159
During a re-DHCP portal authentication or mandatory user logout process, the device sends portal
notification packets to the portal authentication server. For the authentication or logout process to
complete, make sure the BAS-IP/BAS-IPv6 attribute is the same as the device IP or IPv6 address
specified on the portal authentication server.
To configure the BAS-IP attribute for portal packets sent to the portal authentication server:
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Enter interface view.
interface
interface-type
interface-number
N/A
3.
Configure BAS-IP for IPv4
portal packets sent to the
portal authentication
server.
portal
bas-ip ipv4-address
By default:
•
The BAS-IP attribute of an IPv4
portal reply packet sent to the portal
authentication server is the source
IPv4 address of the packet.
•
The BAS-IP attribute of an IPv4
portal notification packet sent to the
portal authentication server is the
IPv4 address of the packet's output
interface.
4.
Configure BAS-IPv6 for
IPv6 portal packets sent to
the portal authentication
server.
portal
bas-ipv6 ipv6-address
By default:
•
The BAS-IPv6 attribute of an IPv6
portal reply packet sent to the portal
authentication server is the source
IPv6 address of the packet.
•
The BAS-IPv6 attribute of an IPv6
portal notification packet sent to the
portal authentication server is the
IPv6 address of the packet's output
interface.
Enabling portal roaming
Portal roaming takes effect only on portal users logging in from VLAN interfaces. It does not take
effect on portal users logging in from other Layer 3 interfaces.
If portal roaming is enabled, a portal user logging in from a VLAN interface can access resources
from any Layer 2 port in the VLAN without re-authentication.
If portal roaming is disabled, to access external network resources from a Layer 2 port different from
the current access port in the VLAN, the user must do the following:
•
First log out from the current port.
•
Then re-authenticate on the new Layer 2 port.
To enable portal roaming:
Step Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Enable portal
roaming.
portal roaming enable
By default, portal roaming is
disabled.
You cannot enable portal roaming
when online portal users or
preauthentication portal users exist
on the device.
Содержание FlexFabric 5940 SERIES
Страница 251: ...238 ...