3Com 3CRWX120695A, 3CRWX440095A Configuration Manual page 305

Wireless lan switch and controller
Table of Contents

Advertisement

User information must be configured in the WX switch's local
database or on a RADIUS server. The username, password, and VLAN
are required. Additional RADIUS attributes or 3Com VSAs are
optional. The optional VSAs include url, which redirects an
authenticated user to a URL other than the one they were attempting
to access when they logged on. (To configure user information in the
local database, use the set user and set user username attr
commands. To configure user groups and set attributes on a group
basis, use the set user username group and set usergroup
commands.)
AAA rules must be configured that identify the SSID or wired
authentication port, the usernames allowed to access the SSID or port,
and the authentication method (local database or RADIUS server
group. (Use the set authentication web command.)
WX Switch Recommendations
Consider installing a WebAAA certificate signed by a trusted CA,
instead of one signed by the WX switch itself. Unless the client's
browser is configured to trust the signature on the switch's WebAAA
certificate, display of the login page can take several seconds longer
than usual, and might be interrupted by a dialog asking the user what
to do about the untrusted certificate. Generally, the browser is already
configured to trust certificates signed by a CA.
Do not configure the service profile that manages the SSID to use
WPA encryption with pre-shared keys (PSK). These options are
configurable together but are not compatible. WebAAA traffic is not
encrypted, whereas the PSK four-way handshake requires a client to
already be authenticated and for encryption to be in place.
Client NIC Requirements
Configure the NIC to use DHCP to obtain its IP address. WebAAA
does not support statically assigned IP addresses.
Client Web Browser Requirements
Do not configure an HTTPS proxy. WebAAA does not work if the
browser has an HTTPS proxy enabled.
Client Web Browser Recommendations
Use a well-known browser, such as Internet Explorer (Windows),
Firefox (Mozilla-based), or Safari (Macintosh)
Configuring WebAAA
305

Advertisement

Table of Contents
loading

Table of Contents