134
To do…
Command…
Remarks
address for outgoing RADIUS
packets.
radius scheme
radius-scheme-
name
nas-backup-ip
ip-address
Use either approach.
By default, no backup source IP
address is specified.
You do not need to specify the
backup source IP address if the
router uses the virtual IP address
of the uplink's VRRP group as the
source IP address of the outgoing
RADIUS packets.
For more information, see
Security
Command Reference
.
When configuring portal stateful failover:
•
In stateful failover mode, the router does not support re-DHCP portal authentication on the portal
service backup interface.
•
In stateful failover mode, if a user on either router is logged out, the information of the user on the
other router is also deleted. Log off a user on the router or on the portal server. For example, use
cut connection
and
portal
delete-user
s on the device to log off users.
•
The AAA and portal configuration must be consistent on the two routers that back up each other.
For example, you must configure the same portal server on the two routers.
Specifying auto redirection URL for authenticated
portal users
After a user passes portal authentication, if the access device is configured with an auto redirection URL,
it redirects the user to the URL.
To specify the auto redirection URL for authenticated portal users:
To do…
Command…
Remarks
1.
Enter system view.
system-view
—
2.
Specify the auto redirection
URL for authenticated portal
users.
portal redirect-url
url-string
Required.
By default, an authenticated
user is redirected to the URL
the user typed in the address
bar before portal
authentication.
NOTE:
To use this feature for remote Layer 3 portal authentication, the portal server must be the iMC portal
server, and the iMC portal server must support the page auto-redirection function.