HP 3600 v2 Series Security Configuration Manual page 118

Hide thumbs Also See for 3600 v2 Series:
Table of Contents

Advertisement

To do...
Enter system view
Configure a free IP
NOTE:
When global MAC authentication, Layer-2 portal authentication, or port security is enabled, the free IP
does not take effect.
If you use free IP, guest VLAN, and Auth-Fail VLAN features together, make sure that the free IP
segments are in both guest VLAN and Auth-Fail VLAN. Users can access only the free IP segments.
Configuring the redirect URL
Follow these steps to configure a redirect URL:
To do...
Enter system view
Configure the redirect URL
NOTE:
The redirect URL must be on the free IP subnet.
Setting the EAD rule timer
EAD fast deployment automatically creates an ACL rule, or an EAD rule, to open access to the redirect
URL for each redirected user seeking to access the network. The EAD rule timer sets the lifetime of each
ACL rule. When the timer expires or the user passes authentication, the rule is removed. If users fail to
download EAD client or fail to pass authentication before the timer expires, they must reconnect to the
network to access the free IP.
To prevent ACL rule resources from being used up, you can shorten the timer when the amount of EAD
users is large.
Follow these steps to set the EAD rule timer:
To do...
Enter system view
Set the EAD rule timer
Use the command...
system-view
dot1x free-ip ip-address
{ mask-address | mask-length }
Use the command...
system-view
dot1x url url-string
Use the command...
system-view
dot1x timer ead-timeout
ead-timeout-value
107
Remarks
Required
By default, no free IP is configured.
Remarks
Required
By default, no redirect URL is
configured.
Remarks
Optional
The default timer is 30 minutes.

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

A3100-48 v2

Table of Contents