Nortel Networks 2300 Switch User Manual


 
28 Contents
NN47250-500 (320657-F Version 02.01)
Displaying session information for Web portal
Web-based AAA users . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 503
Using a custom login page . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 505
Copying and modifying the Web login page . . . . . . . . . . . . . . . . . . . . . . 506
Custom login page scenario . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 506
Using dynamic fields in Web-based AAA redirect URLs . . . . . . . . . . . . . . . . 509
Using an ACL other than portalacl . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 511
Configuring the Web portal Web-based AAA session timeout period . . . . . . 512
Web-based AAA session timeout period of 5 seconds is used. . . . . . . . . . . 512
Configuring the Web Portal Web-based AAA Logout Function . . . . . . . . . . . 513
Configuring last-resort access . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 513
Configuring last-resort access for wired authentication ports . . . . . . . . . . . . 516
Configuring AAA for users of third-party APs . . . . . . . . . . . . . . . . . . . . . . . . . . . 516
Authentication process for users of a third-party AP . . . . . . . . . . . . . . . . . . . 517
Requirements . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 518
Third-party AP requirements . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 518
WSS requirements . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 518
RADIUS server requirements . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 518
Configuring authentication for 802.1X users of a third-party AP
with tagged SSIDs . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 519
Configuring authentication for non-802.1X users of a third-party AP
with tagged SSIDs . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 521
Configuring access for any users of a non-tagged SSID . . . . . . . . . . . . . . . 522
Assigning authorization attributes . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 522
Assigning attributes to users and groups . . . . . . . . . . . . . . . . . . . . . . . . . . . 528
Assigning SSID default attributes to a service profile . . . . . . . . . . . . . . . . . . 529
Assigning a security ACL to a user or a group . . . . . . . . . . . . . . . . . . . . . . . 530
Assigning a security ACL locally . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 530
Assigning a security ACL on a RADIUS server . . . . . . . . . . . . . . . . . . . 531
Clearing a security ACL from a user or group . . . . . . . . . . . . . . . . . . . . 531
Assigning encryption types to wireless users . . . . . . . . . . . . . . . . . . . . . . . . 532
Assigning and clearing encryption types locally . . . . . . . . . . . . . . . . . . . 532
Assigning and clearing encryption types on a RADIUS server . . . . . . . . 533
Keeping users on the same VLAN even after roaming . . . . . . . . . . . . . . . . . 534
Overriding or adding attributes locally with a location policy . . . . . . . . . . . . . . . . 537
About the location policy . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 538