R3303-HP 6600/HSR6600 Routers Security Configuration Guide

145
Task Command
Remarks
Clear portal server statistics on a
specific interface or all interfaces.
reset portal server statistics { all |
interface interface-type
interface-number }
Available in user view.
Clear TCP spoofing statistics. reset portal tcp-cheat statistics Available in user view.
Portal configuration examples
Configuring direct portal authentication
Network requirements
As shown in Figure 51, the host is assigned with a public network IP address either manually or through
DHCP.
Configure the router to perform direct portal authentication for users on the host. Before a user passes
portal authentication, the user can access only the portal server. After passing portal authentication, the
user can access Internet resources.
Use a RADIUS server as the authentication/authorization server.
Figure 51 Network diagram
Configuration prerequisites
Configure IP addresses for the host, router, and servers as shown in Figure 51 and make sure that they
can reach each other.
Configure the RADIUS server properly to provide authentication/authorization functions for users.
Configuring the portal server
This example assumes that the portal server runs on IMC PLAT 5.1 SP1 (E0202P05) and IMC UAM 5.1
(E0301).
1. Configure the portal server:
a. Log in to IMC and select the Service tab.
b. Select User Access Manager > Portal Service > Server from the navigation tree to enter the
portal server configuration page, as shown in Figure 52.
c. Conf
igure the portal server parameters as needed. This example uses the default settings.
RouterHost
2.2.2.2/24
Gateway : 2.2.2.1/24
GE3/0/2
2.2.2.1/24
GE3/0/1
192.168.0.100/24
Portal server
192.168.0.111/24
RADIUS server
192.168.0.112/24