129
d.
Configure the ISP domain to use RADIUS scheme
rs1
for authentication, authorization, and
accounting of portal users.
e.
Click the
Advanced settings
icon
on the
ISP Domain
page.
f.
Specify
dm1
as the default ISP domain. If a user enters the username without the ISP
domain name at login, the authentication and accounting methods of the default domain are
used for the user.
4.
Configure the VLAN and the VLAN interface:
a.
From the navigation tree, select
Network
>
Links
>
VLAN
.
b.
Create VLAN
100
.
c.
Open the details page for VLAN 100.
d.
Create VLAN-interface 100 and assign IP address
2.2.2.1
to it.
5.
Configure portal authentication on the switch:
a.
From the navigation tree, select
Security
>
Access Control
>
Portal
.
b.
Add a portal authentication server:
−
Specify the server name as
newpt
.
−
Specify the IP address as
192.168.0.111
.
−
Specify the shared key as
portal
.
−
Set the server listening port to
50100
.
c.
Add a portal Web server:
−
Specify the server name as
newpt
.
−
Specify the URL.
The URL must be the same as the URL of the portal Web server used in the network.
This example uses
http://192.168.0.111:8080/portal
.
d.
Add an interface policy:
−
Select interface VLAN-interface 100.
−
In the IPv4 configuration area, enable portal authentication and select the
Direct
method.
−
Select portal Web server
newpt
.
−
Configure the BAS-IP address as
2.2.2.1
.
6.
Configure the RADIUS server:
a.
Add a user account on the server. (Details not shown.)
b.
Configure the authentication, authorization, and accounting settings. (Details not shown.)
Verifying the configuration
1.
From the navigation tree, select
Security
>
Authentication
>
RADIUS
.
2.
Verify the configuration of RADIUS scheme
rs1
.
3.
From the navigation tree, select
Security
>
Authentication
>
ISP Domains
.
4.
Verify the configuration of ISP domain
dm1
.
5.
Use the configured user account to pass portal authentication.
6.
From the navigation tree, select
Security
>
Access Control
>
Portal
.
7.
Verify that the number of online users is not 0 on VLAN-interface 100.