Configuring The Portal Fail-Permit Function - HP 5920 Series Configuration Manual

Hide thumbs Also See for 5920 Series:
Table of Contents

Advertisement

2.
Upon receiving the synchronization packet, the access device compares the users carried in the
packet with its own user list. If a user contained in the packet does not exist on the access device,
the access device informs the portal authentication server to delete the user. The access device
starts the synchronization detection timer (timeout timeout) immediately when a user logs in. If the
user does not appear in any synchronization packet within a synchronization detection interval,
the access device considers the user does not exist on the portal authentication server and logs the
user out.
The user synchronization function requires a portal authentication server to support the portal user
heartbeat function. Only the IMC portal authentication server supports the portal user heartbeat function.
To implement the portal user synchronization function, you also need to configure the user heartbeat
function on the portal authentication server. Make sure the user heartbeat interval configured on the
portal authentication server is not greater than the synchronization detection timeout configured on the
access device.
Deleting a portal authentication server on the access device also deletes the user synchronization
configuration for the portal authentication server.
To configure the portal user information synchronization function:
Step
1.
Enter system view.
2.
Enter portal
authentication server
view.
3.
Configure the portal
user synchronization
function.

Configuring the portal fail-permit function

Perform this task to configure the portal fail-permit function on an interface. When the access device
detects that the portal authentication server or portal Web server is unreachable, it allows users on the
interface to have network access without portal authentication.
If you enable fail-permit for both a portal authentication server and a portal Web server on an interface,
the interface does the following:
Disables portal authentication when either server is unreachable.
Resumes portal authentication when both servers are reachable.
After portal authentication resumes, unauthenticated users must pass portal authentication to access the
network. Users who have passed portal authentication before the fail-permit event can continue
accessing the network.
To configure portal fail-permit:
Step
1.
Enter system view.
2.
Enter interface view.
Command
system-view
portal server server-name
user-sync timeout timeout
Command
system-view
interface interface-type interface-number
104
Remarks
N/A
N/A
By default, portal user
synchronization is disabled.
Remarks
N/A
N/A

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

5900 series

Table of Contents