HP 12500 Series Configuration Manual page 117

Routing
Table of Contents

Advertisement

The security policy server exchanges security check information with the authentication client to
8.
check whether the authentication client meets the security requirements.
Based on the security check result, the security policy server authorizes the user to access certain
9.
resources, and sends the authorization information to the access device. The access device then
controls access of the user based on the authorization information.
Re-DHCP authentication process (with CHAP/PAP authentication)
Figure 37 Re-DHCP authentication process
The re-DHCP authentication process takes the following procedure:
Step 1 through step 6 are the same as those in the direct authentication/cross-subnet authentication
process.
After receiving the authentication success message, the authentication client obtains a new public
7.
IP address through DHCP and notifies the portal server that it has obtained a public IP address.
The portal server notifies the access device that the authentication client has obtained a new public
8.
IP address.
Detecting the change of the IP address by examining ARP packets received, the access device
9.
notifies the portal server of the change.
The portal server notifies the authentication client of logon success.
10.
The portal server sends a user IP address change acknowledgment message to the access device.
11.
With extended portal functions, the process includes additional steps:
The security policy server exchanges security check information with the authentication client to
12.
check whether the authentication client meets the security requirements.
Based on the security check result, the security policy server authorizes the user to access certain
13.
resources, and sends the authorization information to the access device. The access device then
controls access of the user based on the authorization information.
107

Advertisement

Table of Contents
loading

Table of Contents