The display domain command displays the configuration of a domain, including the domain name, status, accounting scheme table, authentication scheme table, CAR index, idle-cut time, default user priority, maximum number of access users, number of online users, and index.
Usage Scenario
If you run the display domain command in the domain view or specify a domain name in the command, the command displays detailed configuration information about the domain. If you run this command in the other views and do not specify a domain name, the command displays brief configuration information about all the existing domains.
The actual command output varies according to the device. The command output here is only an example.
<HUAWEI> display domain isp1 ------------------------------------------------------------------------------ Domain-name : isp1 Domain-state : Active Authentication-scheme-name : default1 Accounting-scheme-name : default1 Authorization-scheme-name : - Primary-DNS-IP-address : - Second-DNS-IP-address : - Primary-DNS-IPV6-address : - Second-DNS-IPV6-address : - Web-server-URL-parameter : No Portal-server-URL-parameter : No Primary-NBNS-IP-address : - Second-NBNS-IP-address : - Time-range : Disable Idle-cut direction : Both Idle-data-attribute (time,flow) : 0, 60 User detect interval : 0s User detect retransmit times : 0 Install-BOD-Count : 0 Report-VSM-User-Count : 0 Value-added-service : default User-access-limit : 1045504 Online-number : 0 Web-IP-address : - Web-IPv6-address : - Web-URL : - Web-auth-server : - Web-auth-state : - Web-server-mode : get Slave Web-IP-address : - Slave Web-IPv6-address : - Slave Web-URL : - Slave Web-auth-server : - Slave Web-auth-state : - Web-server identical-url : Disable Portal-server-IP : - Portal-URL : - Portal-force-times : 2 Portal-server identical-url : Disable Service-policy(Portal) : - PPPoE-user-URL : Disable AdminUser-priority : 16 IPUser-ReAuth-Time : 300s mscg-name-portal-key : - Portal-shared-secret-key : ****** Subscription-id-key : abcdefg Portal-user-first-url-key : - User-session-limit : 4294967295 Ancp auto qos adapt : Disable L2TP-group-name : - User-lease-time-no-response : 0s RADIUS-server-template : - Two-acct-template : - RADIUS-server-pre-template : - - - HWTACACS-server-template : - Bill Flow : Disable Tunnel-acct-2867 : Disable Qos-profile-name inbound : - Qos-profile-name outbound : - Flow Statistic: Flow-Statistic-Up : Yes Flow-Statistic-Down : Yes Source-IP-route : Disable IP-warning-threshold : - IP-warning-threshold(Low) : - IPv6-warning-threshold : - IPv6-warning-threshold(Low) : - Multicast Forwarding : Yes Multicast Virtual : No Max-multilist num : 4 Multicast-profile : - Multicast-profile ipv6 : - Multicast-policy : - Multicast-bandwidth : - Multicast-bandwidth-level-1 : - Quota-out : Offline Service-type : - User-basic-service-ip-type : -/-/- PPP-ipv6-address-protocol : Ndra IPv6-information-protocol : Stateless dhcpv6 IPv6-PPP-assign-interfaceid : Disable IPv6-PPP-NDRA-halt : Disable IPv6-PPP-NDRA-unicast : Disable Trigger-packet-wait-delay : 60s Peer-backup : Enable Redirect-domain user-group : Enable Redirect-domain qos-profile : Enable Redirect-domain accouting-scheme: Enable Redirect-domain ip-unr-tag : Enable Reallocate-ip-address : Disable Cui enable : Disable Igmp enable : Enable Pim snooping enable : Enable L2tp-user radius-force : Disable Accounting dual-stack : Separate Radius server domain-annex : - Dhcp-option64-service : Disable Parse-separator : - Parse-segment-value : - Dhcp-receive-server-packet : - Http-hostcar : Disable Dhcp-user auto-save : Disable IP-pool usage-status threshold : 255 , 255 Select-Pool-Rule : gateway + local priority AFTR name : - Traffic-rate-mode : Separate Traffic-statistic-mode : Separate Rate-limit-mode-inbound : Car Rate-limit-mode-outbound : Car Service-change-mode : Stop-start Session Volumequota apply direction: both Soap-server group : - Nas logic-sysname : - Multicast-flow separate(L2tp) : No Accounting exclude-type vlan : -/- Framed-ip urpf : Enable Local backup : Enable Stop dropped flow direction : - Interval dropped flow direction : - Portal redirect-time : 50s Layer2 IPoE ip-pool select-mode : Remote Layer2 PPPoE ip-pool select-mode: Local Redirect Diffserv Domain : ss1 RA link-prefix : Enable IPv6 address assignment mode : Circuit-id access-trigger loose time(minute) :0 access-trigger loose infinite-lease :Enable IP unr tag :1234 IPoE user ipv6-pd address release policy : Separate Coa-zero-lease Dual-cut : Disable Real-time accounting-copy : Disable Authentication fail online domain : huawei Access user-group-list : list1 Auto-login-type : WEB Auto-login web-auth-server : 55::(VPN:test) ------------------------------------------------------------------------------ <HUAWEI> display domain isp1 ------------------------------------------------------------------------------ Domain-name : isp1 Domain-state : Active Authentication-scheme-name : default1 Accounting-scheme-name : default1 Authorization-scheme-name : - Primary-DNS-IP-address : - Second-DNS-IP-address : - Primary-DNS-IPV6-address : - Second-DNS-IPV6-address : - Web-server-URL-parameter : No Portal-server-URL-parameter : No Primary-NBNS-IP-address : - Second-NBNS-IP-address : - Time-range : Disable Idle-cut direction : Both Idle-data-attribute (time,flow) : 0, 60 User detect interval : 0s User detect retransmit times : 0 Install-BOD-Count : 0 Report-VSM-User-Count : 0 Value-added-service : default User-access-limit : 1045504 Online-number : 0 Web-IP-address : - Web-IPv6-address : - Web-URL : - Web-auth-server : - Web-auth-state : - Web-server-mode : get Slave Web-IP-address : - Slave Web-IPv6-address : - Slave Web-URL : - Slave Web-auth-server : - Slave Web-auth-state : - Web-server identical-url : Disable Portal-server-IP : - Portal-URL : - Portal-force-times : 2 Portal-server identical-url : Disable Service-policy(Portal) : - PPPoE-user-URL : Disable AdminUser-priority : 16 IPUser-ReAuth-Time : 300s mscg-name-portal-key : - Subscription-id-key : abcdefg Portal-user-first-url-key : - User-session-limit : 4294967295 Ancp auto qos adapt : Disable L2TP-group-name : - User-lease-time-no-response : 0s RADIUS-server-template : - Two-acct-template : - RADIUS-server-pre-template : - - - HWTACACS-server-template : - Bill Flow : Disable Tunnel-acct-2867 : Disable Qos-profile-name inbound : - Qos-profile-name outbound : - Flow Statistic: Flow-Statistic-Up : Yes Flow-Statistic-Down : Yes Source-IP-route : Disable IP-warning-threshold : - IP-warning-threshold(Low) : - IPv6-warning-threshold : - IPv6-warning-threshold(Low) : - Multicast Forwarding : Yes Multicast Virtual : No Max-multilist num : 4 Multicast-profile : - Multicast-profile ipv6 : - Multicast-policy : - Multicast-bandwidth : - Multicast-bandwidth-level-1 : - Quota-out : Offline Service-type : - User-basic-service-ip-type : -/-/- PPP-ipv6-address-protocol : Ndra IPv6-information-protocol : Stateless dhcpv6 IPv6-PPP-assign-interfaceid : Disable IPv6-PPP-NDRA-halt : Disable IPv6-PPP-NDRA-unicast : Disable Trigger-packet-wait-delay : 60s Peer-backup : Enable Redirect-domain user-group : Enable Redirect-domain qos-profile : Enable Redirect-domain accouting-scheme: Enable Redirect-domain ip-unr-tag : Enable Reallocate-ip-address : Disable Cui enable : Disable Igmp enable : Enable Pim snooping enable : Enable L2tp-user radius-force : Disable Accounting dual-stack : Separate Radius server domain-annex : - Dhcp-option64-service : Disable Parse-separator : - Parse-segment-value : - Dhcp-receive-server-packet : - Http-hostcar : Disable Dhcp-user auto-save : Disable IP-pool usage-status threshold : 255 , 255 Select-Pool-Rule : gateway + local priority AFTR name : - Traffic-rate-mode : Separate Traffic-statistic-mode : Separate Rate-limit-mode-inbound : Car Rate-limit-mode-outbound : Car Service-change-mode : Stop-start Session Volumequota apply direction: both Soap-server group : - Nas logic-sysname : - Multicast-flow separate(L2tp) : No Accounting exclude-type vlan : -/- Framed-ip urpf : Enable Local backup : Enable Stop dropped flow direction : - Interval dropped flow direction : - Portal redirect-time : 50s Layer2 IPoE ip-pool select-mode : Remote Layer2 PPPoE ip-pool select-mode: Local Redirect Diffserv Domain : ss1 RA link-prefix : Enable IPv6 address assignment mode : Circuit-id access-trigger loose time(minute) :0 access-trigger loose infinite-lease :Enable IP unr tag :1234 IPoE user ipv6-pd address release policy : Separate Coa-zero-lease Dual-cut : Disable Real-time accounting-copy : Disable Authentication fail online domain : huawei Access user-group-list : list1 ------------------------------------------------------------------------------
<HUAWEI> display domain
------------------------------------------------------------------------------
Domain name State CAR Access-limit Online BODNum RptVSMNum
------------------------------------------------------------------------------
default0 Active 0 1045504 0 0 0
default1 Active 0 1045504 0 0 0
default_admin Active 0 1045504 0 0 0
default Active 0 1045504 0 0 0
isp1 Active 0 1045504 0 0 0
------------------------------------------------------------------------------
Total 5,5 printed
Item | Description |
---|---|
Domain-name | Domain name. |
Domain-state | Domain status, which can be:
|
Authentication-scheme-name | Name of the authentication scheme used by the domain. If no authentication scheme is configured using the authentication-scheme (AAA domain view) command, the default authentication scheme for the domain is displayed. |
Accounting-scheme-name | Name of the accounting scheme used by the domain. If no accounting scheme is configured using the accounting-scheme (AAA domain view) command, the default accounting scheme for the domain is displayed. |
Authorization-scheme-name | Name of the authorization scheme used by the domain. If no authorization scheme is configured using the authorization-scheme (AAA domain view) command, a hyphen (-) is displayed. |
Primary-DNS-IP-address | IP address of the primary DNS server. If no primary DNS server is specified using the dns primary-ip command, a hyphen (-) is displayed. |
Second-DNS-IP-address | IP address of the secondary DNS server. If no secondary DNS server is specified using the dns second-ip command, a hyphen (-) is displayed. |
Primary-DNS-IPV6-address | IPv6 address of the primary DNS server. If no primary IPv6 DNS server is specified using the dns primary-ipv6 command, a hyphen (-) is displayed. |
Second-DNS-IPV6-address | IPv6 address of the secondary DNS server. If no secondary IPv6 DNS server is specified using the dns second-ipv6 command, a hyphen (-) is displayed. |
Web-server-URL-parameter | Whether the URL of the web page to which the web server redirects users carries the specified parameter.
This function is configured using the web-server url-parameter command. Yes is displayed if the web-server url-parameter command has been run; No is displayed if the web-server url-parameter command has not been run. |
Portal-server-URL-parameter | Whether the URL of the web page to which the portal server redirects users carries the specified parameter.
