No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

S600-E V200R010C00 Configuration Guide - User Access and Authentication

This document describes the working mechanisms, configuration procedures, and configuration examples of User Access and Authentication features, such as AAA, NAC, and Policy Association.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Enabling Portal Authentication

Enabling Portal Authentication

Context

The device can communicate with the Portal server after the parameters of the Portal server are configured. To enable Portal authentication for access users, you must enable Portal authentication of the device.

To enable Portal authentication on an external Portal server, you must only bind the configured Portal server template to an interface. To enable Portal authentication on a built-in Portal server, enable the built-in Portal server and enable Portal authentication on a Layer 2 interface of the device.

Procedure

  • Enable Portal authentication on the device if the authentication server is an external Portal server.
    1. Run system-view

      The system view is displayed.

    2. Run interface interface-type interface-number

      The interface view is displayed.

      NOTE:

      Only VLANIF interfaces support Portal authentication.

    3. Run web-auth-server server-name [ bak-server-name ] { direct | layer3 }

      The Portal server template is bound to the interface.

      By default, no Portal server template is bound to an interface.

  • Enable Portal authentication on the device if the authentication server is a built-in Portal server.
    1. Run system-view

      The system view is displayed.

    2. Run portal local-server https ssl-policy policy-name [ port port-num ]

      The built-in Portal server is enabled on the device.

      By default, the built-in Portal server is disabled on the device.

      NOTE:

      The SSL policy must be configured and the digital certificate must be loaded.

    3. Enable Portal authentication on the interface in the system or interface view.

      NOTE:

      It is recommended that you enable built-in Portal authentication on a VLANIF interface.

      Built-in Portal authentication of Layer 3 interfaces cannot be configured using this command in the system view.

      • In the system view:

        • Run portal local-server enable interface { interface-type interface-number1 [ to interface-number2 ] } &<1-10>

          Portal authentication is enabled on the interface.

      • In the interface view:
      1. Run interface interface-type interface-number

        The interface view is displayed.

      2. Run portal local-server enable

        Portal authentication is enabled on the interface.

      3. Run the quit command to return to the system view.

      By default, Portal authentication is disabled on an interface.

    4. (Optional) Customize built-in Portal server login page.

      • Run portal local-server logo load logo-file

        The logo file is loaded to the built-in Portal server login page.

        By default, no logo file is loaded to the built-in Portal server login page.

      • Run portal local-server ad-image load ad-image-file

        The advertisement image file is loaded to the built-in Portal server login page.

        By default, no advertisement image file is loaded to the built-in Portal server login page.

      • Run portal local-server page-text load string

        The text file or hypertext file is loaded to the built-in Portal server.

        By default, no text file or hypertext file is loaded to the built-in Portal server.

      • Run portal local-server policy-text load string

        The disclaimer page file is loaded to the built-in Portal server.

        By default, no disclaimer page file is loaded to the built-in Portal server.

      • Run portal local-server background-image load { background-image-file | default-image1 }

        The background image of the built-in Portal server login page is configured.

        By default, the device has two background images default-image0 and default-image1. The built-in Portal server uses default-image0 as the background image by default.

      • Run portal local-server background-color background-color-value

        The background color of the built-in Portal server login page is configured.

        By default, no background color of the built-in Portal server login page is configured.

    5. (Optional) Run portal local-server keep-alive interval interval-value [ auto ]

      The heartbeat detection interval and mode of the built-in Portal server are configured.

      By default, the heartbeat detection function of the built-in Portal server is not configured.

Translation
Download
Updated: 2019-08-21

Document ID: EDOC1000141885

Views: 54702

Downloads: 10

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Share
Previous Next