Logging Out Portal Users; Configuring The Control Mode For Portal User Packets - HP 12500 Series Configuration Manual

Routing
Table of Contents

Advertisement

users does not appear in the user synchronization packets within N consecutive synchronization
probe intervals (N is equal to the value of retries configured in the portal server user-sync
command), it considers that the user does not exist on the portal server and logs the user off.
To configure the portal user information synchronization function:
Step
1.
Enter system view.
2.
Configure the portal user
information synchronization
function.
The user information synchronization function requires that a portal server supports the portal user
heartbeat function (only the IMC portal server supports portal user heartbeat). To implement the portal
user synchronization function, you also need to configure the user heartbeat function on the portal server
and make sure the product of interval and retries is greater than or equal to the portal user heartbeat
interval. HP recommends configuring the interval to be greater than the portal user heartbeat interval
configured on the portal server.
For information of the users who are considered nonexistent on the portal server, the switch deletes the
information during the (N+1)th interval, where N is equal to the value of retries configured in the portal
server user-sync command.

Logging out portal users

Logging out a user terminates the authentication process for the user or removes the user from the
authenticated users list.
To log out users:
Step
1.
Enter system view.
2.
Log out users.
Configuring the control mode for portal user
packets
The switch can control portal user packets based on MAC addresses or based on both IP and MAC
addresses. In MAC control mode, the switch allows a packet to pass if the packet's MAC address is the
same as the portal user's MAC address. In IP+MAC control mode, the switch allows a packet to pass if
both the MAC and IP addresses of the packet are the same as those of the portal user.
In MAC control mode, the portal authentication mode for IPv4 users and that for IPv6 users must be the
same.
Command
system-view
portal server server-name
user-sync [ interval interval ] [ retry
retries ]
Command
system-view
portal delete-user { ipv4-address | all | interface interface-type
interface-number | ipv6 ipv6-address }
118
Remarks
N/A
Not configured by default.
The portal server specified in the
command must exist. This function
can take effect only when the
specified portal server is
referenced on the interface
connecting the users.

Advertisement

Table of Contents
loading

Table of Contents