Example: Configuring Extended Direct Portal Authentication - H3C SR8800-F Configuration Manual

Comware 7 user access
Hide thumbs Also See for SR8800-F:
Table of Contents

Advertisement

IP address
A user can perform portal authentication by using the H3C iNode client or through a Web browser.
Before passing the authentication, the user can access only the authentication page
http://192.168.0.111:8080/portal. All Web requests from the user will be redirected to the
authentication page. After passing the authentication, the user can access other network resources.
# After the user passes authentication, use the following command to display information about the
portal user.
[RouterA] display portal user interface gigabitethernet 1/0/2
Total portal users: 1
Username: abc
Portal server: newpt
State: Online
VPN instance: N/A
MAC
0015-e9a6-7cfe
Authorization information:
DHCP IP pool: N/A
User profile: N/A
Session group profile: N/A
ACL: N/A
Inbound CAR: N/A
Outbound CAR: N/A
Inbound priority: N/A
Outbound priority: N/A

Example: Configuring extended direct portal authentication

Network configuration
As shown in
assigned a public IP address either manually or through DHCP. A portal server acts as both a portal
authentication
authentication/accounting server.
Configure extended direct portal authentication. If the host fails security check after passing identity
authentication, it can access only subnet 192.168.0.0/24. After passing security check, the host can
access other network resources.
IP
8.8.8.2
Figure
112, the host is directly connected to the router (the access device). The host is
server
and
a
VLAN
Interface
--
GigabitEthernet1/0/2
portal
Web
server.
345
Prefix length
A
RADIUS
server
acts
as
the

Advertisement

Table of Contents
loading

Table of Contents