R2511-HP MSR Router Series Security Configuration Guide(V5)
76
[Router] interface ethernet 1/1
[Router-Ethernet1/1] portal server newpt method direct
[Router-Ethernet1/1] quit
Verifying the configuration
The user can initiate portal authentication by using the HP iNode client or by accessing a Web page. All
the initiated Web requests will be redirected to the portal authentication page at
http://10.1.1.1:8080/portal. Before passing portal authentication, the user can access only the
authentication page. After passing portal authentication, the user can access the Internet.
# After the user passes portal authentication, view the portal user information on the router.
[Router] display portal user interface ethernet 1/1
Index:19
State:ONLINE
SubState:NONE
ACL:NONE
Work-mode:stand-alone
MAC IP Vlan Interface
---------------------------------------------------------------------
0015-e9a6-7cfe 192.168.1.58 0 Ethernet1/1
On interface Ethernet1/1:total 1 user(s) matched, 1 listed.
# View the connection information on the router.
[Router] display connection
Index=20 ,Username=portal@dm1
MAC=00-15-E9-A6-7C-FE
IP=192.168.1.58
IPv6=N/A
Total 1 connection(s) matched.
RADIUS authentication and authorization for Telnet users by a
network device
The following matrix shows the feature and router compatibility:
Feature MSR900 MSR93X MSR20-1X MSR20 MSR30 MSR50 MSR1000
RADIUS
server
No No Yes Yes Yes No Yes
Network requirements
As shown in Figure 30, configure Router B as the RADIUS server to provide user authentication and
authorization on port 1645.
Configure Router A to use the RADIUS server for Telnet user authentication and authorization, and to
remove the domain name in a username sent to the server.
Set the shared keys for secure communication between the NAS and the RADIUS server to abc.










