.
Added support for configurable RSS threshold for client bridge AP to search for new root.
Report Scheduling: New revision 1.1.01 of Scheduler for Extreme Campus Controller application. This revision has been enhanced to support scheduling the generation of customer reports.
(BETA) Introduces new Reports facility that allows administrators to generate custom reports, in PDF format, based on system operational metrics.

XCC-732 XCC-716
XCC-662 XCC-609
XCC-600
XCC-460 XCC-19 XCC-18

Changes in 05.26.01.0023
Fixed issue where re-ordering of network assignments could result in advertisement of OPEN networks as encrypted. For example, Captive Portal.
An interoperability issue has been resolved with Policy Manager for Extreme Management Center revision 8.5.4.

I.D XCC-707
XCC-684

Extreme Networks recommends that you thoroughly review this document prior to installing or upgrading this product.
For the latest firmware versions, visit the download site at: www.extremenetworks.com/support/

FIRMWARE SPECIFICATION:

Status Current Version Previous Version

Version No. V.05.26.02.0014 V.05.26.01.0023

Type Feature Release Feature Release

Release Date March 26, 2021 March 05, 2021

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 3 of 18

Extreme Campus Controller Customer Release Notes

SUPPORTED APPLIANCES, ACCESS POINTS AND SWITCHES:

Product Name Extreme Campus Controller VE6120 VMware Min Supported ESXi version 5.1 or later, (tested 6.7)
Extreme Campus Controller VE6120H (Windows server 2016 or later)
Extreme Campus Controller VE6125 Min Supported ESXi version 5.5 or later, (tested 6.7)
Extreme Campus Controller E1120
Extreme Campus Controller E2120
Extreme Campus Controller E2122
Extreme Campus Controller E3120
SA201
AP302W-CAN AP302W-FCC AP302W-WR
AP305C-CAN AP305C-FCC AP305C-IL AP305C-WR AP305CX-CAN AP305CX-FCC AP305CX-IL AP305CX-WR
AP310e-CAN AP310e-FCC AP310e-IL AP310e-WR AP310i-CAN AP310i-FCC AP310i-IL AP310i-WR
AP360e-CAN AP360e-FCC AP360e-IL AP360e-WR AP360i-CAN AP360i-FCC AP360i-IL AP360i-WR
AP3912i-FCC

Image ECA-05.26.02.0014-1.dle ECA-05.26.02.0014-1.spe ECA-05.26.02.0014-1.rse ECA-05.26.02.0014-1.sme ECA-05.26.02.0014-1.jse ECA-05.26.02.0014-1.wze ECA-05.26.02.0014-1.ose AP391x-10.51.17.0006.img AP302W-LEAN-7.6.0.0-024R.img AP3xxC-LEAN-7.6.0.0-024R.img
AP3xx-LEAN-7.6.0.0-024R.img
AP3xx-LEAN-7.6.0.0-024R.img
AP391x-10.51.17.0006.img

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 4 of 18

Product Name AP3912i-ROW
AP3915e-FCC AP3915e-ROW AP3915i-FCC AP3915i-ROW
AP3916ic-FCC AP3916ic-ROW
AP3916-camera
AP3917e-FCC AP3917e-ROW AP3917i-FCC AP3917i-ROW AP3917k-FCC AP3917k-ROW
AP3935e-FCC AP3935e-ROW AP3935i-FCC AP3935i-IL AP3935i-ROW
AP3965e-FCC AP3965e-ROW AP3965i-FCC AP3965i-ROW
AP410C-CAN AP410C-FCC AP410C-IL AP410C-WR AP410e-CAN AP410e-FCC AP410e-IL AP410e-WR AP410i-CAN AP410i-FCC AP410i-IL AP410i-WR
AP460C-CAN AP460C-FCC AP460C-IL AP460C-WR AP460S12C-CAN AP460S12C-FCC

Extreme Campus Controller Customer Release Notes Image
AP391x-10.51.17.0006.img AP391x-10.51.17.0006.img AP3916IC-V1-0-14-1.dlf AP391x-10.51.17.0006.img
AP3935-10.51.17.0006.img AP3935-10.51.17.0006.img AP4xx-LEAN-7.6.0.0-024R.img
AP4xx-LEAN-7.6.0.0-024R.img

