D-Link DGS-3620-28TC-SI Product Manual - Page 363

Japanese Web-based Access Control (JWAC), JWAC Global Settings

Page 363 highlights

xStack® DGS-3620 Series Managed Switch Web UI Reference Guide Japanese Web-based Access Control (JWAC) JWAC Global Settings This window is used to enable and configure Japanese Web-based Access Control on the Switch. JWAC and Web Authentication are mutually exclusive functions. That is, they cannot be enabled at the same time. To use the JWAC feature, computer users need to pass through two stages of authentication. The first stage is to do the authentication with the quarantine server and the second stage is the authentication with the Switch. For the second stage, the authentication is similar to Web Authentication, except that there is no port VLAN membership change by JWAC after a host passes authentication. JWAC and WAC can share the same RADIUS server. To view this window, click Security > Japanese Web-based Access Control (JWAC) > JWAC Global Settings as shown below: Figure 8-42 JWAC Global Settings Window The fields that can be configured are described below: Parameter Description JWAC State Click the radio buttons to enable or disable JWAC on the Switch. Virtual IP Virtual URL Enter the JWAC Virtual IP address that is used to accept authentication requests from an unauthenticated host. The Virtual IP address of JWAC is used to accept authentication requests from an unauthenticated host. Only requests sent to this IP will get a correct response. NOTE: This IP does not respond to ARP requests or ICMP packets. Enter the Virtual URL used. UDP Filtering Use the drop-down menu to enable or disable JWAC UDP Filtering. When UDP Filtering is Enabled, all UDP and ICMP packets except DHCP and DNS packets from unauthenticated hosts will be dropped. Port Number (1-65535) Enter the TCP port that the JWAC Switch listens to and uses to finish the authenticating process. Forcible Logout Use the drop-down menu to enable or disable JWAC Forcible Logout. When Forcible Logout is Enabled, a Ping packet from an authenticated host to the JWAC Switch with TTL=1 will be regarded as a logout request, and the host will move back to the unauthenticated state. Authentication Protocol Use the drop-down menu to choose the RADIUS protocol used by JWAC to complete a RADIUS authentication. The options include Local, EAP MD5, PAP, CHAP, MS 353

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403
  • 404
  • 405
  • 406
  • 407
  • 408
  • 409
  • 410
  • 411
  • 412
  • 413
  • 414
  • 415
  • 416
  • 417
  • 418
  • 419
  • 420
  • 421
  • 422
  • 423
  • 424
  • 425
  • 426
  • 427
  • 428
  • 429
  • 430
  • 431
  • 432
  • 433
  • 434
  • 435
  • 436
  • 437
  • 438
  • 439
  • 440
  • 441
  • 442
  • 443
  • 444
  • 445
  • 446
  • 447
  • 448
  • 449
  • 450
  • 451
  • 452
  • 453
  • 454
  • 455
  • 456
  • 457
  • 458
  • 459
  • 460
  • 461
  • 462
  • 463
  • 464
  • 465
  • 466
  • 467
  • 468
  • 469
  • 470
  • 471
  • 472
  • 473
  • 474
  • 475
  • 476
  • 477
  • 478
  • 479
  • 480
  • 481
  • 482
  • 483
  • 484
  • 485
  • 486
  • 487
  • 488
  • 489
  • 490
  • 491
  • 492
  • 493
  • 494
  • 495
  • 496
  • 497
  • 498
  • 499
  • 500
  • 501
  • 502

xStackĀ® DGS-3620 Series Managed Switch Web UI Reference Guide
353
Japanese Web-based Access Control (JWAC)
JWAC Global Settings
This window is used to enable and configure Japanese Web-based Access Control on the Switch. JWAC and Web
Authentication are mutually exclusive functions. That is, they cannot be enabled at the same time. To use the
JWAC feature, computer users need to pass through two stages of authentication. The first stage is to do the
authentication with the quarantine server and the second stage is the authentication with the Switch. For the
second stage, the authentication is similar to Web Authentication, except that there is no port VLAN membership
change by JWAC after a host passes authentication. JWAC and WAC can share the same RADIUS server.
To view this window, click
Security > Japanese Web-based Access Control (JWAC) > JWAC Global Settings
as shown below:
Figure 8-42 JWAC Global Settings Window
The fields that can be configured are described below:
Parameter
Description
JWAC State
Click the radio buttons to enable or disable JWAC on the Switch.
Virtual IP
Enter the JWAC Virtual IP address that is used to accept authentication requests
from an unauthenticated host. The Virtual IP address of JWAC is used to accept
authentication requests from an unauthenticated host. Only requests sent to this IP
will get a correct response.
NOTE:
This IP does not respond to ARP requests or ICMP packets.
Virtual URL
Enter the Virtual URL used.
UDP Filtering
Use the drop-down menu to enable or disable JWAC UDP Filtering. When UDP
Filtering is
Enabled
, all UDP and ICMP packets except DHCP and DNS packets from
unauthenticated hosts will be dropped.
Port Number (1-65535)
Enter the TCP port that the JWAC Switch listens to and uses to finish the
authenticating process.
Forcible Logout
Use the drop-down menu to enable or disable JWAC Forcible Logout. When Forcible
Logout is
Enabled
, a Ping packet from an authenticated host to the JWAC Switch
with TTL=1 will be regarded as a logout request, and the host will move back to the
unauthenticated state.
Authentication
Protocol
Use the drop-down menu to choose the RADIUS protocol used by JWAC to complete
a RADIUS authentication. The options include
Local
,
EAP
MD5
,
PAP
,
CHAP
,
MS