R3166-R3206-HP High-End Firewalls Access Control Configuration Guide-6PW101

100
Figure 74 Device list
On the port group configuration page, click Add to enter the page for adding a port group, as shown
in Figure 75.
Perform the following configurations:
Type the port group name.
Select the configured IP address group. The IP address used by the user to access the network must
be within this IP address group.
Figure 75 Port group configuration
# Select Service Parameters > Validate System Configuration from the navigation tree to make the
configurations take effect.
2. Configure the firewall
Configure a RADIUS scheme
# Create a RADIUS scheme named rs1 and enter its view.
<Firewall> system-view
[Firewall] radius scheme rs1
# Set the server type for the RADIUS scheme. When using the IMC server, set the server type to extended.
[Firewall-radius-rs1] server-type extended
# Specify the primary authentication server and primary accounting server, and configure the keys for
communication with the servers.
[Firewall-radius-rs1] primary authentication 192.168.0.112
[Firewall-radius-rs1] primary accounting 192.168.0.112
[Firewall-radius-rs1] key authentication radius
[Firewall-radius-rs1] key accounting radius
# Specify that the ISP domain name should not be included in the username sent to the RADIUS server.