Juniper JUNOS OS 10.3 - SOFTWARE Manual page 2698

For ex series ethernet switches
Hide thumbs Also See for JUNOS OS 10.3 - SOFTWARE:
Table of Contents

Advertisement

Complete Software Guide for Junos
Verification
Purpose
Action
Meaning
Related
Documentation
Example: Setting Up Captive Portal Authentication on an EX Series Switch
2602
®
OS for EX Series Ethernet Switches, Release 10.3
To confirm that the configuration is working properly, perform these tasks:
Verifying Firewall Filters on Interfaces with Multiple Supplicants on page 2602
Verifying Firewall Filters on Interfaces with Multiple Supplicants
Verify that firewall filters are functioning on the interface with multiple supplicants.
Check the results with one user authenticated on the interface. In this case, the user
1.
is authenticated on
ge-0/0/2
user@switch> show dot1x firewall
Filter: dot1x_ge-0/0/2
Counters
counter1_dot1x_ge-0/0/2_user1 100
When a second user, User2, is authenticated on the same interface,
2.
can verify that the filter includes the results for both of the users authenticated on the
interface:
user@switch> show dot1x firewall
Filter: dot1x-filter-ge-0/0/0
Counters
counter1_dot1x_ge-0/0/2_user1 100
counter1_dot1x_ge-0/0/2_user2 400
The results displayed by the
filter created with the authentication of each new user. User1 accessed the file server
located at the specified destination address 100 times, while User2 accessed the same
file server 400 times.
Example: Applying a Firewall Filter to 802.1X-Authenticated Supplicants Using RADIUS
Server Attributes on an EX Series Switch on page 2574
Example: Configuring Firewall Filters for Port, VLAN, and Router Traffic on EX Series
Switches on page 3039
Filtering 802.1X Supplicants Using RADIUS Server Attributes on page 2618
You can set up captive portal authentication (hereafter referred to as captive portal) on
a switch to redirect Web browser requests to a login page that requires the user to input
a username and password. Upon successful authentication, the user is allowed to continue
with the original page request and subsequent access to the network.
:
command output reflect the dynamic
show dot1x firewall
ge-0/0/2
Copyright © 2010, Juniper Networks, Inc.
, you

Advertisement

Table of Contents
loading

Table of Contents