1-11
To do… Use the command… Remarks
Clear portal connection
statistics on a specified
interface or all interfaces
reset portal connection statistics
{all | interface interface-type
interface-number }
Available in user view
Clear portal server statistics on
a specified interface or all
interfaces
reset portal server statistics { all |
interface interface-type
interface-number }
Available in user view
Clear TCP spoofing statistics
reset portal tcp-cheat statistics
Available in user view
Portal Configuration Examples
Configuring Direct Portal Authentication
Network requirements
z The host is directly connected to the switch and the switch is configured for direct authentication.
The host is assigned with a public network IP address manually or automatically by a DHCP server.
Before portal authentication, users using the host can access only the portal server. After passing
portal authentication, they can access unrestricted Internet resources.
z A RADIUS server serves as the authentication/accounting server.
Figure 1-4 Configure direct portal authentication
RADIUS server
Switch
Host
2.2.2.2/24
Gateway:2.2.2.1/24
Vlan-int100
2.2.2.1/24
Vlan-int2
192.168.0.100/24
Portal server
192.168.0.111/24
192.168.0.112/24
Configuration procedure
You need to configure IP addresses for the devices as shown in Figure 1-4 and ensure that routes are
available between devices.
Configure the switch:
1) Configure a RADIUS scheme
# Create a RADIUS scheme named rs1 and enter its view.
<Switch> system-view
[Switch] radius scheme rs1