beautypg.com

Configuring combined authentication – H3C Technologies H3C WX3000E Series Wireless Switches User Manual

Page 931

background image

910

Item Description

Authentication Mode

Select an authentication mode for AD authentication. Options include Password,
Password+Certificate, and Certificate.

Server Recovery Time Set the interval at which the system checks whether the failed AD server recovers.

Admin Username

Set an administrator account. It must be a user account that has the directory search
right in the User directory in the AD domain.

Password

Set a password for the administrator account, and enter the password again to confirm
the password.

Confirm Password

Username Format

Set the username format used to log in to the AD server. Options include Without the
AD domain name, With the AD domain name, and Login name.

Configuring combined authentication

A combination authentication method can combine any two of the four authentication methods (local

authentication, RADIUS authentication, LDAP authentication, and AD authentication) in any order. With

combined authentication configured, the system authenticates a user twice by using the two specified
authentication methods. You can specify which method is used first, and specify whether to ask for a

password during the second authentication.
Which resources are available for a user who has passed a combined authentication and the online

username used are both determined by the first authentication. When the user accesses single login
resources, the system takes the password used in the first authentication as the login password.

1.

Select SSL VPN > Configure AuthN Policy from the navigation tree.

2.

Click the Combined Authentication tab.
The combined authentication configuration page appears, as shown in

Figure 695

.

Figure 974 Combined authentication

3.

Configure the combined authentication as described in

Table 299

.

4.

Click Apply.

Table 299 Configuration items

Item Description

Enable combined
authentication

Select this item to enable combined authentication.

First-Time
Authentication
Method

Select an authentication method as the first-time authentication method.