Chapter4ServiceConguration
Figure4-23AccessAuthenticationCongurationInstance
lCongurationProcedure
1.Congurelayer-3interfacecommands
zte(cfg-router)#setipport0ip10.40.89.106/24
zte(cfg-router)#setipport0vlan1
zte(cfg-router)#setipport0enable
2.Congure802.1Xcommands
zte(cfg)#setport2securityenable
zte(cfg)#confignas
zte(cfg-nas)#aaaport2dot1xenable
zte(cfg-nas)#aaaport2keepaliveenable
zte(cfg-nas)#aaaport2accountingenable
3.Congureradiuscommands
zte(zte)#confignas
zte(cfg-nas)#radiusispzteenable
zte(cfg-nas)#radiusispztedefaultispenable
zte(cfg-nas)#radiusispztesharedsecret1234
zte(cfg-nas)#radiusispzteclient10.40.89.106
zte(cfg-nas)#radiusispzteaddaccounting10.40.89.78
zte(cfg-nas)#radiusispzteaddauthentication10.40.89.106
4.EnableradiusclientsoftwareonPCandinputcorrectusernameandpassword.
Thentheauthenticationrequestislaunched.
Note:
DisablethesecurityproxysuchasSygatebeforetheuserPCsendingauthentication
request.
lCongurationVerication
Whentheauthenticationrequestsucceeds,viewtheuserinformationbyusingthe
commandshowclient.
4-73
SJ-20120409144109-002|2012-07-02(R1.0)ZTEProprietaryandCondential