深信服社区»版块 安全类 行为管理AC 认证通过延迟

认证通过延迟

查看数: 2758 | 评论数: 13 | 收藏 0
关灯 | 提示:支持键盘翻页<-左 右->
    组图打开中,请稍候......
发布时间: 2016-11-15 11:34

正文摘要:

设备是nag6500,前段时间设备出了点小问题,就是不能开启断网策略和使用断网用户组,后来禁用了断网策略,将未实名登记的电脑所在组的流量调到最低,逼着他们认证。现在问题是这样,接到部分用户的反馈是电脑开机后 ...

回复

水之蓝色 发表于 2016-12-8 08:07
我的电脑前两天重做了遍系统,问题解决,看来还是我网卡驱动的问题。
andy_AAAAA 发表于 2016-11-17 08:42
转圈、、、是检测服务啊
水之蓝色 发表于 2016-11-17 08:25
还是老样子。下面是3层交换机的配置,大家帮看看,是不是里面的设置的问题:
<HCNorth5500>dis curr
#
version 5.20, Release 2202
#
sysname HCNorth5500
#
irf mac-address persistent timer
irf auto-update enable
undo irf link-delay
#
domain default enable system
#
dns server 222.222.222.222
dns server 219.150.32.132
#
telnet server enable
#
undo ip ttl-expires
#
vlan 1
description to_WebManagement
#
vlan 20
description to_WestBuilding
#               
vlan 60         
description to_MainBuilding
#               
vlan 70         
description to_EastBuilding1floor
#               
vlan 80         
description to_EastBuilding2floor
#               
vlan 90         
description to_EastBuilding3floor
#               
vlan 100        
description to_EastBuilding4floor
#               
vlan 110        
description to_TeacherBuilding
#               
vlan 120        
description to_Hostel
#               
vlan 130        
description to_NewTeachingBuilding
#               
vlan 160        
description to_LogisticsBuilding
#               
vlan 170        
description to_LibraryBuilding
#               
vlan 180        
description to_ArtisticBuilding
#               
vlan 190        
description to_ceshi
#               
vlan 200        
description to_JiaoShi-1DanYuan
#               
vlan 210        
description to_JiaoShi-3DanYuan-1ceng
#               
vlan 220        
description to_JiaoShi-3DanYuan-3ceng
#               
vlan 230        
description to_JiaoShi-3DanYuan-4ceng
#               
vlan 240        
description to_JiaoShi-3DanYuan-5ceng
#               
vlan 250        
description to_JiaoShi-3DanYuan-6ceng
#               
vlan 300        
description TO-XiPei-YiKaTong
#               
vlan 1000      
description to_AC
#               
vlan 1001      
description to_LuanChengCampus
#               
vlan 1004      
description to_ShiPinHuiYi
#               
vlan 2000      
description to_ServerGroup
#               
radius scheme system
server-type extended
primary authentication 127.0.0.1 1645
primary accounting 127.0.0.1 1646
user-name-format without-domain
#               
domain system   
access-limit disable
state active   
idle-cut disable
self-service-url disable
#               
dhcp server ip-pool vlan20
network 10.30.2.0 mask 255.255.255.0
gateway-list 10.30.2.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan60
network 10.30.6.0 mask 255.255.255.0
gateway-list 10.30.6.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan70
network 10.30.7.0 mask 255.255.255.0
gateway-list 10.30.7.254
dns-list 222.222.222.222
expired day 3  
#               
dhcp server ip-pool vlan80
network 10.30.8.0 mask 255.255.255.0
gateway-list 10.30.8.254
dns-list 222.222.222.222
expired day 3  
#               
dhcp server ip-pool vlan90
network 10.30.9.0 mask 255.255.255.0
gateway-list 10.30.9.254
dns-list 222.222.222.222
expired day 3  
#               
dhcp server ip-pool vlan100
network 10.30.10.0 mask 255.255.255.0
gateway-list 10.30.10.254
dns-list 222.222.222.222
expired day 3  
#               
dhcp server ip-pool vlan110
network 10.30.11.0 mask 255.255.255.0
gateway-list 10.30.11.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan120
network 10.30.12.0 mask 255.255.255.224
gateway-list 10.30.12.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan130
network 10.30.13.0 mask 255.255.255.0
gateway-list 10.30.13.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan160
network 10.30.16.0 mask 255.255.255.0
gateway-list 10.30.16.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan170
network 10.30.17.0 mask 255.255.255.0
gateway-list 10.30.17.254
dns-list 222.222.222.222
expired day 3  
#               
dhcp server ip-pool vlan180
network 10.30.18.0 mask 255.255.255.0
gateway-list 10.30.18.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan190
network 10.30.19.0 mask 255.255.255.0
gateway-list 10.30.19.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan200
network 10.30.20.0 mask 255.255.255.0
gateway-list 10.30.20.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan210
network 10.30.21.0 mask 255.255.255.0
