Troubleshooting Portal; Inconsistent Keys On The Access Device And The Portal Server - H3C LS-3100-52P-OVS-H3 Operation Manual

S5500-ei series ethernet switches
Table of Contents

Advertisement

On the security policy server, you need to specify ACL 3000 as the isolation ACL and ACL 3001 as the
security ACL.
[SwitchA] acl number 3000
[SwitchA-acl-adv-3000] rule permit ip destination 192.168.0.0 0.0.0.255
[SwitchA-acl-adv-3000] quit
[SwitchA] acl number 3001
[SwitchA-acl-adv-3001] rule permit ip
[SwitchA-acl-adv-3001] quit
4)
Configure portal authentication
# Configure the portal server as follows:
Name: newpt
IP address: 192.168.0.111
Key: portal
Port number: 50100
URL: http://192.168.0.111/portal.
[SwitchA]
portal
http://192.168.0.111/portal
# Enable portal authentication on the interface connecting Switch B.
[SwitchA] interface vlan-interface 4
[SwitchA–Vlan-interface4] ip address 20.20.20.1 255.255.255.0
[SwitchA–Vlan-interface4] portal server newpt method layer3
[SwitchA–Vlan-interface4] quit
# Configure the IP address of the interface connected with the portal server.
[SwitchA] interface vlan-interface 2
[SwitchA–Vlan-interface2] ip address 192.168.0.100 255.255.255.0
[SwitchA–Vlan-interface2] quit
On Switch B, you need to configure a default route to subnet 192.168.0.0/24, setting the next hop as
20.20.20.1. The configuration steps are omitted.

Troubleshooting Portal

Inconsistent Keys on the Access Device and the Portal Server

Symptom
When a user is forced to access the portal server, the portal server displays neither the portal
authentication page nor any error message. What the user sees is a blank web page.
Analysis
The keys configured on the access device and the portal server are inconsistent, causing CHAP
message exchange failure. As a result, the portal server does not display the authentication page.
server
newpt
ip
1-23
192.168.0.111
key
portal
port
50100
url

Advertisement

Chapters

Table of Contents
loading

Table of Contents