User's Manual
Virtual Network configuration
hwc_vnsconfiguration.fm
Authentication for a VNS
A31003-W1050-U100-2-7619
, March 2008
186 HiPath Wireless Controller, Access Points and Convergence Software V5 R1 , C20/C2400 User Guide
If there is an authentication server configured for this VNS, the external
Captive Portal page on the external authentication server will send the
request back to the HiPath Wireless Controller to allow the HiPath Wireless
Controller to continue with the RADIUS authentication and filtering.
In the Shared Secret box, type the password common to both the HiPath
Wireless Controller and the external Web server if you want to encrypt the
information passed between the HiPath Wireless Controller and the external
Web server.
8. In the Redirection URL box, type the URL to which the wireless device user
will be directed to after authentication.
9. To save your changes, click Save.
Note: You must add a filtering rule to the non-authenticated filter that allows
access to the External Captive Portal site. For more information, see Section
5.6, “Filtering for a VNS”, on page 154.
6.6.3 Defining authentication for a VNS for AAA
If network assignment is AAA with 802.1x authentication, the wireless device
must successfully complete the user authentication verification prior to being
granted network access. This enforcement is performed by both the user's client
and the AP. The wireless device's client utility must support 802.1x. The user's
EAP packets request for network access along with login identification or a user
profile is forwarded by the HiPath Wireless Controller to a RADIUS server.
Note: In order to use WPA with 802.1x authentication, network assignment must
be AAA.
To define authentication by AAA (802.1x):
1. From the main menu, click Virtual Network Configuration. The Virtual
Network Configuration page is displayed.
2. In the left pane Virtual Networks list, click the VNS you want to set up
authentication by AAA for. The Topology tab is displayed.
3. Click the Auth & Acct tab. On the Auth & Acct tab, there are three options:
•Auth – Use to define authentication servers.
•MAC – Use to define servers for MAC-based authentication.
• Acct – Use to define accounting servers.