Portal Configuration Examples; Configuring Direct Portal Authentication - H3C S5120-EI Series Operation Manual

Hide thumbs Also See for S5120-EI Series:
Table of Contents

Advertisement

To do...
Clear portal connection
statistics on a specified
interface or all interfaces
Clear portal server statistics on
a specified interface or all
interfaces
Clear TCP spoofing statistics

Portal Configuration Examples

Configuring Direct Portal Authentication

Network requirements
The host is directly connected to the switch and the switch is configured for direct authentication.
The host is assigned with a public network IP address manually or automatically by a DHCP server.
Before portal authentication, users using the host can access only the portal server. After passing
portal authentication, they can access unrestricted Internet resources.
A RADIUS server serves as the authentication/accounting server.
Figure 1-4 Configure direct portal authentication
Vlan-int100
Host
2.2.2.2/24
Gateway:2.2.2.1/24
Configuration procedure
You need to configure IP addresses for the devices as shown in
available between devices.
Configure the switch:
1)
Configure a RADIUS scheme
# Create a RADIUS scheme named rs1 and enter its view.
<Switch> system-view
[Switch] radius scheme rs1
reset portal connection statistics
{all | interface interface-type
interface-number }
reset portal server statistics { all |
interface interface-type
interface-number }
reset portal tcp-cheat statistics
Vlan-int2
2.2.2.1/24
192.168.0.100/24
Switch
Use the command...
Portal server
192.168.0.111/24
RADIUS server
192.168.0.112/24
Figure 1-4
1-11
Remarks
Available in user view
Available in user view
Available in user view
and ensure that routes are

Advertisement

Chapters

Table of Contents
loading

Table of Contents