User's Manual Part 2
58JadeOSUserManual
allow‐fail‐through Allowtrafficthatfailedauthentication
auth‐server
Distributeauthenticationserver
set
Set Role/Vlan rule
9.4.4ConfiguringAuthenticationWay
AuthenticationssupportedbyJadeOSarecaptive‐portal,dot1x,mac,open,psk,wep,
andradius‐proxy;usuallytheauthenticationwaywillspecifydefault‐role,whichis
theuserroleaftersuccessfullyauthentication.Thischapterwilldescribethecon‐
figurationforauthenticationwaybyusingwebportalasanexample.
Inportalauthentication,youneedtodefinearfc‐3576‐client,thenaprofilethatat
leastincluderadiusservergroup、default‐role、rfc‐3576‐client.Pleasereferto
chapter9.7formoreinformation.
Forexample:
(JadeOS) (config)#aaa rfc-3576-client 119.6.200.203
(JadeOS) (RFC 3576 Client "119.6.200.203")#key 1234
(JadeOS) (RFC 3576 Client "119.6.200.203")#exit
(JadeOS) (config)#aaa authentication captive-portal web-portal
(JadeOS) (Portal Authentication Profile "web-portal)#server-group SG1
(JadeOS) (Portal Authentication Profile "web-portal)#default-role
postauth
(JadeOS) (Portal Authentication Profile "web-portal")#rfc-3576-client
119.6.200.203
CommandssupportedbyPortal:
Attribute Description
default‐role Distributedefaultrole
rfc‐3576‐client
RFC‐3576client
server‐group
webradiusservergroupname
welcome‐page‐url‐id
TheurlIDofwelcomepage
9.4.5ConfiguringAAAProfi le
ToconfigureAAAprofile,usethefollowingsteps:
Step1Createaaaaprofilenamed‘aaa’
(JadeOS) (config)#aaa profile aaa
Step2Specifytheauthenticationway
(JadeOS) (AAA profile "aaa")#authentication-portal web-portal
Step3Specifyuserolebeforeauthentication
(JadeOS) (AAA profile "aaa")#initial-role preauth