Chapter 3 Enterprise Network Access Authentication Configuration Example; Network Application Analysis - H3C LS-5100-16P-SI-OVS-H3 Configuration

Low-end ethernet switches
Table of Contents

Advertisement

802.1x
H3C Low-End Ethernet Switches Configuration Examples
Chapter 3 Enterprise Network Access
Authentication Configuration Example
Note:
The configuration or information displayed may vary with devices. The following takes
the H3C S3600 series switch (using software Release 1510) as an example.

3.1 Network Application Analysis

An administrator of an enterprise network needs to authenticate users accessing the
network on a per-port basis on the switch to control access to network resources. Table
3-1 shows the details of network application analysis.
Table 3-1 Network application analysis
Access
authentication.
Users can only access VLAN 10 before
the authentication succeeds.
Users can access VLAN 100 after the
authentication succeeds.
Users select the monthly payment service
of 50 dollars and use 2M bandwidth to
access the network.
IP address and MAC address are bound
after a user logs in.
Tear down the connection by force if it is
idle for 20 minutes.
Users
successfully after the switch reboots
abnormally.
Network requirements
of
users
is
controlled
can
be
re-authenticated
Chapter 3 Enterprise Network Access
Authentication Configuration Example
by
Enable 802.1x
Enable Guest VLAN
Enable dynamic VLAN assignment
Configure an accounting policy and
bandwidth restraint policy on the
RADIUS server
Set MAC-to-IP binding
Enable idle cut
Enable re-authentication upon reboot
3-1
Solution

Advertisement

Table of Contents
loading

Table of Contents