This function is configured using the portal-server url-parameter command. Yes is displayed if the portal-server url-parameter command has been run; No is displayed if the portal-server url-parameter command has not been run. |
Primary-NBNS-IP-address | IP address of the primary NBNS server. If no primary NBNS server is specified using the nbns primary-ip command, a hyphen (-) is displayed. |
Second-NBNS-IP-address | IP address of the secondary NBNS server. If no secondary NBNS server is specified using the nbns second-ip command, a hyphen (-) is displayed. |
Time-range | Whether the domain is automatically blocked in a specified time range.
This function is configured using the time-range domain-block enable command. Enable is displayed if the time-range domain-block enable command has been run; Disable is displayed if the time-range domain-block enable has not been run. |
Idle-cut direction | Whether idle cut parameters are applied to incoming traffic, outgoing traffic, or both. This function is configured using the idle-cut command. inbound is displayed if inbound is configured in the idle-cut command. outbound is displayed if outbound is configured. Both is displayed if neither inbound nor outbound is configured. |
Idle-data-attribute (time,flow) | Idle cut parameters including the duration that idle users are allowed to keep online and the traffic volume for determining whether the user is idle. |
User detect interval | Interval at which the device sends ARP probes to detect online users. If this parameter is not configured using the user detect command, the default value 0s is displayed, indicating that online user detection is not performed. |
User detect retransmit times | Number of ARP probe retransmission attempts. If this parameter is not configured using the user detect command, 0 is displayed. |
Install-BOD-Count | Number of users that have installed BOD. |
Report-VSM-User-Count | Report VSM user count. |
Value-added-service | Accounting policy for the value-added service (VAS) which can be:
If this parameter is not configured using the value-added-service account-type command, Default is displayed. |
User-access-limit | Maximum number of the users in the domain that are allowed to access the Internet. If this parameter is not configured using the access-limit command, the default value is displayed. |
Online-number | Number of the current online users. |
Web-IP-address | IP address of the web authentication server. If this parameter is not specified using the web-server ip-address command, a hyphen (-) is displayed. |
Web-IPv6-address | IPv6 address of the web authentication server. |
Web-URL | Uniform Resource Location (URL) of the web page. If this parameter is not configured using the web-server url url command, a hyphen (-) is displayed. |
Web-auth-server | Web authentication server bound to a forced web server. If this parameter is not configured using the web-server bind web-auth-server command, a hyphen (-) is displayed. |
Web-auth-state | Status of the web authentication server. |
Web-server-mode | HTTP mode for the web server. If this parameter is not configured using the web-server mode command, a hyphen (-) is displayed. |
Slave Web-IP-address | IP address of the secondary web authentication server. If this parameter is not configured using the web-server ip-address slave command, a hyphen (-) is displayed. |
Slave Web-URL | URL of the secondary web page. If this parameter is not configured using the web-server url url slave command, a hyphen (-) is displayed. |
Slave Web-auth-server | Web authentication server bound to the secondary forced web server. If this parameter is not configured using the web-server bind web-auth-server ip-address slave command, a hyphen (-) is displayed. |
Slave Web-auth-state | Status of the web authentication server bound to the secondary forced web server. |
Slave Web-IPv6-address | IPv6 address of the secondary web authentication server. |
Web-server identical-url | Flag indicating whether uniform URL is configured for the web server.
|
Portal-server-IP | IP address of the Portal server for the captive portal service. If this parameter is not configured using the portal-server ip-address command, a hyphen (-) is displayed. |
Portal-URL | Forcibly-redirected URL address for the captive portal service. If this parameter is not configured using the portal-server url url command, a hyphen (-) is displayed. |
Portal-force-times | Number of times that the system attempts forcible appending. If this parameter is not configured using the portal-server redirect-limit limit command, a hyphen (-) is displayed. |
Portal-server identical-url | Flag indicating whether uniform URL is configured for the portal server.
