Skipping captive portal after successfull mac-auth

  • 1
  • Question
  • Updated 2 years ago
Hi all!

I am developing an Externat Captive Portal for Guest Users, with an External Radius Server (Free-Radius fork and PostgreSQL).

I mostly use BR200 as Aerohive Device, setting both Mac-Auth and Captive Portal to login, in this order.
Radius Server recognizes recently-logged MAC-Addresses, allowing these users to navigate without showing captive portal every time. This works because on BR200 mac-auth automatically bypass captive portal authentication.

So, with BR200, a failed Mac-Auth shows Captive Portal, while a successfull one does not. This is worderful.

Now, for a big project, I tried to do the same with APs BUT the behaviour is totally different:
 - if Mac-Auth fails no Captive Portal is shown, and the user is no authenticated at all.
 - if Mac-Auth success Captive Portal is shown.

Why this differents behaviours?

Is it possible to tell APs to work "like a br200" to authenticate users?

Is it possible to define a Radius VSA Attribute during Mac-Auth (always on Access-Accept) that specify if CWP should be skipped or not? How?
Photo of Alberto Bed

Alberto Bed

  • 1 Post
  • 0 Reply Likes
  • frustrated

Posted 2 years ago

  • 1

Be the first to post a reply!