User's Manual

Table Of Contents
127
Users Manual of CS-6306R
RADIUS server does not respond.
The command login authentication admins specifies the method list admins as the login authentication
method.
Web Authentication Configuration 6.3
The section describes the concept of Web authentication and configuration and usage of the Web
authentication.
6.3.1 Overview
6.3.1.1 Web Authentication
The Web authentication of the switch is a connection control mode as PPPoE and 802.1x. When you use the
Web authentication, the login and logout operations can be successfully performed through the interaction of
the browser and the builtin portal server of the switch. During the operations of login and logout, no other
client software need be
installed.
1. Device role
The roles that the network devices take during the Web authentication are shown in Figure 6-2:
Client: It is ausercomputer that accesses network through the switch. The user computer need be
configured the network browser, the function of DHCP client and the function to originate DNS query.
DHCP server: It is to distribute the IP address for users.
AAA server: It is to save user right information and to charge users for their network access.
Switch: It is a switch having Web authentication. It is to control the access right of users and works as an
agent between users and AAA server.
Figure 6-2Web authentication network
2. Authentication flow
According to different configuration strategies, the Web authentication flow of the switch may relate to
protocols such as DHCP and DNS. Its typical flow is shown in Figure 3-2. The Web authentication flow
generally contains the following steps:
(1) The DHCP server sends a DHCP confirmation request to a user through the switch after the user
originates the process of DHCP address distribution. The switch then identifies and records the user.
COL-
ACT-
STA-
1 2 3 4 5 6 7 8 9101112
HS1 HS2 O K1 OK2 PS
CONSOLE
swi t ch
AAA s er ver
( RADI US)
cl i ent
cl i ent
DHCP s e r v e r