EasyManuals Logo
Home>HP>Switch>3600 v2 Series

HP 3600 v2 Series Security Configuration Guide

HP 3600 v2 Series
398 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #155 background imageLoading...
Page #155 background image
144
NOTE:
• If you specify both a VLAN and an interface in a portal-free rule, the interface must belon
g
to the VLAN.
Otherwise, the rule does not take effect.
• You cannot configure two or more portal-free rules with the same filtering criteria. Otherwise, the system
prompts that the rule already exists.
• Regardless of whether portal authentication is enabled or not, you can only add or remove a portal-free
rule. You cannot modify it.
• A Layer 2 interface in an aggregation group cannot be specified as the source interface of a portal-free
rule, and the source interface of a portal-free rule cannot be added to an aggregation group.
Configuring an authentication source subnet
NOTE:
Only Layer 3 portal authentication supports this feature.
By configuring authentication source subnets, you specify that only HTTP packets from users on the
authentication source subnets can trigger portal authentication. If an unauthenticated user is not on any
authentication source subnet, the access device discards all the user’s HTTP packets that do not match
any portal-free rule.
Follow these steps to configure an authentication source subnet:
To do… Use the command…
Remarks
Enter system view system-view —
Enter interface view
interface interface-type
interface-number
—
Configure an authentication source
subnet
portal auth-network
network-address { mask-length |
mask }
Optional
By default, the authentication
source subnet is 0.0.0.0/0, which
means that users from any subnets
must pass portal authentication.
NOTE:
• Configuration of authentication source subnets applies to only cross-subnet authentication.
• In direct authentication mode, the authentication source subnet is 0.0.0.0/0.
• In re-DHCP authentication mode, the authentication source subnet of an interface is the subnet to which
the private IP address of the interface belongs.
• You can configure multiple authentication source subnets by executing the portal auth-network
command repeatedly.
Setting the maximum number of online portal users
You can use this feature to control the total number of online portal users in the system.
Follow these steps to set the maximum number of online portal users allowed in the system:

Table of Contents

Other manuals for HP 3600 v2 Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the HP 3600 v2 Series and is the answer not in the manual?

HP 3600 v2 Series Specifications

General IconGeneral
BrandHP
Model3600 v2 Series
CategorySwitch
LanguageEnglish

Related product manuals