H3C Technologies H3C S3100V2 Series Switches User Manual
Page 56

48
[SwitchB] domain domain2
[SwitchB-isp-domian2] authentication lan-access radius-scheme scheme2
[SwitchB-isp-domian2] authorization lan-access radius-scheme scheme2
[SwitchB-isp-domian2] accounting lan-access radius-scheme scheme2
[SwitchB-isp-domian2] quit
[SwitchB] domain default enable domain2
# Globally enable 802.1X and then enable it on Ethernet 1/0/2 and Ethernet 1/0/3 respectively.
[SwitchB] dot1x
[SwitchB] interface ethernet 1/0/2
[SwitchB-Ethernet1/0/2] dot1x
[SwitchB-Ethernet1/0/2] quit
[SwitchB] interface ethernet 1/0/3
[SwitchB-Ethernet1/0/3] dot1x
[SwitchB-Ethernet1/0/3] quit
4.
Configure the RADIUS server
On the RADIUS server, configure the parameters related to Switch A and Switch B. For more information,
see the configuration guide of the RADIUS server.
5.
Verify the configuration
After the configurations, the two multicast sources and hosts initiate 802.1X authentication. After passing
authentication, Source 1 sends multicast flows to 224.1.1.1 and Source 2 sends multicast flows to
224.1.1.2; Host A sends messages to join multicast groups 224.1.1.1 and 224.1.1.2. Use the display
igmp-snooping group command to display information about IGMP snooping groups. For example:
# Display the information of the IGMP snooping groups in VLAN 100 on Switch B.
[SwitchB] display igmp-snooping group vlan 100 verbose
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Port flags: D-Dynamic port, S-Static port, C-Copy port
Subvlan flags: R-Real VLAN, C-Copy VLAN
Vlan(id):100.
Total 1 IP Group(s).
Total 1 IP Source(s).
Total 1 MAC Group(s).
Router port(s):total 1 port.
Eth1/0/1 (D) ( 00:01:30 )
IP group(s):the following ip group(s) match to one mac group.
IP group address:224.1.1.1
(0.0.0.0, 224.1.1.1):
Attribute: Host Port
Host port(s):total 1 port.
Eth1/0/3 (D) ( 00:04:10 )
MAC group(s):
MAC group address:0100-5e01-0101
Host port(s):total 1 port.
Eth1/0/3