Got it

Need the users not to authenticate again withen 24 hours while using built in portal + LDAP authentication

Latest reply: Nov 17, 2021 04:41:45 411 6 3 0 0

Problem Description】

Issue 1 :

- Have built-in  Portal based authentication  + LDAP for SSID and Want users not to authenticate again before 24 hours and login automatically.

Issue 2 :

- After configuration done users faced issues and need to re-authenticate again before the delay time end or they can't access the internet.


【Problem Analysis】

Issue 1 :

- We can achieve this requirement by configuration of Station offline delay function :

https://support.huawei.com/hedex/pages/EDOC1100008272AEH0312X/07/EDOC1100008272AEH0312X/07/resources/dc/dc_cfg_wlan_basic_0156.html?ft=0&fe=10&hib=11.1.8.11.3&id=dc_cfg_wlan_basic_0156&text=(Optional)%20Configuring%20the%20STA%20Offline%20Delay%20Function&docid=EDOC1100008272


- After configuration it is mentioned that not all Stations are reauthenticate normally and when I asked if the maximum number  is configured I was informed that it is but I found only those two commands configured :

113320azuf8dtwjqbmqzr8.jpg?as.jpg

* Enabled the function.

*  Set the aging time to 86000 second = about 24 hours

 

I found about 200 stations connected so recommend to test configure the maximum number to a suitable number in the environment :

sta-offline-delay max-number max-number

 

Also note that APs are default enabled to force STAs in offline delay state to go offline and allow STAs are allowed to go online after the number of STAs reaches the maximum.

So also test this command :

undo sta-offline-delay full-sta-reject enable


Issue 2 :

-  After confirmation, the delay offline commands should work fine if there is no other especial offline reason for terminals. This means that the terminal should be offline normally in order to login without authentication when the delay is active.


Root Cause】

-  Missing configuration

- Normal behavior due to abnormal offline from stations.

 

【Solution】

- Enable sta-offline-delay function and specify the correct parameters :

https://support.huawei.com/hedex/pages/EDOC1100008272AEH0312X/07/EDOC1100008272AEH0312X/07/resources/dc/dc_cfg_wlan_basic_0156.html?ft=0&fe=10&hib=11.1.8.11.3&id=dc_cfg_wlan_basic_0156&text=(Optional)%20Configuring%20the%20STA%20Offline%20Delay%20Function&docid=EDOC1100008272

-  Make sure that the station disconnect normally as when there is an abnormal record the station needs to authenticate again.


@Mohamed_Mostafa hi,
I used to encounter a similar failure long time ago, if I had read this post, it would be more effective when troubleshooting the problem.
thanks for your sharing. May it help others solving the problem effectively. Need the users not to authenticate again withen 24 hours while using  built in portal  + LDAP authentication-2968587-1
View more
  • x
  • convention:

Posted by chenhui at 2019-06-16 19:12 @Mohamed_Mostafa hi,I used to encounter a similar failure long time ago, if I had read this post, it ...
Thanks dear ,,, When I troubleshoot issue and find it useful for others I try to share it here .
View more
  • x
  • convention:

Great sharing
View more
  • x
  • convention:

Good
View more
  • x
  • convention:

IndianKid
Moderator Author Created Apr 26, 2021 07:21:31

Thanks for sharing. really useful case.
View more
  • x
  • convention:

Useful post. Thank you for sharing
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.