DGS-3700-12/DGS-3700-12G Series Layer 2 Gigabit Ethernet Switch User Manual
184
Conditions and Limitations
1. The subnet of the authentication VLAN’s IP interface must be the same as that of the client. If not configured
properly, the authentication will be permanently denied by the authenticator .
2. If the client is utilizing DHCP to attain an IP address, the authentication VLAN must provide a DHCP server or
a DHCP relay function so that client may obtain an IP address.
3. The authentication VLAN of this function must be configured to access a DN S server to improve CPU
performance, and allow the processing of DNS, UDP and HTTP pack ets.
4. Certain functions exist on the Switch that will filter HTTP packets, s uch as the Access Profile function. The
user needs to be very careful when setting filter functions for the target V LAN, so that these HTTP packets are
not denied by the Switch.
5. The Redirection Path must be set before the Web-based Acces s Control can be enabled. If not, the user will
be prompted with an error message and the Web-based Access Control will not be enabled.
6. If a RADIUS server is to be used for authentication, the user must firs t establish a RADIUS Server with the
appropriate parameters, including the target VLAN, before enabling the W eb-based Access Control on the
Switch.
Web-based Access Control Settings
This window is used to configure the Switch for Web-based Access Control Settings on the Switch.
To view this window, click Security > Web Authenication > Web-based Access Control Settings as shown below:
Figure 5 - 46 Web-based Access Control Settings
To set the Web-based Access Control for the Switch, complete the followin g fields:
Parameter Description
State Toggle the State field to either Enable or Disable for the W eb-based Access Control settings
of the Switch.
Method Use the pull-down menu to choose the authenticator for Web-based Access Control. The user
may choose:
local Choose this parameter to use the local authentication m ethod of the Switch as the
authenticating method for users trying to access the network via the switch. This is, in f ac t, th e
username and password to access the Switch configured using the User Account Creation
screen seen below.
radius Choose this parameter to use a remote RADIUS server as th e authen ticat ing m ethod