Verification
To confirm that the configuration is working properly, perform these tasks:
•
Verifying Firewall Filters on Interfaces with Multiple Supplicants on page 2602
Verifying Firewall Filters on Interfaces with Multiple Supplicants
Purpose
Verify that firewall filters are functioning on the interface with multiple supplicants.
Action
Check the results with one user authenticated on the interface. In this case, the user
is authenticated on
ge-0/0/2
:
1.
user@switch>
show dot1x firewall
Filter: dot1x_ge-0/0/2
Counters
counter1_dot1x_ge-0/0/2_user1 100
2.
When a second user, User2, is authenticated on the same interface,
ge-0/0/2
, you
can verify that the filter includes the results for both of the users authenticated on the
interface:
user@switch>
show dot1x firewall
Filter: dot1x-filter-ge-0/0/0
Counters
counter1_dot1x_ge-0/0/2_user1 100
counter1_dot1x_ge-0/0/2_user2 400
Meaning
The results displayed by the
show dot1x firewall
command output reflect the dynamic
filter created with the authentication of each new user. User1 accessed the file server
located at the specified destination address 100 times, while User2 accessed the same
file server 400 times.
Related
Documentation
Example: Applying a Firewall Filter to 802.1X-Authenticated Supplicants Using RADIUS
Server Attributes on an EX Series Switch on page 2574
•
•
Example: Configuring Firewall Filters for Port, VLAN, and Router Traffic on EX Series
Switches on page 3039
•
Filtering 802.1X Supplicants Using RADIUS Server Attributes on page 2618
Example: Setting Up Captive Portal Authentication on an EX Series Switch
You can set up captive portal authentication (hereafter referred to as captive portal) on
a switch to redirect Web browser requests to a login page that requires the user to input
a username and password. Upon successful authentication, the user is allowed to continue
with the original page request and subsequent access to the network.
Copyright © 2010, Juniper Networks, Inc.
2602
Complete Software Guide for Junos
®
OS for EX Series Ethernet Switches, Release 10.3
Summary of Contents for JUNOS OS 10.3 - SOFTWARE
Page 325: ...CHAPTER 17 Operational Mode Commands for System Setup 229 Copyright 2010 Juniper Networks Inc ...
Page 1323: ...CHAPTER 56 Operational Mode Commands for Interfaces 1227 Copyright 2010 Juniper Networks Inc ...
Page 2841: ...CHAPTER 86 Operational Commands for 802 1X 2745 Copyright 2010 Juniper Networks Inc ...
Page 3367: ...CHAPTER 113 Operational Mode Commands for CoS 3271 Copyright 2010 Juniper Networks Inc ...
Page 3435: ...CHAPTER 120 Operational Mode Commands for PoE 3339 Copyright 2010 Juniper Networks Inc ...
Page 3529: ...CHAPTER 126 Operational Mode Commands for MPLS 3433 Copyright 2010 Juniper Networks Inc ...