MAC-based quick portal authentication

MAC-based quick portal authentication is applicable to scenarios where users access the network frequently. It allows users to pass authentication without entering a username and password. MAC-based quick portal authentication is also called MAC-trigger authentication or transparent portal authentication.

A MAC binding server is required for MAC-trigger authentication. The MAC binding server records the MAC-to-account bindings of portal users for authentication. The account contains the portal authentication information of the user, including username and password.

The authentication is implemented as follows:

  1. When a user accesses the network for the first time, the access device generates a MAC-trigger entry that records the user' MAC address and access interface.

  2. The access device sends a MAC binding query to the MAC binding server.

  3. The MAC binding server checks whether the MAC address of the user is bound with a portal user account.

    • If yes, the MAC binding server sends the user authentication information to the access device to initiate portal authentication. The user can pass portal authentication without entering the username and password.

    • If not, the MAC binding server notifies the access device to perform normal portal authentication for the user. After authentication, the access device sends the user's MAC address and authentication information to the MAC binding server for MAC-account binding.

  4. When the user passes portal authentication, the access device removes the MAC-trigger entry for the user.


[NOTE: ]

NOTE:

For information about MAC binding server configuration, see the user manual of the server.