Acl Assignment Configuration Example - HP FlexNetwork NJ5000 User Manual

5g poe+ walljack
Table of Contents

Advertisement

Configure MAC authentication for GigabitEthernet 1/0/1:
2.
a. In the Ports With MAC Authentication Enabled area, click Add.
b. Select GigabitEthernet1/0/1 from the Port list, and click Apply.
Figure 378 Enabling MAC authentication for port GigabitEthernet 1/0/1

ACL assignment configuration example

Network requirements
As shown in
and accounting.
Configure MAC authentication on port GigabitEthernet 1/0/1 to control Internet access. Make sure an
authenticated user can access the Internet but not the FTP server at 10.0.0.1.
Use MAC-based user accounts for MAC authentication users. The MAC addresses are not
hyphenated.
Figure 379 Network diagram
Host
192.168.1.10
Configuring IP addresses
# Assign an IP address to each interface. Make sure the RADIUS servers, host, and switch can
reach each other. (Details not shown.)
Configuring the RADIUS servers
# Add a user account with the host MAC address unhyphenated as both the username and
password, and specify ACL 3000 as the authorization ACL for the user account. (Details not shown.)
For information about the RADIUS server configuration, see
Configuring a RADIUS scheme for the switch
Create a RADIUS scheme:
1.
a. From the navigation tree, select Authentication > RADIUS.
b. Click Add.
Figure
379, the switch uses RADIUS servers to perform authentication, authorization,
RADIUS servers
Auth:10.1.1.1
Acct:10.1.1.2
GE1/0/1
Switch
Internet
FTP server
"Configuring
350
10.0.0.1
RADIUS."

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents