分类: 系统运维
2008-12-11 14:48:54
1、配置radius scheme:
全局下:
radius scheme mac-radius
primary authentication 192.168.30.3
primary accounting 192.168.30.3
secondary authentication 192.168.30.4
secondary accounting 192.168.30.4
key authentication 123456
key accounting 123456
user-name-format without-domain
2、配置MAC认证的域:
全局下:
domain mac-dom
authentication default radius-scheme mac-radius
authorization default radius-scheme mac-radius
accounting default radius-scheme mac-radius
access-limit disable
state active
idle-cut disable
self-service-url disable
3、配置全局MAC认证:
#
port-security enable
#
mac-authentication domain mac-dom
4、开启无线端口的MAC认证
[AP01] int WLAN-BSS 1
[AP01-WLAN-BSS1] port-security port-mode mac-authentication
[AP01] int WLAN-BSS 2
[AP01-WLAN-BSS2] port-security port-mode mac-authentication