H3C Technologies H3C Intelligent Management Center User Manual

Page 118

Advertising
background image

100

Select Unlimited to disable a filter.

7.

Configure the service name for the employee service.
UAM automatically generates a name for the employee service.

8.

Configure default scenario parameters for the employee service, which applies to users on
endpoints with transparent MAC authentication enabled:

{

Access Policy Name—Enter the name of an access policy.

{

Deploy VLAN—Enter a VLAN ID or name. UAM will deploy the VLAN to users who match the
default scenario.

{

BYOD Page—Select a login page from the list. UAM will push the page to users who match the
default scenario. For information about customizing a BYOD page, see "

Managing and

applying BYOD page sets

."

9.

Configure work scenario parameters for the employee service, which applies to users on
endpoints with transparent MAC authentication enabled:

{

Access Policy Name—Enter the name of an access policy.

{

Deploy VLAN—Enter a VLAN ID or name. UAM will deploy the VLAN to users who match the
work scenario.

{

BYOD Page—Select a login page from the list. UAM will push the page to users who match the
work scenario. For information about customizing a BYOD page, see "

Managing and applying

BYOD page sets

."

{

Endpoint Vendor/Type/OS Group—Select a group from the list or click Add to configure a new
group. These groups filter users for the work scenario based on endpoints.
Select Unlimited to disable a filter.

10.

Add NAS devices to UAM as access devices:

a.

Select Add Access Device.

b.

Configure an IP address range of NAS devices in the Start IP and End IP fields.
The IP address range must include the IP address specified by using the nas-ip command for
the RADIUS scheme on the NAS devices.
If the NAS IP address is not specified, the IP address range must include the IP address of the
interface connecting to UAM. The connecting interface can be an Ethernet interface or VLAN

interface.

c.

Enter a shared key in the Shared Key and Confirm Shared Key fields to secure RADIUS
authentication and accounting communication.
The shared key must be the same as that configured on the NAS devices.

d.

Select a type from the Access Device Type list.

11.

Click OK.

12.

To restore default settings of all parameters, click Reset.

Configuring service fast deploy for employee
802.1X authentication

Configure service fast deploy for employees who pass 802.1X authentication to access the enterprise

network.

Advertising