Portal Authentication Across Vpns; Portal Configuration Task List - HP 3600 v2 Series Configuration Manual

Hide thumbs Also See for 3600 v2 Series:
Table of Contents

Advertisement

Secondary: Indicates that the user logs in from the peer device, and the user data is synchronized
from the peer device to the local device. The local device is in synchronization state. It only receives
and processes the synchronization messages and does not process packets from the server.

Portal authentication across VPNs

This feature is not applicable to VPNs with overlapping address spaces.
In a scenario where the branches belong to different VPNs that are isolated from each other and all
portal users in the branches need to be authenticated by the server at the headquarters, you can deploy
portal authentication across MPLS VPNs. As shown in
clients serves as the NAS. The NAS is configured with portal authentication and AAA authentication,
both of which support authentication across VPNs. The NAS can transmit a client's portal authentication
packets in a VPN transparently through the MPLS backbone to the servers in another VPN. This feature
implements centralized client authentication across different VPNs while ensuring the separation of
packets of the different VPNs.
Figure 44 Network diagram for portal authentication across VPNs
VPN 1
Host
VPN 2
Host
Portal authentication configured on MCE devices can also support authentication across VPNs. For
information about MCE, see Layer 3 - IP Routing Configuration Guide.
For information about AAA implementation across VPNs, see

Portal configuration task list

Complete these tasks to configure Layer 2 portal authentication:
Task
Specifying the local portal server for Layer 2 portal authentication
Configuring the local portal server
Enabling Layer 2 portal authentication
Controlling access of portal
users
CE
NAS
PE
CE
Configuring a portal-free rule
Setting the maximum number of online portal users
Figure
MPLS backbone
PE
P
Customizing authentication pages
Configuring the local portal server
133
44, the PE connecting the authentication
VPN 3
AAA
server
CE
Portal server
"Configuring
AAA."
Remarks
Required
Optional
Required
Required
Optional

Advertisement

Table of Contents
loading

Table of Contents