Configuration Guide WEB Authentication Configuration
Configuring network-related AAA
accounting method list (required for the
second generation web authentication)
By default, network-related AAA accounting method list
is not configured.
Configuring the accounting method list for
web authentication (required for the
second generation web authentication)
By default, the default method list is used.
Configuring the accounting update interval
for online users (required for the second
generation web authentication)
The default interval is 0 minute, namely no accounting
update is made.
Configuring the HTTP port for redirection
(required for the first and second
generation web authentication)
By default, the device intercepts HTTP messages with
destination port 80 from users.
Configuring the maximum HTTP sessions
of each unauthenticated user (required for
the first and second generation web
authentication)
By default, the maximum of HTTP sessions of each
unauthenticated user is 255.
Configuring the timeout for maintaining the
redirected session (required for the first
and second generation web authentication)
By default, the timeout for maintaining the redirected
session is 3 seconds.
Configuring the IP address that can be
accessed directly without authentication
(required for the first and second
generation web authentication)
By default, except the IP address of Portal Server, all
other IP addresses can only be accessed upon
successful authentication.
Configuring the interval to update the
information about authenticated users
By default, the information about online users is updated
every 180 seconds on the device.
Configuring the IP address scope free of
authentication-(required for the first and
second generation web authentication)
By default, no authentication-free IP address scope is
configured. All IP addresses can only access network
resources upon successful web authentication.
Configuring traffic detection (required for
the first and second generation web
authentication)
By default, traffic detection is disabled. If enabled, the
default detection interval will be 15 minutes, and the
default detection threshold is 0 byte.
Configuring the IP address scope free of
authentication-
By default, no authentication-free IP address scope is
configured. All IP addresses can only access network
resources upon successful web authentication.
Configuring traffic detection
By default, traffic detection is disabled. If enabled, the
default detection interval will be 15 minutes, and the
default detection threshold is 0 byte.
Configuring the Functional Switch of Web Authentication
The current software supports three web authentication mechanisms:
Ruijie first generation web authentication (default).