Viewing access policy details – H3C Technologies H3C Intelligent Management Center User Manual

Page 144

Advertising
background image

126

Viewing access policy details

To view detailed information about an access policy:

1.

Access the access policy list page.

2.

Click the name of the access policy for which you want to view its details.
The Access Policy Details page includes the Basic Information, Authorization Information,
Authentication Binding Information, and User Client Configuration areas.
Basic Information area parameters:

{

Access Policy Name—Unique name of the access policy.

{

Service Group—Name of the service group to which the access policy belongs.

{

Description—Description of the access policy.

Authorization Information area parameters:
This area contains parameters to be authorized to the user.

{

Access Period—Name of the access period policy that is specified for the access policy. For
more information about access period policies, see "

Configuring access period policies

."

{

Allocate IP—Whether or not UAM requires an IP address be specified when an operator

attempts to assign an access account a service that uses this access policy. UAM assigns the
specified IP address to the user who passes authentication by using that access account. This

parameter applies only to PPP authentication methods, for example, L2TP and PPPoE.

{

Downstream Rate—Upper limit of the download rate for the access user. This parameter takes
effect only when the access device is an HP ProCurve or Comware switch. Support for the

parameter on the HP Comware switches depends on the device model.

{

Upstream Rate—Upper limit of the upload rate for the access user. This parameter takes effect

only when the access device is an HP ProCurve or Comware switch. Support for the parameter
on the HP Comware switches depends on the device model.

{

Priority—Priority of packets forwarded by the access device for the access user. This parameter
takes effect only when the access device is an HP ProCurve or Comware switch. Support for the

parameter on the HP Comware switches depends on the device model.

{

RSA Authentication—Whether RSA authentication is enabled. For more information, see "

20

Configuring RSA authentication

."

{

Certificate Authentication—Whether EAP authentication is enabled. This field displays None
when EAP authentication is disabled.

{

Certificate Type—EAP authentication type. This parameter appears only when EAP certificate
authentication is enabled. The EAP authentication type can be one of the following options:

EAP-TLS AuthN—Performs bidirectional client-server certificate authentication. Each party is
identified by its certificate.

EAP-TTLS AuthN—Performs certificate authentication through a TLS channel between the
client and UAM.

EAP-PEAP AuthN—Performs EAP authentication through a security tunnel between the client
and UAM. The tunnel protects the user password and EAP negotiation process.

{

Certificate Sub-Type—EAP-PEAP authentication method, which can be MSCHAPV2 AuthN, MD5
AuthN, or GTC AuthN. This parameter appears only when the EAP-TTLS or EAP-PEAP protocol is

selected.

Advertising