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 5 of 18

Extreme Campus Controller Customer Release Notes

Product Name AP460S12C-IL AP460S12C-WR AP460S6C-CAN AP460S6C-FCC AP460S6C-IL AP460S6C-WR AP460e-CAN AP460e-FCC AP460e-IL AP460e-WR AP460i-CAN AP460i-FCC AP460i-IL AP460i-WR
AP505i-FCC AP505i-WR
AP510e-FCC AP510e-WR AP510i-FCC AP510i-WR
AP560h-FCC AP560h-WR AP560i-FCC AP560i-WR
Switches 210-12p-10GE2 210-24p-10GE2 210-48p-10GE2 210-12p-10GE2 POE 210-24p-10GE2 POE 210-48p-10GE2 POE 220-12p-10GE2 220-24p-10GE2 220-48p-10GE2 220-12p-10GE2 POE 220-24p-10GE2 POE 220-48p-10GE2 POE X435-24P/T-4S
X440G2-12t-10G4 X440G2-24t-10G4 X440G2-48t-10G4 X440G2-12t-10G4 POE X440G2-24t-10G4 POE
03/26/2021 P/N: 9036946-01
F0615-O

Image

AP5xx-LEAN-7.6.0.0-024R.img AP5xx-LEAN-7.6.0.0-024R.img
AP5xx-LEAN-7.6.0.0-024R.img

210-series_V1.02.05.0013.stk fp-connector-3.3.0.4.pyz (cloud connector)
220-series_V1.02.05.0013.stk, fp-connector-3.3.0.4.pyz (cloud connector)

summitlite_arm-30.7.1.1.xos, summitlite_arm30.5.0.259-cloud_connector-3.4.2.6.xmod
summitX-30.2.1.8-patch2-5.xos summitX-30.2.1.8-cloud_connector-3.4.1.20.xmod (cloud connector)

Subject to Change Without Notice

Page: 6 of 18

Extreme Campus Controller Customer Release Notes

Product Name
X440G2-48t-10G4 POE
X465_24W X465_48T X465_48P X465_48W X465_24MU X465_24MU_24W
X620-16x

Image
onie-30.2.1.8-patch2-5-vpex_controlling_bridge.lst, onie-30.2.1.8-cloud_connector-3.4.1.20.xmod onie-30.2.1.8-patch2-5-vpex_controlling_bridge.lst, onie-30.2.1.8-cloud_connector-3.4.1.20.xmod
summitX-30.2.1.8-patch2-5.xos, summitX-30.2.1.8cloud_connector-3.4.1.8.xmod (cloud connector)

NETWORK MANAGEMENT SOFTWARE SUPPORT
Network Management Suite (NMS) ExtremeManagementTM Center ExtremeControlTM ExtremeAnalyticsTM

8.5.5 or higher 8.5.5 or higher 8.5.5 or higher

Version

Air Defense and Location ExtremeAirDefenseTM ExtremeLocationTM
ExtremeGuest ExtremeGuestTM

10.4 3.1
6.0.1.0-001R

Version Version

Note:
Platform and AP Configuration functions are not supported by ExtremeManagementTM.
Extreme Campus Controller does not yet expose support for ExtremeLocationTM Calibration procedure. ExtremeLocation will work correctly for Zone and Occupancy level analytics but does not fully support Position Tracking with this release. Enhanced support for Position Tracking will be added to a future release of Extreme Campus Controller.

INSTALLATION INFORMATION:

E1120 E2120 E3120 VE6120/VE6125 VE6120H
03/26/2021 P/N: 9036946-01 F0615-O

Appliance Installations Extreme Campus Controller E1120 Installation Guide Extreme Campus Controller E2120 Installation Guide Extreme Campus Controller E3120 Installation Guide Extreme Campus Controller VE6120/VE6125 Installation Guide Extreme Campus Controller VE6120H Installation Guide
Subject to Change Without Notice

