Preparation for web-based authentication
Procedure
- If you have not already done so, configure a local user name and password pair on the switch.
- Identify or create a redirect URL for use by authenticated clients. Hewlett Packard Enterprise recommends that you provide a redirect URL when using web authentication. If a redirect URL is not specified, web browser behavior following authentication can not be acceptable.
- If you plan to use multiple VLANs with web authentication, ensure that these VLANs are configured on the switch and that the appropriate port assignments have been made. Confirm that the VLAN used by authorized clients can access the redirect URL.
- Ping the switch console interface to ensure that the switch can communicate with the RADIUS server you have configured to support web-based authentication on the switch.
- Configure the switch with the correct IP address and encryption key to access the RADIUS server.
- (Optional) To use SSL encryption for web-based authentication login, configure and enable SSL on the switch.
- Enable web-based authentication on the switch ports you want to use.
- Configure the optional settings
that you want to use for web-based authentication; for example:
- Configure how web-based
authenticator ports transmit traffic before they successfully authenticate
a client and enter the authenticated state:
- Test both authorized and unauthorized access to your system to ensure that web authentication works properly on the ports you have configured for port-access using web authentication.
NOTE:
Client web browsers can not use a proxy server to access the network.