已按照文档设置无线的radius认证 认证开起来已经通过 就是电脑连接不上
设置已检查过了 应该没有问题
现象好像是一直在认证 其中可见认证已过的信息
msr 930 AC
+ 26 AP
Login authentication Password: <H3C>dis cu <H3C>dis current-configuration # version 5.20, ESS 0002P01 # sysname H3C # domain default enable ***.*** # telnet server enable # dar p2p signature-file flash:/p2p_default.mtd # ndp enable # ntdp enable # cluster enable # port-security enable # dot1x authentication-method eap # password-recovery enable # vlan 1 # vlan 2 name Vlan2 # radius scheme ceaftc server-type extended primary authentication 192.168.13.185 key authentication cipher user-name-format without-domain nas-ip 192.168.13.43 # domain ***.*** authentication lan-access radius-scheme ceaftc authorization lan-access radius-scheme ceaftc accounting lan-access radius-scheme ceaftc access-limit disable state active idle-cut disable self-service-url disable domain system access-limit disable state active idle-cut disable self-service-url disable # user-group system group-attribute allow-guest # local-user admin password cipher authorization-attribute level 3 service-type telnet service-type web # wlan rrm dot11a mandatory-rate 6 12 24 dot11a supported-rate 9 18 36 48 54 dot11b mandatory-rate 1 2 dot11b supported-rate 5.5 11 dot11g mandatory-rate 1 2 5.5 11 dot11g supported-rate 6 9 12 18 24 36 48 54 # wlan service-template 5 crypto ssid Ceaftc_staff bind WLAN-ESS 4 cipher-suite tkip cipher-suite ccmp security-ie rsn service-template enable # cwmp undo cwmp enable # wlan ap-group default_group ap test ap test2 ap 3c8c-4032-4e80 dot11a radio enable dot11bg radio enable # interface Aux0 async mode flow link-protocol ppp # interface Cellular0/0 async mode protocol link-protocol ppp # interface NULL0 # interface Vlan-interface1 ip address 192.168.1.1 255.255.255.0 # interface Vlan-interface2 ip address 192.168.13.43 255.255.255.0 # interface GigabitEthernet0/0 port link-mode route # interface GigabitEthernet0/1 port link-mode bridge port access vlan 2 # interface GigabitEthernet0/2 port link-mode bridge # interface GigabitEthernet0/3 port link-mode bridge port access vlan 2 # interface GigabitEthernet0/4 port link-mode bridge # interface WLAN-ESS4 port access vlan 2 port-security port-mode userlogin-secure-ext port-security tx-key-type 11key undo dot1x handshake dot1x mandatory-domain ***.*** undo dot1x multicast-trigger # wlan ap test model WA2620i-AGN id 2 serial-id 219801A0CNC151002996 radio 1 service-template 5 radio enable radio 2 service-template 5 radio enable # wlan ap test2 model WA2620i-AGN id 3 serial-id 219801A0CNC131003169 radio 1 service-template 5 radio enable radio 2 service-template 5 radio enable # load xml-configuration # load tr069-configuration # user-interface tty 12 user-interface aux 0 user-interface vty 0 4 user privilege level 3 set authentication password
(0)
最佳答案
用freeradius做的,用windows来做也不行的。
怎么改成用本地认证
改成本地认证也是不行
interface WLAN-BSS32
port link-type hybrid
port hybrid vlan 1 untagged
port-security port-mode userlogin-secure-ext
port-security tx-key-type 11key
dot1x mandatory-domain ***.***
interface WLAN-Radio1/0/1
service-template 1 interface wlan-bss 32
wlan service-template 1 crypto
ssid h3cx
cipher-suite ccmp
security-ie rsn
security-ie wpa
service-template enable
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论