Portal configuration task list – H3C Technologies H3C S6300 Series Switches User Manual
Page 109
94
8.
After receiving the authentication success packet, the client obtains a public IP address through
DHCP. The client then notifies the portal authentication server that it has a public IP address.
9.
The portal authentication server notifies the access device that the client has obtained a public IP
address.
10.
The access device detects the IP change of the client through DHCP and then notifies the portal
authentication server that it has detected an IP change of the client IP.
11.
After receiving the IP change notification packets sent by the client and the access device, the
portal authentication server notifies the client of login success.
12.
The portal authentication server sends an IP change acknowledgement packet to the access
device.
Step 13 and step 14 are for extended portal functions.
13.
The client and the security policy server exchanges security check information. The security policy
server detects whether or not the user host installs anti-virus software, virus definition file,
unauthorized software, and operating system patches.
14.
The security policy server authorizes the user to access certain network resources based on the
check result. The access device saves the authorization information and uses it to control access of
the user.
Portal configuration task list
Tasks at a glance
Configuring a portal authentication server
Configuring a portal Web server
Enabling portal authentication on an interface
Referencing a portal Web server for an interface
(Optional.)
Controlling portal user access
•
Configuring a portal-free rule
•
Configuring an authentication source subnet
•
Configuring an authentication destination subnet
•
Setting the maximum number of portal users
•
Specifying a portal authentication domain
(Optional.)
Configuring portal detection functions
•
Configuring online detection of portal users
•
Configuring portal authentication server detection
•
Configuring portal Web server detection
•
Configuring portal user synchronization
(Optional.)
Configuring the portal fail-permit function
(Optional.)
Configuring BAS-IP for unsolicited portal packets sent to the portal authentication server
(Optional.)
(Optional.)