|
Service-policy(Portal) | Name of the portal service policy applied to the domain. If this parameter is not configured using the service-policy (AAA domain view) command, a hyphen (-) is displayed. |
PPPoE-user-URL | URL of the web page to which PPPoE users are redirected after they are authenticated. If this parameter is not configured using the pppoe-url url command, a hyphen (-) is displayed. |
AdminUser-priority | User level when the domain user logs in as an administrator. If this parameter is not configured using the adminuser-priority command, 16 is displayed, indicating that the domain user cannot log in as an administrator. |
IPUser-ReAuth-Time | IP user re-authentication time. If this parameter is not configured using the max-ipuser-reauthtime command, the default value 300s is displayed. |
mscg-name-portal-key | Name of the device through which users go online for the captive portal service. If this parameter is not configured using the web-server redirect-key mscg-name command, a hyphen (-) is displayed. |
Portal-shared-secret-key | Specifies the key used for encryption of the MAC address when the MAC address is sent to the portal server. The key is configured using the portal-server url-parameter shared-key-cipher command. If this command is not run, the key is not displayed. |
Portal-user-first-url-key | URL keyword of the web page to which the portal server directs users. If this parameter is not configured using the portal-server user-first-url-key command, a hyphen (-) is displayed. |
User-session-limit | Maximum number of access users for a user account. If this parameter is not configured using the user-max-session command, the default value is displayed. |
Ancp auto qos adapt | Whether the automatic bandwidth adaptation function of the Access Node Control Protocol (ANCP) is enabled.
|
L2TP-group-name | Name of the L2TP group bound to the domain. If this parameter is not configured using the l2tp-group command, a hyphen (-) is displayed. |
User-lease-time-no-response | Lease time of a DHCP user when the RADIUS server does not respond (The default time is displayed if no lease time is configured.). If this parameter is not configured using the radius-no-response lease-time command, the default time is displayed. |
RADIUS-server-template | Name of the RADIUS server group. If this parameter is not configured using the radius-server group command, a hyphen (-) is displayed. |
Two-acct-template | Accounting server. If this parameter is not configured using the accounting-copy radius-server command, a hyphen (-) is displayed. |
RADIUS-server-pre-template | Name of the RADIUS server group to be used for pre-authentication in a domain. If this parameter is not configured using the radius-server pre-authentication group command, a hyphen (-) is displayed. |
HWTACACS-server-template | Name of the HWTACACS server template to which a domain is bound. If this parameter is not configured using the hwtacacs-server command, a hyphen (-) is displayed. |
Bill Flow | Whether to collect the statistics about the total traffic volume of the domain.
If this parameter is not configured using the flow-bill command, the default value Disable is displayed. |
Flow Statistic | Collection of domain flow statistic. |
Tunnel-acct-2867 | Whether tunnel accounting is enabled.
|
Qos-profile-name inbound | QoS profile bound to incoming traffic of the domain. If this parameter is not configured using the qos-profile inbound command, a hyphen (-) is displayed. |
Qos-profile-name outbound | QoS profile bound to outgoing traffic of the domain. If this parameter is not configured using the qos-profile outbound command, a hyphen (-) is displayed. |
Flow-Statistic-Up | Whether the system collects the statistics about the upstream traffic volume of the users in the domain.
If this parameter is not configured using the flow-statistic up command, the default value Yes is displayed. |
Flow-Statistic-Down | Whether the system collects the statistics about the downstream traffic volume of the users in the domain.
