No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


S12700 V200R011C10 Configuration Guide - User Access and Authentication

This document describes the working mechanisms, configuration procedures, and configuration examples of User Access and Authentication features, such as AAA, DAA, NAC, PPPoE, Policy Association, and IP session.

Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
(Optional) Configuring the Forcible Domain for 802.1X Authentication Users

(Optional) Configuring the Forcible Domain for 802.1X Authentication Users


A domain has been created using the domain (AAA view) command.


During authentication, if the user name entered by a user does not contain a domain name, the user will be authenticated in the default domain; if the user name contains a domain name, the user will be authenticated in the specified domain.

If the user names entered by many users do not contain domain names, excess users are authenticated in the default domain, making the authentication scheme inflexible. If all users on an interface need to use the same AAA scheme when the user names entered by some users contain domain name and those entered by other users do not, the device also cannot meet such requirement. To address this issue, you can configure a forcible domain. Then all users on the interface will be authenticated in the forcible domain no matter whether the user names entered by the users contain domain names.


  1. Run system-view

    The system view is displayed.

  2. Run interface interface-type interface-number

    The interface view is displayed.

  3. Run dot1x domain domain-name

    The forcible domain for 802.1X authentication users is configured.

    By default, no forcible domain is configured for 802.1X authentication users.

Updated: 2019-10-21

Document ID: EDOC1000178117

Views: 131304

Downloads: 62

Average rating:
This Document Applies to these Products

Related Version

Related Documents

Previous Next