Configuration Guide
WEB Authentication Configuration
13) Scenario 2: The Portal Server detects the user
’s logout and informs the access device (through
SNMP protocol) and informs the user with a logout page.
14) In the above two scenarios, the Portal Server will send a stop-accounting request to the Radius
Server and notify the Radius Server that the user has logged out.
Protocol Specifications
For HTTP redirection related features, refer to HTTP 1.1 protocol (RFC1945).
For online notification related communication protocols, refer to the SNMP protocols (RFC 1157 and RFC
2578).
Ruijie Second Generation Web Authentication
HTTP Interception
The same as the HTTP interception technology of Ruijie First generation Web Authentication
HTTP Redirection
The same as the HTTP redirection technology of Ruijie First generation Web Authentication
Operating Principle
The networking topology of Ruijie second generation web authentication is the same as that of Ruijie first
generation web authentication (Figure 1).
Roles related to Web authentication:
15) Authentication client: refers to a browser running the HTTP protocol. It sends HTTP requests when
the user uses the browser to access the network.
16) Access device: generally refers to an access layer device (for example, a wireless AP in a WLAN) in
the network topology. It is generally directly connected to
the user’s terminal device, and web
authentication must be enabled on the access device. The access device receives the
authentication information of the user from the Portal server, and sends an authentication request to
the RADIUS server. The access device determines whether the user can access resources of the
Internet based on the authentication results and replies the results to the Portal server.
17) Portal Server: It provides authentication page and related operation for web authentication. When
the Portal server accepts HTTP-based authentication requests sent by the authentication client, it
collects account information and sends it to the access device, and then replies the result to the
user via the page according to the authentication results from the access device.
18) Radius Server: .It provides radius protocol-based authentication of remote users.
Main Web authentication process:
19) Before authentication, the access device blocks all HTTP requests sent by the unauthenticated user
sand redirects the requests to the Portal server. Then, an authentication window pops up in the
user’s browser.
Содержание RG-S2900G-E Series
Страница 1: ...RG S2900G E Series Switch RGOS Configuration Guide Release 10 4 2b12 p1 ...
Страница 91: ...Configuration Guide Configuring PoE Configuration ...
Страница 133: ...Configuration Guide EEE Configuration ...
Страница 319: ...Configuration Guide QinQ Configuration ...
Страница 408: ......
Страница 409: ...IP Routing Configuration 1 Static Route Configuration ...
Страница 412: ......
Страница 413: ...Multicast Configuration 1 IGMP Snooping Configuration 2 MLD Snooping Configuration ...
Страница 621: ...Configuration Guide CPU Protection Configuration udp helper 180 4 dhcp client 180 4 lacp 180 4 ...
Страница 757: ......
Страница 758: ...ACL QoS Configuration 1 Access Control List Configuration 2 QoS Configuration ...
Страница 801: ...Reliability Configuration 1 RLDP Configuration 2 TPP Configuration 3 SEM Configuration ...
Страница 901: ...Configuration Guide ERSPAN Configuration ...
Страница 902: ...Web based Configuration 1 Web based Configuration ...