Configuration Guide Vol. 2


9.1.1 Command list

The following tables list the commands used to configure Web authentication.

Table 9-1: List of configuration commands

Command name

Description

aaa accounting web-authentication default start-stop group radius

Enables accounting for Web authentication sessions.

aaa authentication web-authentication default group radius

Specifies RADIUS as the default method for Web authentication.

web-authentication auto-logout

Configures forced logout based on MAC address aging.

web-authentication ip address

Specifies the Web authentication IP address for use in fixed VLAN mode and dynamic VLAN mode.

web-authentication jump-url

Specifies the URL to which terminals are directed after successful authentication.

web-authentication logging enable

Sends Web authentication operation log messages to syslog servers or email addresses (using E-Mail).

web-authentication logout ping tos-windows

Specifies the TOS value of special pings sent by authenticated terminals.

web-authentication logout ping ttl

Specifies the TTL value of special pings sent by authenticated terminals.

web-authentication logout polling count

Specifies the number of times the switch resends the monitoring packet when there is no response.

web-authentication logout polling enable

Enables the connection monitoring functionality that monitors the operation of authenticated terminals.

web-authentication logout polling interval

Specifies the interval between transmissions of monitoring (ARP) packets by the connection monitoring functionality.

web-authentication logout polling retry-interval

Specifies the interval between retransmissions of monitoring (ARP) packets when there is no response.

web-authentication max-timer

Specifies the maximum connection time for Web-authenticated users.

web-authentication max-user

Specifies the maximum-number-of-authentications that can be authenticated during dynamic VLAN with Web authentication.

web-authentication port

Designates a port as an authenticating port in fixed VLAN mode and dynamic VLAN mode.

web-authentication radius-server host

Specify IP of RADIUS servers for Web authentication only.

web-authentication redirect enable

Enables URL redirection.

web-authentication redirect-mode

Specifies the protocol (HTTP or HTTPS) used to display login pages on a terminal subject to URL redirection.

web-authentication ssl connection-timeout

Sets SSL session-establishment timeout.

web-authentication static-vlan max-user

Specifies the maximum number of authenticated users permitted in fixed VLAN mode.

web-authentication system-auth-control

Enables Web authentication.

web-authentication web-port

Adds an access port capable of Web server access.

The following tables list the operation commands for Web authentication.

Table 9-2: List of operation commands

Command name

Description

set web-authentication user

Adds a user ID for a new Web-authenticated user.

set web-authentication passwd

Changes the password of a registered user.

set web-authentication vlan

Changes the VLAN ID assigned to a registered user.

remove web-authentication user

Deletes a registered user ID.

commit web-authentication

Applies any additions or changes you made to the internal Web authentication DB.

store web-authentication

Backs up the internal Web authentication DB to a file.

load web-authentication

Restores the internal Web authentication DB from a backup file.

show web-authentication user

Shows the contents of the internal Web authentication DB and any pending additions or changes.

clear web-authentication auth-state

Forcibly logs out an authenticated user.

show web-authentication login

Shows accounting log information for authenticated accounts.

show web-authentication

Shows the configuration for Web authentication.

show web-authentication statistics

Shows statistics for Web authentication.

clear web-authentication statistics

Clears the statistics.

show web-authentication logging

Shows the operation logs related to Web authentication.

clear web-authentication logging

Clears the operation logs related to Web authentication.

set web-authentication html-files

Registers the specified Web authentication page files.

clear web-authentication html-files

Deletes the Web authentication page files you registered.

show web-authentication html-files

Shows the file names and sizes of the Web authentication page files, as well as the date and time of their registration.

clear web-authentication dead-interval-timer

Directs the switch to return to accessing the first RADIUS server, having moved on to another RADIUS server as a result of the dead interval functionality.

set web-authentication ssl-crt

Register the server certificate and private key for SSL communication.

clear web-authentication ssl-crt

Deletes the registered SSL certificate and private key.

show web-authentication ssl-crt

Displays the registered SSL certificate and private key.

restart web-authentication

Restarts the Web authentication software.

dump protocols web-authentication

Creates a dump file of information related to Web authentication.