Page: 7 of 18

Extreme Campus Controller Customer Release Notes

Known Restrictions and Limitations:
Known Restriction or Limitation
Certain wireless clients (such as Qualcomm Killer Wireless 1535 and Intel 7265D/8260/8265) have been known to not complete the 4-way handshake in order to fulfill the association process in networks that have both PMF/MFP (802.11w) and Fast-Transition (802.11r [FT]) enabled. The currently recommended workaround is to not enable PMF/MFP configuration on a service that is also using 802.11r. Such clients have been demonstrated to work correctly on services with just 802.11r (FT) enabled.
IoT is currently not supported for Universal HW APs. Support will be enabled in a future release. Client Bridge is currently not supported for single Port APs (AP305C/CX). It will be added in future release.
A reboot of the peer Extreme Campus Controller is required when Availability is configured for the first time to ensure synchronization of the configuration of ONBOARD attributes, such as device groups. This issue will be addressed in a future release.
The switch primary/backup availability is not supported on the EXOS switches running the 3.4.1.8 Cloud Connector. This affects the deployments where two appliances are configured in an Availability Pair. If the primary appliance is going down, then the EXOS switches will not send statistics to the backup appliance and will be marked in red "Critical" state. When the primary appliance is coming up again, the switches will resume sending statistics information to the primary appliance and the state of the switch will be marked with a green "Running" state.
Allow UTF-8 characters in JSON payload for all Rest API so non-ASCII / Unicode characters are accepted in Rest API requests to comply with current Rest API standards.
If a license violation is corrected, the license violation banner and GUI notification bell are not cleared until the page is refreshed. Similarly, in a new installation, after a license is installed, refresh the page. This issue will be addressed in a future release.
MAC-based authentication and WPA3-Compatibility (SAE or WPA2-PSK) and PMF "Required" may not work. This issue will be addressed in a future release.
AP310 models are not currently supported by ExtremeLocationTM. Do not enable ExtremeLocation settings in the configuration Profile for an AP310 device group. Doing so may have a negative impact on AP performance.
For Extreme Campus Controller configured for authentication of administrators over RADIUS server, the GUI responsiveness may be slow, possibly over 30 seconds if target server(s) are unavailable/unreachable at login time. If outage is extensive, system will eventually timeout to validate against local credentials when provisioned.
For High-Availability installations, on systems configured with RADIUS Accounting or Smart RF enabled, clients (end-systems) may experience a momentary disconnect during the upgrade process (maintenance window). Users immediately reconnect to the available infrastructure, so impact is negligible. For smoother session availability with fast-failover during a failover event, it is recommended to not run these options. This issue is being investigated and will be addressed in a future release.

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

I.D nse0003416
None ECA-622 ECA-455
ECA-321 ECA-1971 ECA-1961 ECA-1620 ECA-1396 ECA-1264
Page: 8 of 18

Extreme Campus Controller Customer Release Notes

Known Restriction or Limitation
Upgrade failure will occur when using special characters (escape back slash) in topology.
In SmartRF mode, the AP510 power may temporarily drop to 0dBm and returns to 4dBm.
With on-air-busy channel conditions, it is possible for the ACS not to produce the expected results. In this instance, perform manual channel selection.
Widgets do not show tooltips for Lower and Upper values. This issue will be addressed in a future release.
Firmware for ExtremeWireless AP3900 series access points does not currently support Smart RF. No Smart RF data is displayed.
Interaction with ExtremeManagement Center ­ Management of Extreme Campus Controller by ExtremeManagement Center will be enhanced over time with the roadmap. ExtremeManagement Center v8.5.5 is the minimum release base for integration. Version 8.5.5 provides recognition of an Extreme Campus Controller and representation of Wireless Clients and managed Access Points included in the Wireless tab. Additional integration will be delivered in upcoming releases. ExtremeManagement Center 8.5.5 is the current recommended minimum release.
Several old Intel clients (i.e. Intel dual band Wireless AC ­ 7260) if they are using old drivers are NOT seeing BSSID / SSID advertising 11x capability. This is a client issue (forward compatibility). Other older clients may have this issue. See: [https://www.intel.com/content/www/us/en/support/articles/000054799/network-and-io/wireless-networking.html|http://example.com] See KB: [https://gtacknowledge.extremenetworks.com/articles/Solution/AP510-Unable-to-seethe-SSID-on-my-laptop|http://example.com] NB ­ The client driver update must be done from Intel\drivers' site because the Windows update reports that the client is running the latest driver. If the client driver cannot be controlled (in a BYOD environment), then the AP radios must be configured on a/n/ac (disable ax) until all clients will upgrade to the latest driver.
Default router/gateway should be configured with a next-hop associated with one of the physical interfaces. Pointing the default route to the Admin interface will lead to issues because access points will not get the correct services from the data plane. We recommend setting the default route via data ports, and if necessary, configuring static routes on the Admin port for administration level access.
Before installing a new Extreme Campus Controller license, you must configure Network Time Protocol (NTP) Server settings. Licensing management is dependent on accurate NTP configuration. Configure NTP via the Extreme Campus Controller initial Configuration Wizard, or go to Admin > System > Network Time to configure and verify the NTP settings.
For AP deployments in remote locations where access points and controllers may need to be discovered and connected over firewalls, a best practice is to leverage DNS or DHCP Option 60/43 methods for zero-touch-provisioning discovery. These methods provide direct connectivity to the defined IP address. DHCP Option 78, which refers to the controller as a Service Location Protocol ­ Directory Agent (SLPDA), requires the exchange of SLP protocol between the AP and the appliance at the core, necessitating that UDP 427 be allowed by any firewall in the path. For such

