Select an existing group from the ssid group list – H3C Technologies H3C Intelligent Management Center User Manual
Page 117

99
Employee MAC authentication uses the workflow shown in
.
Figure 86 Employee MAC authentication workflow
To configure service fast deploy for employee MAC authentication:
1.
Click the User tab.
2.
From the navigation tree, select User Access Policy > Quick Start.
3.
Click the Service Fast Deploy tab.
4.
Select Employee MAC from the Template list.
5.
Configure an SSID group by using one of the following methods:
{
Select an existing group from the SSID Group list.
{
Click Add next to the SSID Group list to add a new group.
The group must include the SSID to be connected by endpoint users. Make sure the SSID is
associated with MAC authentication on the WLAN device, such as an AC.
6.
Configure parameters of the anonymous service, which applies to users on endpoints with
transparent MAC authentication disabled:
{
Service Name—UAM automatically generates a name for the anonymous service.
{
Access Policy Name—Enter the name of an access policy.
{
Deploy VLAN—Enter a VLAN ID or name. UAM will deploy the VLAN to users who match the
anonymous scenario.
{
BYOD Page—Select a login page from the list. UAM will push the page to users who match the
anonymous scenario. For information about customizing a BYOD page, see "
{
Endpoint Vendor/Type/OS Group—Select a group from the list or click Add to configure a new
group. These groups filter users for the anonymous scenario based on endpoints.
An employee
connects to
WLAN
MAC is bound to a user
account?
No
Assign the employee
service
Employee initiates
MAC authentication
Yes
Anonymous scenario is
matched?
Authentication succeeds with the
anonymous service assigned
Yes
No
Work scenario is
matched?
Yes
No
Redirect the user to the
BYOD page of the
anonymous service
Bind MAC to the account
provided by the user
Inform the WLAN device to
disconnect the user
Perform anonymous
authentication
Authentication succeeds with the
work scenario settings assigned
Authentication fails
Authentication succeeds with the
default scenario settings assigned
Default scenario is
matched?
Authentication fails
Yes
No