If this parameter is not configured using the flow-statistic down command, the default value Yes is displayed. |
Source-IP-route | Whether the source IP route is enabled. |
IP-warning-threshold | Alarm threshold for the IP address usage in the domain. If this parameter is not configured using the ip-warning-threshold command, a hyphen (-) is displayed. |
IP-warning-threshold(Low) | The lower alarm threshold of IP address usage in a domain. The domain is configured using the ip-warning-threshold lower-limit command. If the command is not run, this field is not displayed. |
IPv6-warning-threshold | Upper alarm threshold for the IPv6 address or prefix usage in the domain. If this parameter is not configured using the ipv6-warning-threshold command, a hyphen (-) is displayed. |
IPv6-warning-threshold(Low) | Lower alarm threshold for the IPv6 address or prefix usage in the domain. If this parameter is not configured using the ipv6-warning-threshold lower-limit command, a hyphen (-) is displayed. |
Multicast Forwarding | Multicast data replication status.
|
Multicast Virtual | Multicast virtual scheduling status.
|
Max-multilist num | Maximum number of the multicast programs that the user can watch at the same time. |
Multicast-profile | Name of the multicast profile bound to the domain. |
Multicast-profile ipv6 | Name of the IPv6 multicast profile bound to the domain. |
Quota-out | Policy to be taken when the quota is exhausted.
If this parameter is not configured using the quota-out command, the default value Offline is displayed. |
Service-type | Service type of the user in a domain, which can be:
|
User-basic-service-ip-type | Basic IP protocol. If this parameter is not configured using the user-basic-service-ip-type command, a hyphen (-) is displayed. |
PPP-ipv6-address-protocol | Address allocation mode for users.
If this parameter is not configured using the ipv6 nd autoconfig managed-address-flag command, the default value Ndra is displayed. |
IPv6-information-protocol | Other configuration allocation mode for users.
If this parameter is not configured using the ipv6 nd autoconfig other-flag command, the default value Stateless dhcpv6 is displayed. |
IPv6-PPP-assign-interfaceid | Whether the interface ID negotiated by the IPv6 Control Protocol (IPv6CP) and does not conflict with any existing ID can be carried in the Configure-Request packet.
If this function is not configured using the ipv6 nd autoconfig managed-address-flag interface-id ipv6cp command, the default value Disable is displayed. |
IPv6-PPP-NDRA-halt | Whether the device is enabled to send RA packets to domain users.
|
IPv6-PPP-NDRA-unicast | Whether the device is enabled to send RA packets that carry unicast destination IP addresses.
|
Trigger-packet-wait-delay | Time for access users to wait for Dynamic Host Configuration Protocol for IPv6 (DHCPv6) connection requests. If this parameter is not configured using the dhcpv6-follow-ipv6cp wait-delay command, the default value 60s is displayed. |
Peer-backup | Whether information about online users in the domain can be backed up to a remote device.
|
Redirect-domain user-group | Whether the configuration of Redirect-domain user-group takes effect. If this parameter is not configured using the redirect-domain effect-attribute user-group command, this field is not displayed. |
Redirect-domain qos-profile | Whether the configuration of Redirect-domain qos-profile takes effect. If this parameter is not configured using the redirect-domain effect-attribute accounting-scheme command, this field is not displayed. |
user-group | User-group in a domain. If this parameter is not configured using the user-group command, this field is not displayed. |
Reallocate-ip-address | Whether IP addresses are reallocated.
If this parameter is not configured using the reallocate-ip-address command, the default value is displayed. |
Cui enable | Whether CUI is enabled.
If this parameter is not configured using the cui enable command, the default value Disable is displayed. |
Igmp enable | Whether IGMP is enabled.
|
Pim snooping enable | Whether the PIM function is enabled in the domain.
|
Accounting dual-stack | Dual-stack accounting type.
