Failure To Come Line (Vlan Configured On Interface) - HPE FlexNetwork 7500 Series Security Configuration Manual

Table of Contents

Advertisement

Analysis
If no Web authentication domain is specified, the system default ISP domain (domain system) is
used for Web authentication. The system default domain uses the local authentication method by
default. Using these default domain settings, the local authentication should have operated correctly.
The local authentication fails might because that the authentication method of the system default
domain is changed or the system default domain is changed.
Solution
To resolve the problem, perform the following tasks:
1.
Use the display domain command to identify whether the system default domain is enabled.
2.
If the system default domain is disabled, use the domain default enable command to enable it.
3.
Use the domain system command to enter the view of the system default domain.
4.
Use the display this command to identify the authentication, authorization, and accounting
method of the system default domain.
5.
Make sure the AAA methods of the system default domain is local.

Failure to come line (VLAN configured on interface)

Symptom
A user belongs to a VLAN different from the VLAN to which the RADIUS server-facing interface
belongs. The user cannot pass Web authentication to come online.
Analysis
Users can access the external network only when the user access interface and the RADIUS
server-facing interface belong to the same VLAN.
Solution
To resolve the problem, use one of the following methods:
Remove the RADIUS server-connecting interface from its VLAN and then assign the RADIUS
server-facing interface to the VLAN to which the user access interface belongs.
Remove the user access interface from its VLAN and then assign the user access interface to
the VLAN to which the RADIUS server-facing interface belongs.
512

Advertisement

Table of Contents
loading

Table of Contents