No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


S12700 V200R011C10 Configuration Guide - User Access and Authentication

This document describes the working mechanisms, configuration procedures, and configuration examples of User Access and Authentication features, such as AAA, DAA, NAC, PPPoE, Policy Association, and IP session.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
(Optional) Configuring Web Push

(Optional) Configuring Web Push


After a user is successfully authenticated, the device forcibly redirect the user to a web page when receiving the HTTP packet from the user who accesses web pages for the first time. In addition to pushing advertisement pages, the device can obtain user terminal information through the HTTP packets sent by the users, and apply the information to other services. There are two ways to push web pages:
  1. URL: pushes the URL corresponding to the web page.
  2. URL template: pushes the URL template. A URL template must be created. The URL template contains the URL of the pushed web page and URL parameters.

For a user who goes online through the X series cards, the forcible push function takes effect only for the first HTTP or HTTPS packet received from the user. If an application program that actively sends HTTP or HTTPS packets is installed on the user terminal, the terminal has sent the HTTP or HTTPS packet before the user accesses a web page. Therefore, the user is unaware of the web page push process.

The forcible push function takes effect only when a redirection ACL is configured for users who go online from cards excluding the X series cards. If a redirection ACL exists in the user table, a web page is forcibly pushed when HTTP packets from users match the redirection ACL rule. Usually, you can configure the RADIUS server to authorize the Huawei extended RADIUS attribute HW-Redirect-ACL to users for redirection ACL implementation, or run the redirect-acl command to configure a redirection ACL.


  1. Configure the URL template.

    1. Run the system-view command to enter the system view.
    2. Run the url-template name template-name command to create a URL template and enter the URL template view.

      By default, no URL template exists on the device.

    3. Run the url [ push-only ] url-string command to configure the redirection URL corresponding to the Portal server.
    4. Run the url-parameter { redirect-url redirect-url-value | sysname sysname-value | user-ipaddress user-ipaddress-value | user-mac user-mac-value | login-url url-key url } * command to set the parameters carried in the URL.

      By default, a URL does not carry parameters.

    5. Run the url-parameter mac-address format delimiter delimiter { normal | compact } command to set the MAC address format in the URL.

      By default, the MAC address format in a URL is XXXXXXXXXXXX.

    6. Run the parameter { start-mark parameter-value | assignment-mark parameter-value | isolate-mark parameter-value } * command to set the characters in the URL.

      By default, the start character is ?, assignment character is =, and delimiter is &.

    7. Run the quit command to return to the system view.

    If web pages are pushed in URL mode, this step can be skipped.

  2. Configure the Web push function.

    1. Run the aaa command to enter the AAA view.
    2. Run the domain domain-name command to create an AAA domain and enter the AAA domain view.

      The device has two default domains: default and default_admin. The default domain is used by common access users and the default_admin domain is used by administrators.

    3. Run the force-push { url-template template-name | url url-address } command to enable the forcible URL template or URL push function.

Updated: 2019-10-21

Document ID: EDOC1000178117

Views: 124124

Downloads: 59

Average rating:
This Document Applies to these Products
Related Version
Related Documents
Previous Next