HP VSR1000 Security Configuration Manual page 118

Virtual services router
Table of Contents

Advertisement

[Router-portal-server-newpt] port 50100
# Configure reachability detection of the portal authentication server: configure the server
detection interval as 40 seconds, and send log messages upon reachability status changes.
[Router-portal-server-newpt] server-detect timeout 40 log
NOTE:
The value of timeout must be greater than or equal to the portal server heartbeat interval.
# Configure portal user synchronization with the portal authentication server, and configure the
synchronization detection interval as 600 seconds.
[Router-portal-server-newpt] user-sync timeout 600
[Router-portal-server-newpt] quit
NOTE:
The value of timeout must be greater than or equal to the portal user heartbeat interval.
# Configure a portal Web server.
[Router] portal web-server newpt
[Router-portal-websvr-newpt] url http://192.168.0.111:8080/portal
[Router-portal-websvr-newpt] quit
# Enable direct portal authentication on interface GigabitEthernet 2/0.
[Router] interface gigabitethernet 2/0
[Router–GigabitEthernet2/0] portal enable method direct
# Enable the portal fail-permit function for the portal authentication server newpt.
[Router–GigabitEthernet2/0] portal fail-permit server newpt
# Reference the portal Web server newpt on interface GigabitEthernet 2/0.
[Router–GigabitEthernet2/0] portal apply web-server newpt
# Configure the BAS-IP as 2.2.2.1 for portal packets sent from GigabitEthernet 2/0 to the portal
authentication server.
[Router–GigabitEthernet2/0] portal bas-ip 2.2.2.1
[Router–GigabitEthernet2/0] quit
Verifying the configuration
# Display information about the portal authentication server.
[Router] display portal server newpt
Portal server: newpt
IP
Port
Server Detection
User synchronization
Status
The Up status of the portal authentication server indicates that the portal authentication server is
reachable. If the access device detects that the portal authentication server is unreachable, the Status
field in the command output displays Down. The access device generates a server unreachable log
message "Portal server newpt turns down from up" and disables portal authentication on the access
interface, so the host can access the external network without authentication.
: 192.168.0.111
: 50100
: Timeout 40s
Action: log
: Timeout 600s
: Up
108

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents