Alcatel-Lucent IAP93 Betriebsanweisung Seite 177

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 335
  • Inhaltsverzeichnis
  • FEHLERBEHEBUNG
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 176
177 | Roles and Policies AOS-W Instant 6.3.1.1-4.0 | User Guide
(Instant Access Point)(config)# wlan access-rule <name>
(Instant Access Point) (Access Rule <name>)# bandwidth-limit {downstream <kbps>| upstream <kbp
s>| peruser { downstream <kbps>| upstream <kbps>}}
(Instant Access Point) (Access Rule <name>)# end
(Instant Access Point) # commit apply
To associate the access rule to a wired profile:
(Instant Access Point)(config)# wired-port-profile <name>
(Instant Access Point)(wired ap profile <name>)# access-rule-name <access-rule-name>
(Instant Access Point)(wired ap profile <name>)# end
(Instant Access Point) # commit apply
Configuring Machine and User Authentication Roles
You can assign different rights to clients based on whether their hardware device supports machine authentication.
Machine Authentication is only supported on Windows devices, so this can be used to distinguish between Windows
devices and other devices such as iPads.
You can create any of the following types of rules:
l Machine Auth only role - This indicates a Windows machine with no user logged in. The device supports machine
authentication and has a valid RADIUS account, but a user has not yet logged in and authenticated.
l User Auth only role - This indicates a known user or a non-Windows device. The device does not support
machine auth or does not have a RADIUS account, but the user is logged in and authenticated.
When a device does both machine and user authentication, the user obtains the default role or the derived role based
on the RADIUS attribute.
You can configure machine authentication with role-based access control using AOS-W Instant UI or CLI.
In the AOS-W Instant UI
To configure machine authentication with role-based access control, perform the following steps:
1. In the Access tab of the WLAN (New WLAN or Edit <WLAN-profile>) or Wired Network configuration (New
Wired Network or Edit Wired Network) window, under Roles, create Machine auth only and User auth
only roles.
2. Configure access rules for these roles by selecting the role, and applying the rule. For more information on
configuring access rules, see Configuring Access Rules on page 169.
3. Select Enforce Machine Authentication and select the Machine auth only and User auth only roles.
4. Click Finish to apply these changes.
In the CLI
To configure machine and user authentication roles for a WLAN SSID:
(Instant Access Point)(config)# wlan ssid-profile <name>
(Instant Access Point)(SSID Profile <name># set-role-machine-auth <machine-authentication-onl
y> <user-authentication-only>
(Instant Access Point)(SSID Profile <name># end
(Instant Access Point)# commit apply
To configure machine and user authentication roles for wired profile:
(Instant Access Point)(config)# wired-port-profile <name>
(Instant Access Point)(wired ap profile <name>)# set-role-machine-auth <machine-authenticatio
n-only> <user-authentication-only>
(Instant Access Point)(wired ap profile <name>)# end
(Instant Access Point)# commit apply
Seitenansicht 176
1 2 ... 172 173 174 175 176 177 178 179 180 181 182 ... 334 335

Kommentare zu diesen Handbüchern

Keine Kommentare