Access Security Guide K/KA/KB.15.15

Configuring a DNS Server for Enhanced web authentication
If you use a host name to configure access to a web server on which customized login web pages
are stored, you must first configure a Domain Name System (DNS) server to resolve the web server's
host name into a target IP address. (If you specify an IP address to configure a web server, it is
not necessary to configure a DNS server.)
For example, the following web server host name requires the configuration of a DNS server to
resolve the host (webserver1) and domain name (accounts.hp.com) into a target IP address.
To configure switch access to a DNS server to support the use of a host name in the aaa
port-access web-based ewa server command, see the “Troubleshooting” chapter in the
Management and Configuration Guide for your switch.
Operating notes and guidelines for implementing customized web-Auth pages
Customized web authentication pages are configured per switch, so that each web-Auth
enabled port displays the same customized pages at client login.
The customized web pages you create can be hosted on up to three web servers in your
network. Implementing multiple web servers provides redundancy in case access to any of
the other servers fail.
To configure a web server on your network, follow the instructions in the documentation
provided with the server.
Before you enable custom web authentication pages, you should:
Determine the IP address or host name of the web server(s) that will host your custom
pages.
Determine the path on the server(s) where the HTML files (including all graphics) used for
the login pages are stored.
Configure and start the web server(s).
Create the customized web pages as described in “Customizing HTML templates
(page 91), and store them in the document path on the designated servers.
Test that they are accessible at the designated URL(s).
Customizable HTML templates
To help you create your own set of HTML files, use the templates found on the download page for
'K' software.
User Login page (index.html)
Figure 81 User Login page
The index.html file is the first login page displayed, in which a client requesting access to the
network enters a username and password. In the index.html Template file, you can customize
any part of the source code except for the form that processes the username and password entered
by a client.
110 Web-based and MAC authentication