I.D ECA-466 ECA-469 ECA-528 ECA-567 ECA-1484
Info
Info
Info Info Info

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 9 of 18

Extreme Campus Controller Customer Release Notes

Known Restriction or Limitation
installations, discovery over DHCP Option 78 assist is not recommended. When using SLP, for an AP to establish connection with a controller, it must first exchange SLP Directory Agent registration before IPSEC establishment with the eventual controller. That means that SLP UDP 427 must be open along the path. Further issues can occur if Network Address Translation (NAT) is involved. While this method is popular and widely deployed within a homogenous campus, it may result in inadvertent complications for remote connections. Therefore, it should not be used in favor of an alternate method (DHCP 60/43, DNS, or static override).
When configuring system for NTP time assignment, ensure that the NTP server is properly configured. Incorrect time settings (like timestamps far in the future) may adversely affect system operation, such as certificate expiration that may trigger failures in device registration or system instability.
Appliances in a High-Availability pair must be of the same model and at the same exact software revision (and time synched) for configuration synchronization to propagate to the peer. During the upgrade process of a High-Availability pair, any configuration changes made while only one appliance has been upgraded (and therefore resulting in a version mismatch) will not be propagated until the peer is correspondingly upgraded to the same revision. We recommend that you NOT perform configuration changes to one of the members of a High-Availability pair while the peer has a different software revision.
For High-Availability configurations, during upgrade phases or configuration restore operations, wait until the availability link is established and synchronized before attempting to make any new configuration changes. The Availability status will only re-establish to Synched status when both appliances are running the exact same firmware revision. During upgrade periods, the Availability link will only re-establish when both the appliance status of availability link and synchronization status can be found. Go to: · "Network Health" widget on the Dashboard, or · Administration -> System -> Availability
Recommendation settings for setup of redundant RADIUS server authentication: · Response Window to 5s [Default: 20s] · Revival Interval to 10s [Default: 60s]

I.D
Info nse0003696
Info nse0005086
Info ECA-776
Info ECA-875

SUPPORTED WEB BROWSERS
For Extreme Campus Controller management GUI, the following Web browsers were tested for interoperability:
· Firefox 81.0 · Google Chrome 86.0 Note: Microsoft IE browser is not supported for UI management.

The Wireless Clients (Captive Portal, AAA):

Browsers Chrome

Version 75.0.37770.142

OS
Windows 7 Windows 10

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 10 of 18

Browsers Microsoft IE
Microsoft Edge Firefox Safari Safari

Extreme Campus Controller Customer Release Notes

Version 11
42.17134 68.0 Preinstalled with iOS 12.2 Preinstalled with iOS 9.3.5

OS Windows 7 Windows 8.1 Windows 10
Windows 10
Windows 10
iOS 12.2
iOS 9.3.5

PORT LIST

The following list of ports may need to remain open so that the Appliances and APs will function properly on a network that includes protection equipment like a firewall.
Extreme Campus Controller TCP/UDP Port Assignment Reference

