Configuring AAA for Network Users 435

alice

4* 192.168.12.101

corpvlan

3/1

web-portal-mycorp

5 192.168.12.102

corpvlan

3/1

2 sessions total

 

 

 

This example shows two sessions. The session for alice has the user’s name and is flagged with an asterisk ( * ). The asterisk indicates that the user has completed authentication and authorization. The session for web-portal-mycorpindicates that a Web-based AAA user is on the network but is still being authenticated. The user alice has all the access privileges configured for the user, whereas the user who is still on the portal session with the name web-portal-mycorphas limited access to resources. By default, this user can send and receive DHCP traffic only.

After authentication and authorization are complete, the web-portal-mycorpusername is replaced with the username entered by the Web-based AAA user during login. The following example shows session information for the same user, but after the user is authorized to access resources on the network:

23x0# show sessions network ssid mycorp

User

Sess

IP or MAC

VLAN

Port/

Name

ID

Address

Name

Radio

------------------------------

----

-----------------

--------------- -----

alice

4*

192.168.12.101

corpvlan

3/1

bob

5*

192.168.12.102

corpvlan

3/1

2 sessions total

 

 

 

 

Nortel WLAN Security Switch 2300 Series Configuration Guide

Page 435
Image 435
Nortel Networks 2300 manual 23x0# show sessions network ssid mycorp