69
# Create a RADIUS scheme named
rs1
and enter its view.
<Router> system-view
[Router] radius scheme rs1
# Set the server type for the RADIUS scheme. When using the iMC server, set the server type to
extended
.
[Router-radius-rs1] server-type extended
# Specify the primary authentication server and primary accounting server, and configure the keys for
communication with the servers.
[Router-radius-rs1] primary authentication 10.1.1.1
[Router-radius-rs1] primary accounting 10.1.1.1
[Router-radius-rs1] key authentication expert
[Router-radius-rs1] key accounting expert
# Specify the scheme to include the domain names in usernames to be sent to the RADIUS server.
[Router-radius-rs1] user-name-format with-domain
[Router-radius-rs1] quit
•
Configure an authentication domain.
# Create an ISP domain named
dm1
and enter its view.
[Router] domain dm1
# Configure the ISP domain to use RADIUS scheme
rs1
.
[Router-isp-dm1] authentication portal radius-scheme rs1
[Router-isp-dm1] authorization portal radius-scheme rs1
[Router-isp-dm1] accounting portal radius-scheme rs1
[Router-isp-dm1] quit
# Configure
dm1
as the default ISP domain for all users. Then, if a user enters a username without any
ISP domain at login, the authentication and accounting methods of the default domain are used for the
user.
[Router] domain default enable dm1
•
Configure portal authentication.
# Configure the portal server.
[Router] portal server newpt ip 10.1.1.1 key portal port 50100 url
http://10.1.1.1:8080/portal
# Enable portal authentication on the interface connecting the host.
[Router] interface gigabitethernet 1/0/1
[Router–GigabitEthernet1/0/1] portal server newpt method direct
[Router–GigabitEthernet1/0/1] quit
4.
Verify the configuration.
The user can initiate portal authentication by using the HP iNode client or by accessing a webpage. All
the initiated web requests are redirected to the portal authentication page at
http://10.1.1.1:8080/portal. Before passing portal authentication, the user can access only the
authentication page. After passing portal authentication, the user can access the Internet.