If this parameter is not configured using the accounting dual-stack command, the default value identical is displayed. |
Accounting exclude-type vlan | Type of users whose packet byte statistics do not include VLAN header length. The value is displayed in the format of Layer 2 IPoE user/Layer 2 PPPoE user. The user type is specified using the accounting exclude-type vlanaccess-user layer2 { ipoe | pppoe } * command. If no user type is specified, the field displays -. |
Radius server domain-annex | String information added to the domain name of a user name when the BRAS configured in a domain sends request packets to the RADIUS server.
|
Dhcp-option64-service | Whether an Option 64 parsing mode is configured in the domain. disable is displayed if no Option 64 parsing mode is configured. enable is displayed if an Option 64 parsing mode is configured. |
Parse-separator | Option 64 parsing delimiter configured in the domain. A delimiter divides an Option 64 value into several segments. - is displayed if no delimiter is configured. The configured character is displayed if a delimiter is configured. |
Parse-segment-value | Segment that is separated by delimiters and that is configured in the domain to be the QoS profile name to be delivered. The value is an integer in the range of 1 to 3. - is displayed if no segment is configured to be a QoS profile name. An integer is displayed if a segment is configured to be a QoS profile name. |
Dhcp-receive-server-packet | Whether the function is enabled in the domain to process ACK packets sent by the DHCP server when users are online. - is displayed if the function is not enabled. ack is displayed if the function is enabled. |
Http-hostcar | Whether hostcar of HTTP packet is enabled.
If this parameter is not configured using the http-hostcar enable command, the default value Disable is displayed. |
IP-pool usage-status threshold | Lower and upper thresholds configured for public IP address pool usage in a domain. If the ip-pool usage-status threshold command is not configured, a hyphen (-) is displayed. If the ip-pool usage-status threshold command is configured, the lower and upper thresholds are displayed. |
Select-Pool-Rule | Address pool selection mode for a domain.
|
AFTR name | AFTR domain name. |
Session Volumequota apply direction | Traffic to which a user traffic volume quota applies:
|
Nas logic-sysname | NAS logic host name. If this parameter is not configured using the nas logic-sysnamehost-name command, this field is not displayed. |
Framed-ip urpf | Whether URPF is enabled when the RADIUS server is configured to allocate IP addresses.
You can run the framed-ip urpf disable command to disable URPF in this case. |
Local backup | Whether local backup is enabled.
|
Stop dropped flow direction | Direction in which the traffic discarding in Accounting-Stop messages is reported. The values are as follows:
|
Interval dropped flow direction | Direction in which the traffic discarding in real-time accounting messages is reported. The values are as follows:
|
Redirect Diffserv Domain | Redirect DS domain. |
Domain name | Domain name. |
IPv6 address assignment mode | Mode in which the device assigns addresses for users.
|
IP unr tag | Route tag. |
Coa-zero-lease Dual-cut | Whether the device is enabled to log out a dual-stack user from both IPv4 and IPv6 stacks when the RADIUS server delivers a zero lease for the user's IPv4 address in a CoA message and the user sends a Request message to renew the lease:
|
Real-time accounting-copy | Whether the device is enabled to stop sending real-time accounting packet to RADIUS accounting copy servers. This field is not displayed if this function is not enabled using the radius-server accounting-copy realtime disable command. |
Authentication fail online domain | Name of the domain to which users are redirected upon a RADIUS authentication failure. The domain is configured using the authening authen-fail online authen-domain domain-name command. If the command is not run, this field is not displayed. |
Access user-group-list | User group load balancing group. The domain is configured using the access user-group-list list-namecommand. If the command is not run, this field is not displayed. |
Auto-login-type | Mode in which web users automatically log in to the post-authentication mode. This mode can be configured using the access post-domain auto-login-type command. If the mode is not configured, the item is not displayed. |
Auto-login web-auth-server | Web authentication server address. This configuration is performed using the access post-domain auto-login-type web auth-server { <ip-address> | <ipv6-address> } [ vpn-instance <vpnName> ] command. If this configuration is not performed, the item is not displayed. |
State | Domain status, which can be:
|
CAR | Committed access rate (CAR) of the domain. |
Access-limit | Maximum number of users that are allowed to access the Internet from the domain. |
Online | Maximum number of online users in the domain. |
BODNum | Number of users that have installed BOD. |
RptVSMNum | Report VSM user count. |