Select an existing group from the ssid group list – H3C Technologies H3C Intelligent Management Center User Manual

Page 117

Advertising
background image

99

Employee MAC authentication uses the workflow shown in

Figure 86

.

Figure 86 Employee MAC authentication workflow

To configure service fast deploy for employee MAC authentication:

1.

Click the User tab.

2.

From the navigation tree, select User Access Policy > Quick Start.

3.

Click the Service Fast Deploy tab.

4.

Select Employee MAC from the Template list.

5.

Configure an SSID group by using one of the following methods:

{

Select an existing group from the SSID Group list.

{

Click Add next to the SSID Group list to add a new group.

The group must include the SSID to be connected by endpoint users. Make sure the SSID is

associated with MAC authentication on the WLAN device, such as an AC.

6.

Configure parameters of the anonymous service, which applies to users on endpoints with
transparent MAC authentication disabled:

{

Service Name—UAM automatically generates a name for the anonymous service.

{

Access Policy Name—Enter the name of an access policy.

{

Deploy VLAN—Enter a VLAN ID or name. UAM will deploy the VLAN to users who match the
anonymous scenario.

{

BYOD Page—Select a login page from the list. UAM will push the page to users who match the
anonymous scenario. For information about customizing a BYOD page, see "

Managing and

applying BYOD page sets

."

{

Endpoint Vendor/Type/OS Group—Select a group from the list or click Add to configure a new
group. These groups filter users for the anonymous scenario based on endpoints.

An employee

connects to

WLAN

MAC is bound to a user

account?

No

Assign the employee

service

Employee initiates

MAC authentication

Yes

Anonymous scenario is

matched?

Authentication succeeds with the
anonymous service assigned

Yes

No

Work scenario is

matched?

Yes

No

Redirect the user to the

BYOD page of the

anonymous service

Bind MAC to the account

provided by the user

Inform the WLAN device to

disconnect the user

Perform anonymous

authentication

Authentication succeeds with the
work scenario settings assigned

Authentication fails

Authentication succeeds with the
default scenario settings assigned

Default scenario is

matched?

Authentication fails

Yes

No

Advertising