gateway-list 10.30.21.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan220
network 10.30.22.0 mask 255.255.255.0
gateway-list 10.30.22.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan230
network 10.30.23.0 mask 255.255.255.0
gateway-list 10.30.23.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan240
network 10.30.24.0 mask 255.255.255.0
gateway-list 10.30.24.254
dns-list 222.222.222.222
#               
dhcp server ip-pool vlan250
network 10.30.25.0 mask 255.255.255.0
gateway-list 10.30.25.254
dns-list 222.222.222.222
#               
user-group system
#               
local-user h3c  
password cipher QJMLB*@UZ63Q=^Q`MAF4<1!!
authorization-attribute level 3
service-type telnet
#               
interface NULL0
#               
interface Vlan-interface1
description to_WebManagement
ip address 10.100.0.1 255.255.255.0
#               
interface Vlan-interface20
description to_WestBuilding
ip address 10.30.2.254 255.255.255.0
#               
interface Vlan-interface60
description to_MainBuilding
ip address 10.30.6.254 255.255.255.0
#               
interface Vlan-interface70
description to_EastBuilding1floor
ip address 10.30.7.254 255.255.255.0
#               
interface Vlan-interface80
description to_EastBuilding2floor
ip address 10.30.8.254 255.255.255.0
#               
interface Vlan-interface90
description to_EastBuilding3floor
ip address 10.30.9.254 255.255.255.0
#               
interface Vlan-interface100
description to_EastBuilding4floor
ip address 10.30.10.254 255.255.255.0
#               
interface Vlan-interface110
description to_TeacherBuilding
ip address 10.30.11.254 255.255.255.0
#               
interface Vlan-interface120
description to_Hostel
ip address 10.30.12.254 255.255.255.224
#               
interface Vlan-interface130
description to_NewTeachingBuilding
ip address 10.30.13.254 255.255.255.0
#               
interface Vlan-interface160
description to_LogisticsBuilding
ip address 10.30.16.254 255.255.255.0
#               
interface Vlan-interface170
description to_LibraryBuilding
ip address 10.30.17.254 255.255.255.0
#               
interface Vlan-interface180
description to_ArtisticBuilding
ip address 10.30.18.254 255.255.255.0
#               
interface Vlan-interface190
ip address 10.30.19.254 255.255.255.0
#               
interface Vlan-interface200
description to_JiaoShi-1DanYuan
ip address 10.30.20.254 255.255.255.0
#               
interface Vlan-interface210
description to_JiaoShi-3DanYuan-1ceng
ip address 10.30.21.254 255.255.255.0
#               
interface Vlan-interface220
description to_JiaoShi-3DanYuan-3ceng
ip address 10.30.22.254 255.255.255.0
#               
interface Vlan-interface230
description to_JiaoShi-3DanYuan-4ceng
ip address 10.30.23.254 255.255.255.0
#               
interface Vlan-interface240
description to_JiaoShi-3DanYuan-5ceng
ip address 10.30.24.254 255.255.255.0
#               
interface Vlan-interface250
description to_JiaoShi-3DanYuan-6ceng
ip address 10.30.25.254 255.255.255.0
#               
interface Vlan-interface300
description TO-XiPei-YiKaTong
ip address 10.30.30.254 255.255.255.0
#               
interface Vlan-interface1000
ip address 172.16.0.252 255.255.0.0
#               
interface Vlan-interface1001
description to_LuanChenCampus
#               
interface Vlan-interface1004
description to_ShiPinHuiYi
ip address 10.255.4.254 255.255.255.0
#               
interface Vlan-interface2000
description to_ServerGroup
ip address 10.30.0.254 255.255.255.0
#               
interface GigabitEthernet1/0/1
description to_AC
port access vlan 1000
#               
interface GigabitEthernet1/0/2
description to_LuanChengCampus
port access vlan 1001
#               
interface GigabitEthernet1/0/3
description to_WestBuilding
port access vlan 20
#               
interface GigabitEthernet1/0/4
description to_MainBuilding
port access vlan 60
#               
interface GigabitEthernet1/0/5
description to_EastBuilding1floor
port access vlan 70
#               
interface GigabitEthernet1/0/6
description to_EastBuilding2floor
port access vlan 80
#               
interface GigabitEthernet1/0/7
description to_EastBuilding3floor
port access vlan 90
#               
interface GigabitEthernet1/0/8
description to_EastBuilding4floor
port access vlan 100
#               
interface GigabitEthernet1/0/9
description to_TeacherBuildingAndHostel
port link-type trunk
port trunk permit vlan 1 110 120 200 210 220 230 240 250