Comp. Source

Comp. Dest

Protocol Src (TCP/UDP) Port

Dest Port

Service

Ports for AP/Appliance Communication

Remark

Open Firewall Req'd

Appliance Access Point

UDP

Access Appliance Point

UDP

Appliance Access Point

Access Appliance Point

Access Point
Access Point

Appliance Appliance

Access Appliance Point

UDP UDP UDP UDP UDP

Any 13910

Any 13910

4500 Any

Any 4500

Any 13907

Any

67

Any

68

WASSP
WASSP
Secured WASSP Secured WASSP WASSP DHCP Server DHCP Server

Management and Data Tunnel
between AP and Appliance
Management and Data Tunnel
between AP and Appliance
Management Tunnel between AP
and Appliance
Management Tunnel between AP
and Appliance
AP Registration to Appliance
If Appliance is DHCP Server for
AP
If Appliance is DHCP Server for
AP

Yes
Yes
Optional Optional
Yes Optional Optional

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 11 of 18

Extreme Campus Controller Customer Release Notes

Comp. Source

Comp. Dest

Access Point Appliance
Access Point Appliance
Any
Any
Any
Any

Appliance
Access Point Appliance
Access Point Access Point Access Point Access Point Access Point

Any

Appliance

Any

Appliance

Any

Appliance

Any

Appliance

Any

Appliance

Any

Appliance

Any

Appliance

Any

Appliance

Any

Appliance

Any

Appliance

Any

Appliance

03/26/2021 P/N: 9036946-01 F0615-O

Protocol (TCP/UDP)
UDP

Src Port
Any

Dest Port
427

Service SLP

TCP/UDP Â Any 69

TFTP

TCP/UDP Â Any 69

TFTP

TCP/UDP Â Any 22

SCP

TCP

Any 2002, 2003

TCP/UDP Any

22

RCAPD SSH

TCP/UDP Any 445

Microsoft CIFS

TCP/UDP Any 137, 138, 139

NetBIOS

Ports for Appliance Management

TCP/UDP Any

22

SSH

TCP/UDP Any 5825

HTTPS

TCP/UDP Any 161

SNMP

TCP/UDP Any 162 SNMP Trap

TCP

Any

80

HTTP

TCP

Any 443

HTTPS

UDP

500

TCP/UDP Any

UDP

Any

500 69 4500

IKE TFTP IPSec

UDP UDP

Any 13907 Discovery Any 13910 WASSP

Subject to Change Without Notice

Remark
AP Registration to Appliance
AP image transfer

Open Firewall Req'd Optional
Yes

AP image transfer Yes

AP traces

Yes

AP Real Capture (if enabled)
Remote AP login (if enabled)
LDAP support

Optional Optional Optional

LDAP support Optional

Appliance CLI

Yes

access

Appliance GUI

Yes

access

Appliance SNMP

Yes

access

Appliance SNMP

Yes

access

Appliance SNMP

Yes

access ICP Self

Registration

ICP Self

Yes

Registration

IKE phase 1

Yes

TFTP support

Yes

IPSec NAT

Yes

traversal

Used by Discovery Yes

Used by L3

Yes

WASSP

Page: 12 of 18

Extreme Campus Controller Customer Release Notes

Comp. Source
Appliance Appliance Appliance Appliance Appliance Appliance
DHCP Server
Appliance Appliance
Appliance
Appliance Appliance
Appliance Dynamic
Auth. Server (NAC)

Comp. Dest

Protocol Src (TCP/UDP) Port

Dest Port

Service

Remark

Ports for Inter Controller Mobility1 and Availability

Appliance UDP

Any 13911 WASSP

Mobility and Availability Tunnel

Appliance

TCP

Any 427

SLP

SLP Directory

Appliance

TCP

Any 20506 Langley

Remote Langley Secure

Appliance

TCP

Any 60606 Mobility

VN MGR

Appliance

TCP

Any 123

NTP

Availability time sync

DHCP Server

UDP

Any

67

SLP

Asking DHCP

Server for SLP DA

Appliance UDP

Any

68

SLP

RespoECA from

DHCP Server for

SLP DA request

Core Back-End Communication

DNS Server

UDP

Any

53

DNS

If using DNS

Syslog Server

UDP

Any 514

Syslog

If Appliance logs to external syslog server

RADIUS Server

UDP

Any 1812 RADIUS

If using RADIUS

Authenticatio

AAA

n and

Authorization

RADIUS Server

UDP

Any 1813 RADIUS If enabled RADIUS

Accounting

accounting

RADIUS server

UDP

Any 1814 RADIUS

If using RADIUS

Authenticatio

AAA

n and

Authorization

RADIUS server

UDP

Any 1815 RADIUS If enabled RADIUS

Accounting

Accounting

Appliance UDP

Any 3799

DAS

Request from DAS client to disconnect
a specific client

Open Firewall Req'd
Yes Yes Yes Yes Yes Yes Yes
Optional Optional
Optional
Optional Optional
Optional Optional

1For extension of ExtremeWireless deployment via Inter Controller Mobility.

