Configuring Portal Server Detection And Portal User Synchronization - HPE Moonshot 45Gc Security Configuration Manual

Switch module
Table of Contents

Advertisement

--
Layer3 source network:
IP address
Destination authenticate subnet:
IP address
Before a user performs portal authentication by using the HPE iNode client, the user can access only
the authentication page http://192.168.0.111:8080/portal. All Web requests the user initiates will be
redirected to the authentication page.
If the user passes the authentication but fails the security check, the user can access only the
resources that match ACL 3000.
After passing both the authentication and the security check, the user can access Internet
resources that match ACL 3001.
# After the user passes authentication, use the following command to display information about the
portal user.
[SwitchA] display portal user interface vlan-interface 4
Total portal users: 1
Username: abc
Portal server: newpt
State: Online
Authorization ACL: 3001
VPN instance: --
MAC
0015-e9a6-7cfe
Configuring portal server detection and portal user
synchronization
Network requirements
As shown in
assigned a public IP address either manually or through DHCP. A portal server acts as both a portal
authentication
authentication/accounting server.
Configure direct portal authentication on the switch, so the host can access only the portal server
before passing the authentication and access Internet resources after passing the authentication.
Configure the switch to do the following:
Detect the reachability state of the portal authentication server.
Send log messages upon state changes.
Disable portal authentication when the authentication server is unreachable.
Synchronize portal user information with the portal server periodically.
--
IP
8.8.8.2
Figure
58, the host is directly connected to the switch (the access device). The host is
server
and
a
VLAN
Interface
4
Vlan-interface4
portal
Web
server.
169
--
Prefix length
Prefix length
A
RADIUS
server
acts
as
the

Advertisement

Table of Contents
loading

Table of Contents