Configuring Re-Dhcp Portal Authentication With Extended Functions - HP 12500 Series Configuration Manual

Routing
Table of Contents

Advertisement

Key: portal, in plain text
Port number: 50100
URL: http://192.168.0.1 1 1:8080/portal
[Switch] portal server newpt ip 192.168.0.111 key simple portal port 50100 url
http://192.168.0.111:8080/portal
# Enable portal authentication on the interface connecting the host.
[Switch] interface vlan-interface 100
[Switch–Vlan-interface100] portal server newpt method direct
[Switch–Vlan-interface100] quit
Configuring re-DHCP portal authentication with extended
functions
Network requirements
As shown in
perform re-DHCP extended portal authentication for users on the host. Use a RADIUS server serves as the
authentication/accounting server.
Before a user passes portal authentication, the DHCP server assigns a private IP address to the host. After
the user passes portal authentication, the DHCP server assigns a public IP address to the host.
If a user passes identity authentication but fails security check, the user can access only subnet
192.168.0.0/24. After the user passes security check, the user can access Internet resources.
Figure 48 Network diagram
Host
automatically obtains
an IP address
Configuration prerequisites and guidelines
Configure IP addresses for the host, switch, and servers as shown in
can reach each other.
Configure a public address pool (20.20.20.0/24, in this example) and a private address pool
(10.0.0.0/24, in this example) on the DHCP server. (Details not shown.)
Configure the switch as a DHCP relay agent and configure a primary IP address (a public IP
address) and a secondary IP address (a private IP address) for the portal-enabled interface. For
DHCP relay configuration information, see Layer 3—IP Services Configuration Guide.
Figure
48, the host obtains an IP address from the DHCP server. Configure the switch to
Vlan-int100
20.20.20.1/24
Vlan-int2
10.0.0.1/24 sub
192.168.0.100/24
Switch
Portal server
192.168.0.111/24
Security policy server
192.168.0.114/24
131
DHCP server
192.168.0.112/24
RADIUS server
192.168.0.113/24
Figure 48
and make sure they

Advertisement

Table of Contents
loading

Table of Contents