Netgear WFS709TP WFS709TP Setup Manual - Page 134

Configuring Captive Portal, If you are using Captive Portal to authenticate users - guest network

Page 134 highlights

WFS709TP ProSafe Smart Wireless Switch Software Administration Manual If an appropriate server certificate is not installed in the WFS709TP, wireless clients that use Captive Portal may see a Security Alert message when logging in (Figure 8-1). Figure 8-1 To prevent this message from appearing on clients, install a valid server certificate as described in "Installing a Server Certificate" on page 13-19. You enable Captive Portal on a per-ESSID basis. Captive Portal users are initially allowed only DNS, DHCP, and HTTP or HTTPS connections to the network. Upon authentication, Captive Portal users are allowed full access to their assigned VLAN. Note: MAC-based authentication, if enabled on the WFS709TP, takes precedence over Captive Portal authentication. If you use Captive Portal, do not enable MAC-based authentication. Configuring Captive Portal The following are the basic tasks for configuring Captive Portal in the base operating system: • Configure the Captive Portal for guest or authenticated users. In the base operating system, you enable Captive Portal on a per-ESSID basis. • If you are using Captive Portal to authenticate users, configure the authentication server that will be used to validate users. The authentication server can be either an external server or the WFS709TP's internal database. 8-2 Configuring the Captive Portal v1.0, June 2007

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222

WFS709TP ProSafe Smart Wireless Switch Software Administration Manual
8-2
Configuring the Captive Portal
v1.0, June 2007
If an appropriate server certificate is not installed in the WFS709TP, wireless clients that use
Captive Portal may see a Security Alert message when logging in (
Figure 8-1
).
To prevent this message from appearing on clients, install a valid server certificate as described in
“Installing a Server Certificate” on page 13-19
.
You enable Captive Portal on a per-ESSID basis. Captive Portal users are initially allowed only
DNS, DHCP, and HTTP or HTTPS connections to the network. Upon authentication, Captive
Portal users are allowed full access to their assigned VLAN.
Configuring Captive Portal
The following are the basic tasks for configuring Captive Portal in the base operating system:
Configure the Captive Portal for guest or authenticated users. In the base operating system,
you enable Captive Portal on a per-ESSID basis.
If you are using Captive Portal to authenticate users, configure the authentication server that
will be used to validate users. The authentication server can be either an external server or the
WFS709TP’s internal database.
Figure 8-1
Note:
MAC-based authentication, if enabled on the WFS709TP, takes precedence over
Captive Portal authentication. If you use Captive Portal, do not enable MAC-based
authentication.