H3C S7500E Series Ethernet Switches Operation Manual
Operation Manual – Portal
H3C S7500E Series Ethernet Switches Chapter 1 Portal Configuration
1-2
z Security authentication mechanism: The security authentication mechanism
works after the identity authentication process to check that the required anti-virus
software, virus definition updates and OS patches are installed, and no
unauthorized software is installed on the terminal of a user.
z Resource access limit: A user passing identity authentication can access only
network resources like the anti-virus server or OS patch server, which are called
the restricted resources. Only users passing security authentication can access
more network resources, which are called the unrestricted resources.
1.1.3 Portal System Components
As shown in Figure 1-1, a typical portal system consists of five basic components:
authentication client, access device, portal server, authentication/accounting server,
and security policy server.
Figure 1-1 Portal system components
I. Authentication client
Host of a user to be authenticated, which is running the Hypertext Transfer Protocol
(HTTP), the Secure HTTP (HTTPS) protocol, or the portal client software. To support
EAD, the host must run the portal client software supporting EAD.
II. Access device
Device for broadband access. It can be a switch or a router that provides three
functions:
z Before authentication, redirecting all HTTP requests from a user to the portal
server if the user uses IE browser to access Internet, or returning the IP address
and port of the portal server to the user if the user uses portal client to establish a
portal connection.