User's Manual Part 2

58JadeOSUserManual
allowfailthrough Allowtrafficthatfailedauthentication
authserver
Distributeauthenticationserver
set
Set Role/Vlan rule
9.4.4ConfiguringAuthenticationWay
AuthenticationssupportedbyJadeOSarecaptiveportal,dot1x,mac,open,psk,wep,
andradiusproxy;usuallytheauthenticationwaywillspecifydefaultrole,whichis
theuserroleaftersuccessfullyauthentication.Thischapterwilldescribethecon
figurationforauthenticationwaybyusingwebportalasanexample.
Inportalauthentication,youneedtodefinearfc3576client,thenaprofilethatat
leastincluderadiusservergroupdefaultrolerfc3576client.Pleasereferto
chapter9.7formoreinformation.
Forexample
(JadeOS) (config)#aaa rfc-3576-client 119.6.200.203
(JadeOS) (RFC 3576 Client "119.6.200.203")#key 1234
(JadeOS) (RFC 3576 Client "119.6.200.203")#exit
(JadeOS) (config)#aaa authentication captive-portal web-portal
(JadeOS) (Portal Authentication Profile "web-portal)#server-group SG1
(JadeOS) (Portal Authentication Profile "web-portal)#default-role
postauth
(JadeOS) (Portal Authentication Profile "web-portal")#rfc-3576-client
119.6.200.203
CommandssupportedbyPortal:
Attribute Description
defaultrole Distributedefaultrole
rfc3576client
RFC3576client
servergroup
webradiusservergroupname
welcomepageurlid
TheurlIDofwelcomepage
9.4.5ConfiguringAAAProfi le
ToconfigureAAAprofile,usethefollowingsteps
Step1Createaaaaprofilenamed‘aaa’
(JadeOS) (config)#aaa profile aaa
Step2Specifytheauthenticationway
(JadeOS) (AAA profile "aaa")#authentication-portal web-portal
Step3Specifyuserolebeforeauthentication
(JadeOS) (AAA profile "aaa")#initial-role preauth