beautypg.com

H3C Technologies H3C SecPath F1000-E User Manual

Page 38

background image

37

Figure 20 Add a port group


# Select Service Parameters > Validate System Configuration from the navigation tree to
make the above configurations take effect.

Step2

Configure Device

Configure a RADIUS scheme

# Create RADIUS scheme rs1 and enter its view.

system-view

[Device] radius scheme rs1

# Configure the server type for the RADIUS scheme. When using the iMC server, you need to configure
the RADIUS server type as extended.

[Device-radius-rs1] server-type extended

# Specify the primary authentication server and primary accounting server, and configure the keys for
communication with the servers.

[Device-radius-rs1] primary authentication 192.168.0.112

[Device-radius-rs1] primary accounting 192.168.0.112

[Device-radius-rs1] key authentication radius

[Device-radius-rs1] key accounting radius

# Configure the access device to not carry the ISP domain name in the username sent to the RADIUS
server.

[Device-radius-rs1] user-name-format without-domain

[Device-radius-rs1] quit

Configure an authentication domain

# Create ISP domain dm1 and enter its view.

[Device] domain dm1

# Configure the ISP domain to use RADIUS scheme rs1.

[Device-isp-dm1] authentication portal radius-scheme rs1

[Device-isp-dm1] authorization portal radius-scheme rs1

[Device-isp-dm1] accounting portal radius-scheme rs1

[Device-isp-dm1] quit