144
The user can initiate portal authentication by using the HP iNode client or by accessing a webpage. All
the initiated web requests are redirected to the portal authentication page
http://192.168.0.111:8080/portal. Before passing portal authentication, the user can access only the
authentication page. After passing portal authentication, the user can access Internet resources.
After the user passes the portal authentication, use the following command to view the portal user
information on the router.
[Router] display portal user interface gigabitethernet 1/0/2
Index:19
State:ONLINE
SubState:NONE
ACL:NONE
Work-mode:stand-alone
VPN instance:NONE
MAC IP Vlan Interface
---------------------------------------------------------------------
0015-e9a6-7cfe 2.2.2.2 0 GigabitEthernet1/0/2
On interface Gigabitethernet1/0/2:total 1 user(s) matched, 1 listed.
Configuring re-DHCP portal authentication
Network requirements
As shown in
:
•
The host is directly connected to the router, and the router is configured for re-DHCP portal
authentication. The host is assigned with an IP address through the DHCP server. Before passing
portal authentication, the host uses an assigned private IP address. After passing portal
authentication, it can obtain a public IP address, and then the user can access Internet resources.
•
A RADIUS server serves as the authentication/accounting server.
Figure 57
Configure re-DHCP portal authentication
192.168.0.111/24
192.168.0.113/24
192.168.0.112/24
Router
Host
Automatically obtains
an IP address
GE1/0/2
20.20.20.1/24
10.0.0.1/24 sub
GE1/0/1
192.168.0.100/24
Portal server
RADIUS server
DHCP server
For re-DHCP authentication, you must configure a public address pool (20.20.20.0/24, in this example)
and a private address pool (10.0.0.0/24, in this example) on the DHCP server. The configuration steps
are omitted.