Configuring the secpath – H3C Technologies H3C SecPath F1000-E User Manual

Page 140

Advertising
background image

130

Figure 116 Device list

On the port group configuration page, click Add to enter the page for adding a port group, as shown
in

Figure 117

. Perform the following configurations:

Enter the port group name.

Select the configured IP address group. The IP address used by the user to access the network must
be within this IP address group.

Use the default settings for other parameters.

Figure 117 Port group configuration

# Select Service Parameters > Validate System Configuration from the navigation tree to validate the

configurations.

Configuring the SecPath

1.

Configure a RADIUS scheme:
# Create a RADIUS scheme named rs1 and enter its view.

<SecPath> system-view

[SecPath] radius scheme rs1

# Set the server type for the RADIUS scheme. When using the CAMS or IMC server, set the server

type to extended.

[SecPath-radius-rs1] server-type extended

# Specify the primary authentication server and primary accounting server, and configure the keys
for communication with the servers.

[SecPath-radius-rs1] primary authentication 192.168.0.112

[SecPath-radius-rs1] primary accounting 192.168.0.112

[SecPath-radius-rs1] key authentication radius

Advertising