®
xStack
DGS-3620 Series Layer 3 Managed Stackable Gigabit Switch Web UI Reference Guide
Conditions and Limitations
1. If the client is utilizing DHCP to attain an IP address, the authentication VLAN must provide a DHCP server
or a DHCP relay function so that client may obtain an IP address.
2. Certain functions exist on the Switch that will filter HTTP packets, such as the Access Profile function. The
user needs to be very careful when setting filter functions for the target VLAN, so that these HTTP packets
are not denied by the Switch.
3. If a RADIUS server is to be used for authentication, the user must first establish a RADIUS Server with the
appropriate parameters, including the target VLAN, before enabling Web Authentication on the Switch.
WAC Global Settings
Users can configure the Switch for the Web-based access control function.
To view this window, click Security > Web-based Access Control (WAC) > WAC Global Settings as shown
below:
The fields that can be configured are described below:
Parameter
WAC Global State
Virtual IP
Virtual IPv6
Redirection Path
Clear Redirection Path
RADIUS Authorization
Local Authorization
Method
HTTP(S) Port (1-65535)
Figure 8-29 WAC Global Settings window
Description
Use this selection menu to either enable or disable the Web Authentication on the
Switch.
Enter a virtual IP address. This address is only used by WAC and is not known by
any other modules of the Switch.
Enter a virtual IPv6 address. This address is only used by WAC and is not known by
any other modules of the Switch.
Enter the URL of the website that authenticated users placed in the VLAN are
directed to once authenticated.
The user can enable or disable this option to clear the redirection path.
The user can enable or disable this option to enable RADIUS Authorization or not.
The user can enable or disable this option to enable Local Authorization or not.
Use this drop-down menu to choose the authenticator for Web-based Access
Control. The user may choose:
Local – Choose this parameter to use the local authentication method of the Switch
as the authenticating method for users trying to access the network via the switch.
This is, in fact, the username and password to access the Switch configured using
the WAC User Settings window seen below.
RADIUS – Choose this parameter to use a remote RADIUS server as the
authenticating method for users trying to access the network via the switch. This
RADIUS server must have already been pre-assigned by the administrator using the
Authentication RADIUS Server Settings window.
Enter a HTTP port number. Port 80 is the default.
345