Specifications

set authentication web
Chapter 9
AAA Commands
215
set authentication web
Configures an authentication rule that allows a user to log into the network using a
web page served by the UNIVERGE WL Controller. The rule can be activated if
the user is not otherwise granted or denied access by 802.1X, or granted access by
MAC authentication.
Syntax
set authentication web {ssid ssid-name} user-glob
method1 [method2] [method3] [method4]
Defaults
By default, authentication is unconfigured for all clients on the
UNIVERGE WL Controller. Connection, authorization, and accounting are also
disabled for these users.
Access
Enabled.
Usage
You can configure different authentication methods for different groups
of users by “globbing.” (For details, see “User Globs” on page 9.)
user-glob A single user or a set of users.
Specify a username, use the double-asterisk wildcard character
(**) to specify all usernames, or use the single-asterisk wildcard
character (*) to specify a set of usernames up to or following the
first delimiter character—either an at sign (@) or a period (.).
(For details, see “User Globs” on page 9.)
ssid
ssid-name
SSID name to which this authentication rule applies. To apply the
rule to all SSIDs, type any.
method1
method2
method3
method4
At least one and up to four methods that UNIVERGE WL Control
System uses to handle authentication. Specify one or more of the
following methods in priority order. UNIVERGE WL Control
System applies multiple methods in the order you enter them.
A method can be one of the following:
local—Uses the local database of usernames and user groups
on the UNIVERGE WL Controller for authentication.
server-group-name—Uses the defined group of RADIUS
servers for authentication. You can enter up to four names of
existing RADIUS server groups as methods.
RADIUS servers cannot be used with the EAP-TLS protocol.
For more information, see “Usage.”