beautypg.com

Figure 280, Table 172 – H3C Technologies H3C WX3000E Series Wireless Switches User Manual

Page 551

background image

530

Item Description

Auth Network IP
Network Mask

Specify the IP address and mask of the authentication subnet. This field is configurable
when you select the Layer3 mode (cross-subnet portal authentication).
By configuring an authentication subnet, you specify that only HTTP packets from users on
the authentication subnet can trigger portal authentication. If an unauthenticated user is

not on any authentication subnet, the access device discards all the user's HTTP packets

that do not match any portal-free rule.

IMPORTANT:

The authentication subnet in direct mode is any source IP address, and that in re-DHCP

mode is the private subnet to which the interface's private IP address belongs.

Authentication
Domain

Specify the authentication domain for Layer 3 portal users.
After you specify an authentication domain on a Layer 3 interface, the device will use the
authentication domain for authentication, authorization, and accounting (AAA) of the

portal users on the interface, ignoring the domain names carried in the usernames. You
can specify different authentication domains for different interfaces as needed.
The available authentication domains are those specified on the page you enter by
selecting Authentication > AAA from the navigation tree. For more information, see

"

Configuring AAA

."

Figure 559 Adding a portal server

Table 172 Configuration items

Item Description

Server Name

Enter a name for the remote portal server.

IP

Enter the IP address of the remote portal server.

Key

Enter the shared key to be used for communication between the device and the remote
portal server.

Port

Enter the port number of the remote portal server.

URL

Specify the URL for HTTP packets redirection, in the format http://ip-address. By default,
the IP address of the portal server is used in the URL.

IMPORTANT:

Redirection URL supports domain name resolution. However, you must configure a

portal-free rule and add the DNS server address into the portal-free address range.