Configure the L2 Portal Authentication Function
Configuration Condition
To enable the L2 Portal authentication function, it is necessary to meet the following conditions:
- The Portal server is created on the authentication device
Enable L2 Portal Authentication Function
Enable the L2 Portal authentication on the port of connecting the user on the authentication device. The L2 Portal authentication controls based on the source MAC, permitting the authenticated packet with the valid source MAC address to pass.
Table 13–7 Enable the L2 Portal authentication function
Step
|
Command
|
Description
|
Enter global configuration mode
|
configure terminal
|
-
|
Enter the L2 Ethernet interface configuration mode
|
interface interface-name
|
Either
After entering the L2 Ethernet interface configuration mode, the subsequent configuration just takes effect on the current interface. After entering the aggregation group configuration mode, the subsequent configuration just takes effect on the aggregation group.
|
Enter the aggregation group configuration mode
|
interface link-aggregation link-aggregation-id
|
Enable the L2 Portal authentication function
|
portal server server-name method layer2
|
Mandatory
By default, the L2 Portal authentication function of the port is disabled.
|
-
The L2 Portal authentication mode does not support VLAN delivery.
- On one port, you cannot configure the L2 Portal authentication or 802.1X Free-IP function at the same time.
- When the L2 Portal authentication is enabled on one port, the corresponding VLAN interface cannot enable the L3 Portal authentication. Otherwise, the configuration fails.
- When the port enabled with the L2 Portal authentication is added to the VLAN interface enabled with the L3 Portal authentication, clear the L2 Portal authentication configuration of the port automatically, and record the log of auto clearing the configuration at the same time.