Dell PowerConnect W-Airwave W-Airwave 7.2 Configuration Guide - Page 62

Profiles > AAA > Mac Auth, Captive Portal Auth, AAA Profiles, Mac Auth, pencil, Details

Page 62 highlights

Table 11 Profiles > AAA > Captive Portal Auth Profile Settings (Continued) Field Default Description Use CHAP No (Non-standard) Use CHAP protocol. You should not use this option unless instructed to do so by a representative from Dell PowerConnect W. Sygate-on-demand- No agent Enables client remediation with Sygate-on-demand-agent (SODA). Login Page /auth/index.html URL of the page that appears for the user logon. This can be set to any URL. Welcome Page /auth/welcome.html URL of the page that appears after logon and before redirection to the web URL. This can be set to any URL. Show Welcome Page Yes Enables the display of the welcome page. If this option is disabled, redirection to the web URL happens immediately after logon. Add a Controller IP Address in Redirection URL 0.0.0.0 Select this option to send the controller's IP address in the redirection URL when external captive portal servers are used. An external captive portal server can determine the controller from which a request originated by parsing the 'controllerip' variable in the URL. Add User VLAN in No Redirection URL Enable this option to send the user VLAN in the redirection URL when external captive portal servers are used. Requires a Public Wi-Fi Access license. White List Net Destinations This setting allows you to select net destinations for your whitelist. Black List Net Destinations This setting allows you to select net destinations for your blacklist. 3. Select Add or Save. The added or edited Captive Portal Auth profile appears on the AAA Profiles page. The captive portal authentication profile specifies the captive portal login page and other configurable parameters. The initial user role configuration must include the applicable captive portal authentication profile instance. Therefore, you need to modify the guest-logon user role configuration to include the guestnet captive portal authentication profile. Profiles > AAA > Mac Auth Before configuring MAC-based authentication, you must configure the following:  The user role that will be assigned as the default role for the MAC-based authenticated clients. You configure the default user role for MAC-based authentication in the AAA profile. If derivation rules exist or if the client configuration in the internal database has a role assignment, these values take precedence over the default user role.  Authentication server group that the controller uses to validate the clients. The internal database can be used to configure the clients for MAC-based authentication. Perform these steps to configure a Mac Auth profile. 1. Select Profiles > AAA > Mac Auth. 2. Select the Add button to create a new Mac Auth profile, or click the pencil icon next to an existing profile to edit. The Details page appears. Complete the settings as described in Table 12: Table 12 Profiles > AAA > MAC Auth Profile Settings Field Default Description General Settings Folder Top Set the folder with which the profile is associated. The drop-down menu displays all folders available for association with the profile. 62 | Dell PowerConnect W Configuration Reference Dell PowerConnect W AirWave 7.2 | Configuration Guide

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160

62
|
Dell PowerConnect W Configuration Reference
Dell PowerConnect W AirWave 7.2
| Configuration Guide
3.
Select
Add
or
Save
. The added or edited
Captive Portal Auth
profile appears on the
AAA Profiles
page.
The captive portal authentication profile specifies the captive portal login page and other configurable
parameters. The initial user role configuration must include the applicable captive portal authentication profile
instance. Therefore, you need to modify the guest-logon user role configuration to include the guestnet captive
portal authentication profile.
Profiles > AAA > Mac Auth
Before configuring MAC-based authentication, you must configure the following:
The user role that will be assigned as the default role for the MAC-based authenticated clients. You configure
the default user role for MAC-based authentication in the AAA profile. If derivation rules exist or if the client
configuration in the internal database has a role assignment, these values take precedence over the default
user role.
Authentication server group that the controller uses to validate the clients. The internal database can be used
to configure the clients for MAC-based authentication.
Perform these steps to configure a
Mac Auth
profile.
1.
Select
Profiles > AAA > Mac Auth
.
2.
Select the
Add
button to create a new
Mac Auth
profile, or click the
pencil
icon next to an existing profile to
edit. The
Details
page appears. Complete the settings as described in
Table 12
:
Use CHAP
(Non-standard)
No
Use CHAP protocol. You should not use this option unless instructed to do so
by a representative from Dell PowerConnect W.
Sygate-on-demand-
agent
No
Enables client remediation with Sygate-on-demand-agent (SODA).
Login Page
/auth/index.html
URL of the page that appears for the user logon. This can be set to any URL.
Welcome Page
/auth/welcome.html
URL of the page that appears after logon and before redirection to the web
URL. This can be set to any URL.
Show Welcome Page
Yes
Enables the display of the welcome page. If this option is disabled, redirection
to the web URL happens immediately after logon.
Add a Controller IP
Address in Redirection
URL
0.0.0.0
Select this option to send the controller’s IP address in the redirection URL
when external captive portal servers are used. An external captive portal
server can determine the controller from which a request originated by
parsing the ‘controllerip’ variable in the URL.
Add User VLAN in
Redirection URL
No
Enable this option to send the user VLAN in the redirection URL when external
captive portal servers are used. Requires a Public Wi-Fi Access license.
White List Net
Destinations
This setting allows you to select net destinations for your whitelist.
Black List Net
Destinations
This setting allows you to select net destinations for your blacklist.
Table 12
Profiles > AAA > MAC Auth Profile Settings
Field
Default
Description
General Settings
Folder
Top
Set the folder with which the profile is associated. The drop-down menu displays all
folders available for association with the profile.
Table 11
Profiles > AAA > Captive Portal Auth Profile Settings
(Continued)
Field
Default
Description