F3726, F3211, F3174, R5135, R3816-HP Firewalls and UTM Devices Access Control Configuration Guide-6PW100

242
475BVerifying the configuration
The user can initiate portal authentication by using the HP iNode client or by accessing a Web page. All
the initiated Web requests will be redirected to the portal authentication page at
http://10.1.1.1:8080/portal. Before passing portal authentication, the user can access only the
authentication page. After passing portal authentication, the user can access the Internet.
# After the user passes portal authentication, view the portal user information on the firewall.
[Firewall] display portal user interface gigabitethernet 0/1
Index:19
State:ONLINE
SubState:NONE
ACL:NONE
Work-mode:stand-alone
MAC IP Vlan Interface
---------------------------------------------------------------------
0015-e9a6-7cfe 192.168.1.58 0 GigabitEthernet0/1
On interface GigabitEthernet0/1:total 1 user(s) matched, 1 listed.
# View the connection information on the firewall.
[Firewall] display connection
Index=20 ,Username=portal@dm1
MAC=00-15-E9-A6-7C-FE
IP=192.168.1.58
IPv6=N/A
Total 1 connection(s) matched.
79B
Configuring AAA in the Web interface
240BRecommended configuration procedure
Ste
p
Remarks
4. Use one of the following methods to
configure an AAA scheme:
{ Configuring local users
{ 762HConfiguring RADIUS schemes
{ 763HConfiguring HWTACACS schemes
Required.
Configure at least one scheme.
For information about configuring local users, see
"
764H
Configuring local users" or Getting Started Guide.
5. Configuring
AAA
methods for
ISP
domains.
765H
Configuring an ISP domain
Optional.
Create ISP domains and specify one of them as the default
ISP domain.
By default, there is an ISP domain named system, which is
the default ISP domain.
766H
Configuring authentication
methods for the ISP domain
Optional.
Configure authentication methods for various types of users.
By default, all types of users use local authentication.