Current location - Training Enrollment Network - Books and materials - The first chapter of the short book-H3C AD domain control +802.438+0x authentication solution
The first chapter of the short book-H3C AD domain control +802.438+0x authentication solution
Hello, everyone. I am a handprint hero. I have been engaged in network engineering for n years. I usually like to study some useful network solutions for enterprises. At present, I mainly focus on security and server direction. This is the first article I will briefly describe. I don't know if you like it or not. You can give me more advice and improve my solving ability.

? As an independent blogger since high school, I always like to build my own website before doing something. I feel that all the permissions are in my own hands. You are also welcome to visit the newly-built independent solutions website (www.ict 123.cc).

Enter the text below:

First, the application scenario of the scheme:

? At present, most enterprises adopt password authentication, which can not achieve unified control. There are great security problems, such as password leakage, being directly connected to the company intranet by surrounding companies or company visitors, threatening the security of OA and other servers in company content.

Initially, 802. 1X protocol was proposed to solve the network security problem of wireless local area network. Later, 802. 1X protocol, as a common access control mechanism in LAN, was widely used in Ethernet, mainly to solve the authentication and security problems in Ethernet.

802. 1X protocol is a port-based network access control protocol, which authenticates the accessed users and devices on the ports of LAN access devices to control the access of user devices to network resources.

Features of the plan:

? Users only need to prepare a server and purchase any wireless controller of H3C. The advantages of free support can be realized without purchasing redundant authentication software, and the account is managed in a unified way.

Second, the environmental preparation:

1, server windows server 20 12.

The server can be a virtual machine/physical machine.

2.H3C wireless controller (AC) software can handle v5 or v7.

3. Support thin AP(FIT) and POE switches.

Third, the topology diagram is as follows:

Fourth, the realization effect:

? Any mobile phone, windows, Apple system, can only wirelessly connect to the LAN by entering the account password.

Windows 10 authentication effect: