Using Network Login In Isp Mode - Extreme Networks Summit 200-24 Installation And User Manual

Summit 200 series switch
Hide thumbs Also See for Summit 200-24:
Table of Contents

Advertisement

During the user login process, the following takes place:
• Authentication is done through the RADIUS server.
• After successful authentication, the connection information configured on the RADIUS server is
returned to the switch:
— The permanent VLAN
— The URL to be redirected to (optional)
— The URL description (optional)
• The port is moved to the permanent VLAN.
You can verify this using the
command, see "Displaying VLAN Settings" on page 92.
After a successful login has been achieved, there are several ways that a port can return to a
non-authenticated, non-forwarding state:
• The user successfully logs out using the logout web browser window.
• The link from the user to the switch's port is lost.
• An administrator changes the port state.
NOTE
Because network login is sensitive to state changes during the authentication process, Extreme
Networks recommends that you do not log out until the login process is completed. The login process is
completed when you receive a permanent address.

Using Network Login in ISP Mode

In ISP mode, a RADIUS server might be used to provide user authentication. No Extreme-specific lines
are required for the dictionary or the user file.
Configuring ISP Mode
Configure the switch to use network login in ISP mode, using this command:
enable netlogin ports <portlist> vlan <name>
NOTE
Network login is used on a per port, per VLAN basis. A port that is tagged can belong to more than one
VLAN. In this case, network login can be enabled on one port for each VLAN.
Example Configuration Using ISP Mode
This example creates a permanent VLAN named corp on the switch. This VLAN will be used for
authentication through RADIUS. The radius server is 10.201.26.243 and the IP address of the switch is
10.201.26.11. The secret is "secret". Port 9 is added to the VLAN corp. Network login is enabled on the
port.
create vlan corp
config corp ipaddress 10.201.26.11/24
config radius primary server 10.201.26.243 client-ip 10.201.26.11
Summit 200 Series Switch Installation and User Guide
command. For more information on the
show vlan
Using Network Login
show vlan
69

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Summit 200-48

Table of Contents