323
Figure 316 Configuring the accounting method for the ISP domain
14. Click Apply.
A configuration progress dialog box appears.
15. After the configuration process is complete, click Close.
ACL assignment configuration example
Network requirements
As shown in Figure 317, the host at 192.168.1.10 connects to port GigabitEthernet 1/0/1 of the network
access device.
Perform 802.1X authentication on the port. Use the RADIUS server at 10.1.1.1 as the authentication and
authorization server and the RADIUS server at 10.1.1.2 as the accounting server. Assign an ACL to
GigabitEthernet 1/0/1 to deny the access of 802.1X users to the FTP server at 10.0.0.1/24.
Figure 317 Network diagram
Configuration prerequisites
Configure the IP addresses of the interfaces. (Details not shown.)
Configuring a RADIUS scheme
1. From the navigation tree, select Authentication > RADIUS.
Internet
Switch
Host
Authentication servers
(RADIUS server cluster)
192.168.1.10
Vlan-int2
192.168.1.1/24
FTP server
10.0.0.1
10.1.1.1
10.1.1.2
GE1/0/1