

Users can access the network after being authenticated successfully.The user terminal's MAC address as the user name and password for After a user starts a terminal, the device automatically obtains.IP address and its corresponding MAC address as the source IP addressĪnd source MAC address of offline detection packets. The source IP address and source MAC address for offline detection Profile p1 to GE 0/0/1 and enable MAC address authentication on the interface. authentication mode multi-authen max-user 100 Set the user access mode to multi-authen, and set the maximum The authentication profile p1, bind the MAC access profile m1 to the authentication profile, specify the domain as the forcible authentication domain in the authentication profile, (-) is used as the user name and password for MAC address authentication.Įnsure that the formats of the user name and password for MAC addressĪuthentication configured on the RADIUS server are the same as thoseĬonfigured on the access device.

In a MAC access profile, a MAC address without hyphens test-aaa test Huawei2012 radius-template rd1 The test user test and password Huawei2012 have been configured on the RADIUS server. authentication-mode radiusĭomain, and bind the AAA authentication scheme abc and RADIUS server template rd1 to the domain. Scheme abc and set the authentication mode to RADIUS. # Create and configure the RADIUS server template rd1. # Configure GE 0/0/2 connecting the Switch to the RADIUS serverĪs an access interface and add the interface to VLAN 20. Interface and add the interface to VLAN 10. # Configure GE 0/0/1 connecting the Switch to users as an access Create VLANs and configure the VLANs allowedīy interfaces so that packets can be forwarded.
