1-15
Configuring ISP Domain Attributes
Follow these steps to configure ISP domain attributes:
To do…
Use the command…
Remarks
Enter system view
system-view
—
Enter ISP domain view
domain
isp-name
—
Place the ISP domain to the
state of active or blocked
state
{
active
|
block
}
Optional
When created, an ISP domain
is in the active state by default,
and users in the domain can
request network services.
Specify the maximum number
of active users in the ISP
domain
access-limit enable
max-user-number
Optional
No limit by default
Configure the idle cut function
idle-cut
enable
minute
flow
Optional
Disabled by default
Currently, this command is
effective only for LAN users,
and portal users.
Configure the self-service
server localization function
self-service-url
enable
url-string
Optional
Disabled by default
Specify the default authorization
user profile
authorization-attribute
user-profile profile-name
Optional
By default, an ISP domain has no
default authorization user profile.
A self-service RADIUS server, for example, Intelligent Management Center (iMC), is required for the
self-service server localization function to work. With the self-service function, a user can manage and
control his or her accounting information or card number. A server with self-service software is a
self-service server.
Configuring AAA Authentication Methods for an ISP Domain
In AAA, authentication, authorization, and accounting are separate processes. Authentication refers to
the interactive authentication process of username/password/user information during access or service
request. The authentication process neither sends authorization information to a supplicant nor triggers
any accounting.
AAA supports the following authentication methods:
z
No authentication (
none
): All users are trusted and no authentication is performed. Generally, this
method is not recommended.
z
Local authentication (
local
): Authentication is performed by the NAS, which is configured with the
user information, including the usernames, passwords, and attributes. Local authentication
Содержание S7906E - Switch
Страница 82: ...1 4 DeviceA interface tunnel 1 DeviceA Tunnel1 service loopback group 1...
Страница 200: ...1 11 DeviceB display vlan dynamic No dynamic vlans exist...
Страница 494: ...ii Displaying and Maintaining Tunneling Configuration 1 45 Troubleshooting Tunneling Configuration 1 45...
Страница 598: ...ii...
Страница 1757: ...4 9...
Страница 1770: ...6 4...
Страница 2017: ...2 11 Figure 2 3 SFTP client interface...
Страница 2062: ...i Table of Contents 1 URPF Configuration 1 1 URPF Overview 1 1 What is URPF 1 1 How URPF Works 1 1 Configuring URPF 1 2...
Страница 2238: ...1 16 DeviceA cfd linktrace service instance 1 mep 1001 target mep 4002...
Страница 2442: ...2 4 Set the interval for sending Syslog or trap messages to 20 seconds Device mac address information interval 20...