HP (Hewlett-Packard) MSM7XX Switch User Manual


 
Public/guest network access
Global access control settings
Access control parameter definitions
User authentication
These settings apply to VSCs that have access control enabled.
Allow access if authentication timed out
Enable this option to give users free access to the public access network if authentication
services configured for a VSC are unavailable. Once the authentication service is available
again, free user sessions remain active until the user logs out.
For example, if a user is connected to a VSC configured for HTML-based authentication using
a RADIUS server, and the RADIUS server is down, the user will be granted free access to the
network using the settings from the default user profile.
Note This feature does not work with client stations configured to use 802.1X or WPA.
Add idle-timeout to RADIUS accounting session-time
When enabled, the service controller includes the idle time-out in the total session time for a
user when reporting to a RADIUS server. To remove the idle time-out from the total session
time, disable this option.
Automatically reauthenticate HTML-based users for up to
When this option is enabled, you can specify the amount of time that the service controller
will remember the login credentials for an HTML-based user after they log out. If the user
reconnects to the network before this timeout expires, they are automatically logged in, and
instead of being redirected to the Login page, they are redirect to the Welcome-back page.
For this feature to work, users must have successfully been logged in at least once via HTML
and must have the same IP address and MAC address as their initial login.
To support this functionality, the DHCP server on the service controller will attempt to
reserve assigned DCHP addresses even after their lease time has expired. As long as free
addresses remain in the DHCP address pool, the expired address will not be reassigned to a
new user.
Note The service controller remembers login credentials even if restarted for administrative
reasons.
Reauthenticate users on location change
When this option is enabled, the service controller will automatically reauthenticate users
when they switch to:
a wireless cell with a different SSID
a different VLAN ID on the same VSC
an AP with a different MAC address
an AP with a different group name
a different wireless mode.
8-30