162
Layer3 source network:
IP address Prefix length
Destination authenticate subnet:
IP address Prefix length
A user can perform portal authentication by using the HPE iNode client or a Web browser. Before
passing the authentication, the user can access only the authentication page
http://192.168.0.111:8080/portal
. All Web requests from the user will be redirected to the
authentication page. After passing the authentication, the user can access Internet resources.
# After the user passes authentication, use the following command to display information about the
portal user.
[Switch] display portal user interface vlan-interface 100
Total portal users: 1
Username: abc
Portal server: newpt
State: Online
VPN instance: --
MAC IP VLAN Interface
0015-e9a6-7cfe 2.2.2.2 100 Vlan-interface100
Authorization information:
DHCP IP pool: N/A
ACL: N/A
CAR: N/A
Configuring re-DHCP portal authentication
Network requirements
As shown in
, the host is directly connected to the switch (the access device). The host
obtains an IP address through the DHCP server. A portal server acts as both a portal authentication
server and a portal Web server. A RADIUS server acts as the authentication/accounting server.
Configure re-DHCP portal authentication. Before passing the authentication, the host is assigned a
private IP address. After passing the authentication, the host gets a public IP address and can
access Internet resources.
Figure 55 Network diagram
192.168.0.111/24
192.168.0.113/24
192.168.0.112/24
Switch
Host
automatically obtains
an IP address
Vlan-int100
20.20.20.1/24
10.0.0.1/24 sub
Vlan-int2
192.168.0.100/24
Portal Server
RADIUS server
DHCP server
Summary of Contents for 10500 series
Page 326: ...312 No duration limit for this SA ...