Disconnecting A User By Force; Configuring Dynamic Vlan With Radius Server - Huawei Quidway S6500 Series Operation Manual

Hide thumbs Also See for Quidway S6500 Series:
Table of Contents

Advertisement

Operation Manual - Security
Quidway S6500 Series Ethernet Switches
Note:
When the configured authentication mode (local or RADIUS authentication)
requires username and password, the command level that a user can access after
login depends on the user priority level.
When the configured authentication mode is none or password authentication, the
command level that a user can access after login depends on the priority level of the
user interface.
Both the level and the service-type commands can be used to configure the
priority level for a local user. The system will use the latest configuration to set the
user level.

2.2.3 Disconnecting a User by Force

The following command can be used to disconnect a user or a category of users by
force. By now, it's available for 802.1x users.
Perform the following configurations in system view.
Table 2-13 Disconnecting a user by force
Operation
Disconnect a user
by force

2.2.4 Configuring Dynamic VLAN with RADIUS Server

Based on the delivery attribute value of the RADIUS server, the switch adds the ports of
the users who have passed the authentication to different VLANs, for purpose of
controlling the network resources that the users can access. In the practical
applications, the ports are set in port-based mode in order to work together with Guest
VLAN. When the port is in MAC address-based mode, each port can only connect a
single user.
Currently the ethernet switches support RADIUS server delivers the integer type and
string type VLAN ID.
Integer VLAN ID: The switch adds the port into the VLAN based on the integer ID
delivered from the server. If the VLAN does not exist, it first creates a VLAN and
then adds the port into the new VLAN.
cut connection { all | access-type dot1x | domain
domain-name | interface interface-type interface-number |
ip ip-address | mac mac-address | radius-scheme
radius-scheme-name | vlan vlanid | ucibindex ucib-index |
user-name user-name }
Huawei Technologies Proprietary
2-11
Chapter 2 AAA and RADIUS Protocol
Command
Configuration

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Release 3000 series

Table of Contents