03/26/2021 P/N: 9036946-01

Subject to Change Without Notice

F0615-O

Page: 13 of 18

Extreme Campus Controller Customer Release Notes

Comp. Source

Comp. Dest

Protocol (TCP/UDP)

Appliance AeroScout Server

UDP

Src Port
1144

Dest Port
12092

AeroScout Appliance Server

UDP

12092 1144

Appliance Extreme Cloud IQ

TCP

Any 443

Service
Location Based Service Proxy
Location Based Service Proxy
NSight

Remark
Aeroscout Location-Based
Service

Open Firewall Req'd
Optional

Aeroscout Location-Based
Service

Optional

Statistics Report

Yes

into ExtremeCloud

IQ

IETF STANDARDS MIB SUPPORT:

RFC No. Draft version of 802.11 1213 1573 1907 1493 2674 2674

Title IEEE802dot11-MIB RFC1213-MIB IF-MIB SNMPv2-MIB BRIDGE-MIB P-BRIDGE-MIB Q-BRIDGE-MIB

Groups Supported
Most of the objects supported ifTable and interface scalar supported System scalars supported EWC supports relevant subset of the MIB EWC supports relevant subset of the MIB EWC supports relevant subset of the MIB

EXTREME NETWORKS PRIVATE ENTERPRISE MIB SUPPORT
Extreme Networks Private Enterprise MIBs are available in ASN.1 format from the Extreme Networks website at: https://extremeportal.force.com/.

Standard MIBs
Title IEEE802dot11-MIB RFC1213-MIB.my IF-MIB SNMPv2-MIB BRIDGE-MIB P-BRIDGE-MIB

Description Standard MIB for wireless devices Standard MIB for system information Interface MIB Standard MIB for system information VLAN configuration information that pertains to EWC VLAN configuration information that pertains to EWC

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 14 of 18

Q-BRIDGE-MIB

Title

Siemens Proprietary MIB

Title HIPATH-WIRELESS-HWC-MIB.my

HIPATH-WIRELESS-PRODUCTS-MIB.my HIPATH-WIRELESS-DOT11-EXTNS-MIB.my

HIPATH-WIRELESS-SMI.my

Extreme Campus Controller Customer Release Notes
Description VLAN configuration information that pertains to EWC
Description Configuration and statistics related to EWC and associated objects Defines product classes Extension to IEEE802dot11-MIB that complements standard MIB Root for Chantry/Siemens MIB

802.11AC AND 802.11N CLIENTS

Please refer to the latest release notes for ExtremeWirelessTM 10.41.09 or later and/or ExtremeWireless WiNG 5.9.02 or later for the list of compatibility test devices.

RADIUS SERVERS AND SUPPLICANTS RADIUS Servers Used During Testing

Vendor FreeRADIUS
FreeRADIUS IAS
SBR50 NPS

1.1.6

Model OS

1.0.1

5.2.3790.3959

6.1.6 6.0.6002.18005

Version FreeRADIUS FreeRADIUS Microsoft Server 2003 IAS SBR Enterprise edition Microsoft Server 2008 NPS

802.1x Supplicants Supported

Vendor

Model OS

Juniper Networks® / Funk Odyssey client

Microsoft®

Wireless Zero Configuration

Version Version 5.10.14353.0
Version 5.00.12709.0
Version 4.60.49335.0
Version Windows XP-4K891859-Beta1

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 15 of 18

Extreme Campus Controller Customer Release Notes

Vendor
Intel® Microsoft® Wireless Zero

Model OS

Version

Wireless Network Connection Configuration

Version Microsoft Window Server 2003, Enterprise Edition R2 SP2

Wi-Fi Protected Access 2 (WPA2)/Wireless Provisioning Services Information Element (WPS IE) update for Windows XP with Service Pack 2

Version WindowsXPKB893357-v2-x86-ENU.exe

Intel PRO Set/Wireless

Version 13.0.0.x (with Windows® Intel® driver version 13.0.0.x)