#               
interface GigabitEthernet1/0/10
description to_NewTeachingBuilding
port access vlan 130
#               
interface GigabitEthernet1/0/11
description to_LogisticsBuilding
port access vlan 160
#               
interface GigabitEthernet1/0/12
description to_LibraryBuilding
port link-type trunk
port trunk permit vlan 1 170 180 1004
#               
interface GigabitEthernet1/0/13
port access vlan 190
#               
interface GigabitEthernet1/0/14
port access vlan 2000
#               
interface GigabitEthernet1/0/15
port access vlan 2000
#               
interface GigabitEthernet1/0/16
port access vlan 2000
#               
interface GigabitEthernet1/0/17
port access vlan 2000
#               
interface GigabitEthernet1/0/18
port access vlan 2000
#               
interface GigabitEthernet1/0/19
port access vlan 2000
#               
interface GigabitEthernet1/0/20
port access vlan 2000
#               
interface GigabitEthernet1/0/21
#               
interface GigabitEthernet1/0/22
port access vlan 2000
#               
interface GigabitEthernet1/0/23
description TO-XiPei-YiKaTong
port access vlan 300
#               
interface GigabitEthernet1/0/24
description to_ServerGroup
#               
interface GigabitEthernet1/0/25
shutdown      
#               
interface GigabitEthernet1/0/26
shutdown      
#               
interface GigabitEthernet1/0/27
shutdown      
#               
interface GigabitEthernet1/0/28
shutdown      
#               
ip route-static 0.0.0.0 0.0.0.0 172.16.0.254
ip route-static 10.254.0.0 255.255.0.0 172.16.3.254
ip route-static 192.168.0.0 255.255.0.0 172.16.3.254
#               
snmp-agent     
snmp-agent local-engineid 800063A20374258A9AEF3E
snmp-agent community read public
snmp-agent sys-info version all
#               
dhcp server forbidden-ip 10.30.8.254
dhcp server forbidden-ip 10.30.9.254
dhcp server forbidden-ip 10.30.7.254
dhcp server forbidden-ip 10.30.2.254
dhcp server forbidden-ip 10.30.3.254
dhcp server forbidden-ip 10.30.4.254
dhcp server forbidden-ip 10.30.5.254
dhcp server forbidden-ip 10.30.6.254
dhcp server forbidden-ip 10.30.10.254
dhcp server forbidden-ip 10.30.11.254
dhcp server forbidden-ip 10.30.12.254
dhcp server forbidden-ip 10.30.13.254
dhcp server forbidden-ip 10.30.14.254
dhcp server forbidden-ip 10.30.15.254
dhcp server forbidden-ip 10.30.16.254
dhcp server forbidden-ip 10.30.17.254
dhcp server forbidden-ip 10.30.18.254
dhcp server forbidden-ip 10.30.19.254
dhcp server forbidden-ip 10.30.12.225
dhcp server forbidden-ip 10.30.12.226
dhcp server forbidden-ip 10.30.12.227
dhcp server forbidden-ip 10.30.12.228
dhcp server forbidden-ip 10.30.12.229
dhcp server forbidden-ip 10.30.12.230
dhcp server forbidden-ip 10.30.12.231
dhcp server forbidden-ip 10.30.12.232
dhcp server forbidden-ip 10.30.12.233
dhcp server forbidden-ip 10.30.12.234
dhcp server forbidden-ip 10.30.12.235
dhcp server forbidden-ip 10.30.12.236
dhcp server forbidden-ip 10.30.12.237
dhcp server forbidden-ip 10.30.12.238
dhcp server forbidden-ip 10.30.12.239
dhcp server forbidden-ip 10.30.12.240
dhcp server forbidden-ip 10.30.12.241
dhcp server forbidden-ip 10.30.12.242
dhcp server forbidden-ip 10.30.12.243
dhcp server forbidden-ip 10.30.12.244
dhcp server forbidden-ip 10.30.12.245
dhcp server forbidden-ip 10.30.12.246
dhcp server forbidden-ip 10.30.12.247
dhcp server forbidden-ip 10.30.12.248
dhcp server forbidden-ip 10.30.12.249
dhcp server forbidden-ip 10.30.12.250
dhcp server forbidden-ip 10.30.12.251
dhcp server forbidden-ip 10.30.12.252
dhcp server forbidden-ip 10.30.12.253
dhcp server forbidden-ip 10.30.20.254
dhcp server forbidden-ip 10.30.21.254
dhcp server forbidden-ip 10.30.22.254
dhcp server forbidden-ip 10.30.23.254
dhcp server forbidden-ip 10.30.24.254
dhcp server forbidden-ip 10.30.25.254
dhcp server forbidden-ip 10.30.17.253
#               
dhcp enable   
#               
user-interface aux 0 8
user-interface vty 0 4
authentication-mode scheme
#               
return         
小伙,不错 发表于 2016-11-16 17:38
如果设备开了直通后故障现象还是存在,基本可以确定和设备没什么关系了,建议检查二层网络问题
Sangfor闪电回_小丸子 发表于 2016-11-16 16:25
您好 请问下这个问题解决了吗?如果没有解决,可以跟帖说明;如果已经解决,希望分享下处理结果
谢谢
深拥 发表于 2016-11-16 10:04
设备开了直通后故障现象还是存在,就和设备没什么关系了,建议检查二层网络问题
我自己 发表于 2016-11-15 16:22
老大电脑图标转圈圈----是电脑还没有完全吧。。。。。。。。。
水之蓝色 发表于 2016-11-15 15:38
开直通后的截图,web过滤了好像,应该调整哪里的设置?
Sangfor闪电回_小丸子 发表于 2016-11-15 15:57
您好 检查用户所关联的上网权限策略;设备针对电脑开了直通以后,电脑的网卡状态显示是否正常?上网是否正常呢?