Configuration Guide WEB Authentication Configuration
1. As the IP address of Portal Server can be accessed directly, if a user enters the
homepage address of the server in the address bar of a browser, the user will be able to
access this homepage without redirection or download the resources on this page. However,
without redirection, such access will lack certain security parameters required between the
access device and authentication server (the security parameters will be added into the
redirected URL during the redirection), thus leading to the failure of user authentication.
Therefore, to proceed with authentication, do not access the homepage of server directly.
2. The homepage parameter must be configured when portal encryption key is configured.
Otherwise, redirection may fail. If encryption key is not configured, the homepage
parameter is optional. If the homepage parameter is not configured, the IP address of the
Portal server is used as the redirected URL.
Configuring the Communication Key Used Between Device and Portal Server
The user information exchanged between Portal Server and the access device must be encrypted to
enhance security. Therefore, to successfully apply the first generation web authentication, you have to
configure the communication key used between the device and the authentication server.
By default, the communication key used between the device and authentication server is not configured.
The configuration steps are shown below:
To remove the communication key configured, execute the no web-auth portal-key command in the
global configuration mode.
Configuration example:
# Configure the communication key used between the device and Portal Server as web-auth.
Ruijie# configure terminal
Enter configuration commands, one per line. End with CNTL/Z.
Ruijie(config)# web-auth portal key web-auth
Ruijie(config)# show running-config
Configuring the SNMP Parameters Used Between Device and Portal Server
According to the procedures of the first generation web authentication, SNMP protocol is required
between the Portal Server and the access device to control the login and logout of users. Therefore, to