Windows 7, 8, 8.1 Pro, 10 Pro
Windows Phone 8.1, Windows Mobile 10

Provided with Windows®

Appliance LAN Switch Verification

Vendor

Model OS

Version

Role

Extreme Extreme Extreme Extreme
Extreme Extreme Extreme Extreme Extreme Cisco

X-460-G2

12.5.4.5

XCC connection

X440G2-48p-10G4 21.1.1.4

XCC connectivity

Summit 300-48

7.6e1.4

XCC connection

VSP-4850GTS-PWR (6.0.1.1_B003) (PRIVATE)Â HW XCC connection Base: ERS 4850

K6

 08.63.02.0004

XCC connection

K6

08.42.03.0006

XCC connection

X440G2-48p-10GE4 21.1.5.2

XCC connection

X440-G2-12p

21.1.1.4

XCC connection

X460-48p

12.5.4.5

XCC connection

Catalyst 3550

12.1(19)EA1c

XCC connection

CERTIFICATION AUTHORITY

Server Vendor Microsoft CA Microsoft CA OpenSSL

Model OS

Version

Windows Server 2003 Enterprise Edition 5.2.3790.1830

Windows Server 2008 Enterprise Edition 6.0

Linux

1.1.1g

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 16 of 18

Extreme Campus Controller Customer Release Notes

RADIUS ATTRIBUTES SUPPORT

RADIUS Authentication and Authorization Attributes

Attribute Called-Station-Id Calling-Station-Id Class EAP-Message Event-Timestamp Filter-Id Framed-IPv6-Pool Framed-MTU Framed-Pool Idle-Timeout Message-Authenticator NAS-Identifier NAS-IP-Address NAS-IPv6-Address NAS-Port NAS-Port-Id NAS-Port-Type Password-Retry Service-Type Session-Timeout State Termination-Action Tunnel Attributes User-Name Vendor-Specific

RFC Source RFC 2865, RFC 3580 RFC 2865, RFC 3580 RFC 2865 RFC 3579 RFC 2869 RFC 2865, RFC 3580 RFC 3162 RFC 2865, RFC 3580 RFC 2869 RFC 2865, RFC 3580 RFC 3579 RFC 2865, RFC 3580 RFC 2865, RFC 3580 RFC 3162 RFC 2865, RFC 3580 RFC 2865, RFC 3580 RFC 2865, RFC 3580 RFC 2869 RFC 2865, RFC 3580 RFC 2865 RFC 2865 RFC 2865, RFC 3580 RFC 2867, RFC 2868, RFC 3580 RFC 2865, RFC 3580 RFC 2865

RADIUS Accounting Attributes

Attribute Acct-Authentic

RFC 2866

Acct-Delay-Time

RFC 2866

RFC Source

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 17 of 18

Acct-Input-Octets Acct-Input-Packets Acct-Interim-Interval Acct-Output-Octets Acct-Output-Packets Acct-Session-Id Acct-Session-Time Acct-Status-Type Acct-Terminate-Cause

RFC 2866 RFC 2866 RFC 2869 RFC 2866 RFC 2866 RFC 2866 RFC 2866 RFC 2866 RFC 2866

Extreme Campus Controller Customer Release Notes

GLOBAL SUPPORT: By Phone: +1 800-998-2408 (toll-free in U.S. and Canada)
For the toll-free support number in your country: https://extremeportal.force.com/

By Email: [email protected]

By Web: https://extremeportal.force.com/

By Mail:

Extreme Networks, Inc. 6480 Via Del Oro San Jose, CA 95119 USA

For information regarding the latest software release, recent release note revisions and documentation, or if you require additional assistance, please visit the Extreme Networks Support website.
Extreme Networks and the Extreme Networks logo are trademarks or registered trademarks of Extreme Networks, Inc. in the United States and/or other countries. All other names (including any product names) mentioned in this document are the property of their respective owners and may be trademarks or registered trademarks of their respective companies/owners. Extreme Networks IPS includes software whose copyright is licensed from MySQL AB.
For additional information on Extreme Networks trademarks, please see: www.extremenetworks.com/company/legal/trademarks/

03/26/2021 P/N: 9036946-01 F0615-O

Subject to Change Without Notice

Page: 18 of 18


ExtremeNetworks Adobe PDF Library 21.1.177

Search Any Device: