xStack
®
DGS-3600 Series Layer 3 Managed Gigabit Ethernet Switch
t configured properly,
e authentication VLAN must provide a DHCP server or a DHCP
gured to access a DNS server to improve CPU performance, and
ds to
areful when setting filter functions for the target VLAN, so that these HTTP packets are not denied by the
abled. If not, the user will be prompted
the appropriate
LAN, before enabling the Web-based Access Control on the Switch.
To view this window, click
Security > Web-based Access Control (WAC) > WAC Global Settings
, as shown below:
Conditions and Limitations
1.
The subnet of the authentication VLAN’s IP interface must be the same as that of the client. If no
the authentication will be permanently denied by the authenticator. It cannot be a Guest VLAN.
2.
If the client is utilizing DHCP to attain an IP address, th
relay function so that client may obtain an IP address.
3.
The authentication VLAN of this function must be confi
allow the processing of DNS, UDP and HTTP packets.
4.
Certain functions exist on the Switch that will filter HTTP packets, such as the Access Profile function. The user nee
be very c
Switch.
5.
The Redirection Path must be set before the Web-based Access Control can be en
with an error message and the Web-based Access Control will not be enabled.
6.
If a RADIUS server is to be used for authentication, the user must first establish a RADIUS Server with
parameters, including the target V
WAC Global Settings
This window is used to enable and configure the Web-based Access Control Global State on the Switch.
w
e Switch, complete the following fields:
Figure 7- 34. WAC Global Settings windo
To set the Web-based Access Control for th
Parameter Description
WAC Global Settings
371