Figure 1-14 Configure Layer 3 portal authentication with extended functions
Configuration procedure
You need to configure IP addresses for the devices as shown in
are available between devices.
Perform configurations on the RADIUS server to ensure that the user authentication and
accounting functions can work normally.
Configure Switch A:
1)
Configure a RADIUS scheme
# Create a RADIUS scheme named rs1 and enter its view.
<SwitchA> system-view
[SwitchA] radius scheme rs1
# Set the server type for the RADIUS scheme. When using the iMC server, you need set the server type
to extended.
[SwitchA-radius-rs1] server-type extended
# Specify the primary authentication server and primary accounting server, and configure the keys for
communication with the servers.
[SwitchA-radius-rs1] primary authentication 192.168.0.112
[SwitchA-radius-rs1] primary accounting 192.168.0.112
[SwitchA-radius-rs1] key accounting radius
[SwitchA-radius-rs1] key authentication radius
[SwitchA-radius-rs1] user-name-format without-domain
# Configure the IP address of the security policy server.
[SwitchA-radius-rs1] security-policy-server 192.168.0.113
[SwitchA-radius-rs1] quit
2)
Configure an authentication domain
# Create an ISP domain named dm1 and enter its view.
Figure 1-14
1-27
and ensure that routes
Need help?
Do you have a question about the S7906E and is the answer not in the manual?
Questions and answers