Remote 802.1x authentication configuration example, Network requirements, Configuring the ap – H3C Technologies H3C WA3600 Series Access Points User Manual
Page 329
316
Remote 802.1X authentication configuration example
Network requirements
Perform remote 802.1X authentication on the client.
•
A RADIUS server (an iMC server for authentication, authorization, and accounting) is required. On
the RADIUS server, the client's username user and password dot1x, and the shared key expert have
been configured. The IP address of the RADIUS server is 10.18.1.88.
•
The IP address of the AP is 10.18.1.1. On the AP, configure the shared key as expert, and configure
the AP to remove the domain name of a username before sending it to the RADIUS server.
Figure 333 Network diagram
Configuring the AP
1.
Assign an IP address to the fat AP:
a.
Select Network > VLAN to create a VLAN on the fat AP.
b.
Select Device > Interface Management to assign an IP address to the VLAN interface.
2.
Configure a RADIUS scheme:
a.
Select Authentication > RADIUS from the navigation tree.
b.
Click Add.
c.
On the page that appears, add two servers in the RADIUS Server Configuration, specify the
key expert, enter 802.1x in the Scheme Name field, select the server type Extended, select
Without domain name from the Username Format list, and click Apply.