Specifying The Portal Server; Specifying The Local Portal Server For Layer 2 Portal Authentication; Specifying A Portal Server For Layer 3 Portal Authentication - HP 5120 SI Series Security Configuration Manual

Hide thumbs Also See for 5120 SI Series:
Table of Contents

Advertisement

NOTE:
For installation and configuration about the security policy server, see
The ACL for resources in the quarantined area and that for restricted resources correspond to isolation
ACL and security ACL on the security policy server respectively.
You can modify the authorized ACLs on the access device. However, your changes take effect only for
portal users logging on after the modification.
For portal authentication to work normally, make sure the device name is no more than 16 characters.

Specifying the portal server

Specifying the local portal server for Layer 2 portal
authentication
Layer 2 portal authentication uses the local portal server. Specify the IP address of a Layer 3 interface on
the device that is routable to the portal client as the listening IP address of the local portal server. HP
recommends using the IP address of a loopback interface rather than a physical Layer 3 interface,
because:
The status of a loopback interface is stable. There will be no authentication page access failures
caused by interface failures.
A loopback interface does not forward received packets to any network, avoiding impact on system
performance when there are many network access requests.
Follow these steps to specify the local portal server for Layer 2 portal authentication:
To do...
Enter system view
Specify the listening IP address of
the local portal server for Layer 2
portal authentication
NOTE:
The specified listening IP address can be changed or deleted only if Layer 2 portal authentication is not
enabled on any port.

Specifying a portal server for Layer 3 portal authentication

Perform this task to specify portal server parameters for Layer 3 portal authentication, including the portal
server IP address, shared encryption key, server port, and the URL address for web authentication.
According to the networking environment, you can configure a remote portal server or a local portal
server as needed.
To configure a remote portal server, specify the IP address of the remote portal server.
To use the local portal server of the access device, specify the IP address of a Layer 3 interface on
the device as the portal server's IP address. The specified interface must be reachable to the client.
Follow these steps to specify a portal server for Layer 3 authentication:
Use the command...
system-view
portal local-server ip ip-address
118
iMC EAD Security Policy Help
Remarks
Required
By default, no listening IP address
is specified.
.

Advertisement

Table of Contents
loading

Table of Contents