H3C S9500 Series Operation Manual page 1237

Routing switches
Hide thumbs Also See for S9500 Series:
Table of Contents

Advertisement

Operation Manual – Portal
H3C S9500 Series Routing Switches
To do...
Display the
information about
the Portal users
Clear the
statistics about
Portal
Caution:
When a Portal server is firstly configured, you must configure the IP address for it.
If a Portal server has been enabled on a VLAN interface, you must disable this
Portal server on the VLAN interface before modifying its parameters.
Portal is not applicable to the VPN. You cannot enable the Portal function on the
VLAN bound with the VPN.
When Portal authentication is enabled, 802.1x protocol must be disabled globally.
The name of the specified Portal server must exist.
When the Layer 3 authentication method is adopted, a default route must be
configured on the layer 3 device between Portal users and the Portal-enabled
switch.
When the ReDHCP authentication method is adopted, the Portal-enabled switches
can only be configured as DHCP Relay instead of DHCP Server.
When Portal is enabled on a VLAN interface, it is forbidden to configure any more
ACL rules related with this network segment on this VLAN interface (and the
corresponding ports). Otherwise, the Portal function may be caused abnormal.
1.2.3 Portal Direct Authentication Method Configuration Example
I. Network requirements
Portal is enabled on the switch and Portal runs in the Direct authentication
method.
The switch uses a RADIUS server to implement authentication and accounting.
Users can access only the Portal server before passing Portal authentication.
Users can access external networks after passing Portal authentication.
Use the command...
display portal user [ ip
ipaddress | interface
interface-type
interface-number | vlan
vlan-id ]
reset portal { acm |
server | tcp-cheat }
statistics
1-8
Chapter 1 Portal Configuration
Remarks

Advertisement

Table of Contents
loading

Table of Contents