373Layer3 source network:IP address Prefix lengthDestination authenticate subnet:IP address Prefix lengthA user can perform portal authentication through a Web page. Before passing the authentication, theuser can access only the authentication page http://2.2.2.1:2331/portal and all Web requests will beredirected to the authentication page. After passing the authentication, the user can access othernetwork resources.# After the user passes authentication, use the following command to display information about theportal user.[Router] display portal user interface gigabitethernet 1/0/2Total portal users: 1Username: abcPortal server: newptState: OnlineVPN instance: N/AMAC IP VLAN Interface0015-e9a6-7cfe 2.2.2.2 -- GigabitEthernet1/0/2Authorization information:IP pool: N/AUser profile: N/ASession group profile: N/AACL: N/AInbound CAR: N/AOutbound CAR: N/AInbound priority: N/AOutbound priority: N/AExample: Configuring MAC-based quick portal authenticationNetwork configurationAs shown in Figure 130, the host accesses the network through a router. The host is assigned apublic IP address either manually or through DHCP. A portal server acts as a portal authenticationserver, a portal Web server, and a MAC binding server. A RADIUS server acts as theauthentication/accounting server.Configure direct portal authentication, so the host can access only the portal Web server beforepassing the authentication and can access other network resources after passing the authentication.