WLAN V200R010C00 Typical Configuration Examples
Example for Configuring Guests to Obtain Passwords Through Mobile Phones to Pass Authentication Quickly
Guests can obtain passwords through mobile phones to connect to networks quickly.
Involved Products and Versions
Product Type |
Product Name |
Version |
---|---|---|
|
Agile Controller-Campus |
V100R002C00 |
Networking Requirements
- All guests must associate with the Wi-Fi network whose SSID is guest to connect to the Internet. Other SSIDs are not allowed.
- All guests can use their mobile phone number to obtain passwords to access the network. After guests send their requests to obtain passwords, passwords are sent to the guests through SMS messages.
- After the authentication succeeds, the web page requested by the guest before the authentication is displayed automatically.
Data Plan
Item |
Data |
Description |
---|---|---|
SM + SC (RADIUS server + Portal server) |
IP address: 172.18.1.1 |
- |
SMS server |
Message Sending Method SMSGW Enable distributed SC no Serial Port ID COM1 Country Code 86 Baud Rate 115200 Test Number 134xxxx5678 |
- |
Number of the ACL for guests' post-authentication domain |
3002 |
- |
SSID of the network to which guests associate with |
guest |
Configure this parameter on the AC. For details, see step 6 in Example for Configuring Portal Authentication (Including MAC Address-Prioritized Portal Authentication) for Wireless Users. |
Configuration Roadmap
- Configure the SMS server so that the system can send SMS messages properly.
- Configure guest account policies. This example uses the default policy "self-registration_obtaining passwords through mobile phones_8-hour validity period".
- Customize the authentication page. The authentication page is automatically displayed if an unauthenticated guest accesses the network.
- Configure a Portal page push rule to push the customized authentication page to guests.
- Add guest authorization results and authorization rules to assign access rights to guests after they are successfully authenticated.
Prerequisites
Portal authentication configurations have been completed on the AC/switch and the Agile Controller-Campus. For details, see configuration examples about Portal.
Procedure
- Enter https://172.18.1.1:8443 in the address box of a web browser to log in to the Service Manager.
- Configure the SMS server so that the
system can send SMS messages properly.
- Configure guest account policies. Choose
.
This example uses the default policy "Self-registration_password through phones_valid for 8 hours". If the default policy cannot satisfy requirements, you can modify it or create a new policy. Set the parameters marked in red rectangles according to the following figure.
- Customize the authentication page. The authentication
page is automatically displayed if an unauthenticated guest accesses
the network.
- Configure a Portal page push rule to push the customized
authentication page to guests.
- Add SSIDs to the Agile Controller-Campus for SSID-based user
authorization.
- Add an authorization result and rule
to allow guests to connect to the Internet after they are successfully
authenticated.
Verification
- A guest uses a mobile phone to connect to a Wi-Fi network. The guest selects the hotspot guest to connect to the Internet. The authentication page is pushed to the guest.
- The guest enters his or her mobile phone number and clicks Get Verification Code.
The authentication password is sent to the guest's mobile phone.
- The guest enters the verification code and clicks Log In. The web page requested by the guest before the authentication is displayed automatically.
- On the Service Manager, choose . The online information about the account is displayed.
- On the Service Manager, choose . The RADIUS authentication logs of the account are displayed.