beautypg.com

Configuring re-dhcp portal authentication, Network requirements – H3C Technologies H3C WX3000E Series Wireless Switches User Manual

Page 198

background image

184

[AC-isp-dm1] quit

3.

Configure portal authentication:
# Configure the portal server as follows:

{

Name: newpt

{

IP address: 192.168.0.111

{

Key: portal

{

Port number: 50100

{

URL: http://192.168.0.111/portal

[AC] portal server newpt ip 192.168.0.111 key portal port 50100 url

http://192.168.0.111/portal

# On the interface connected to the client, specify the authentication domain dm1 for portal users
and enable portal authentication.

[AC] interface vlan-interface 1

[AC–Vlan-interface1] portal domain dm1

[AC–Vlan-interface1] portal server newpt method direct

[AC] quit

Configuring re-DHCP portal authentication

Network requirements

As shown in

Figure 86

, the wireless user (Client) belongs to VLAN 10 and AP belongs to VLAN 3.

The AC performs re-DHCP authentication for wireless users. The client obtains an IP address from the

DHCP server. Before portal authentication, the DHCP server assigns a private IP address to the client.
After the client passes portal authentication, it gets a public IP address from the DHCP server and can

access Internet resources.
Use a RADIUS server as the authentication/accounting server. On the IMC, specify the internal subnet as

the authentication subnet.

Figure 86 Network diagram

AC

Vlan-int10

20.20.20.1/24

10.0.0.1/24sub

Vlan-int2
192.168.0.100/24

L2 switch

AP

Client

automatically obtains an IP address

Portal server

192.168.0.111/24

DHCP server

192.168.0.112/24

RADIUS server

192.168.0.113/24