beautypg.com

Verifying the configuration – H3C Technologies H3C S6300 Series Switches User Manual

Page 139

background image

124

# Reference the portal Web server newpt on VLAN-interface 100.

[Switch–Vlan-interface100] portal apply web-server newpt

# Configure the BAS-IP as 2.2.2.1 for portal packets sent from VLAN-interface 100 to the portal
authentication server.

[Switch–Vlan-interface100] portal bas-ip 2.2.2.1

[Switch–Vlan-interface100] quit

Verifying the configuration

Verify that the portal configuration has taken effect.

[Switch] display portal interface vlan-interface 100

Portal information of Vlan-interface100

IPv4:

Portal status: Enabled

Authentication type: Direct

Portal Web server: newpt

Authentication domain: Not configured

Bas-ip: 2.2.2.1

User Detection: Not configured

Action for server detection:

Server type Server name Action

-- -- --

Layer3 source network:

IP address Mask

Destination authenticate subnet:

IP address Mask

IPv6:

Portal status: Disabled

Authentication type: Disabled

Portal Web server: Not configured

Authentication domain: Not configured

Bas-ipv6: Not configured

User detection: Not configured

Action for server detection:

Server type Server name Action

-- -- --

Layer3 source network:

IP address Prefix length

Destination authenticate subnet:

IP address Prefix length

Before a user performs portal authentication by using the H3C iNode client, the user can access only the
authentication page http://192.168.0.111:8080/portal. All Web requests the user initiates will be

redirected to the authentication page. If the user passes the authentication but fails the security check, the

user can access only the resources that match ACL 3000. After passing both the authentication and the

security check, the user can access Internet resources that match ACL 3001.
After the user passes authentication, you can use the following command to display information about

the portal user.