Dell PowerConnect W Clearpass 100 Software 3.7 Deployment Guide - Page 67

Apple Captive Network Assistant Bypass with Amigopod, OS X machines running Lion 10.7.

Page 67 highlights

{$extra_fields.wlan} To display all the remembered fields for the current visitor session, use the syntax: {dump var=$extra_fields export=html} Apple Captive Network Assistant Bypass with Amigopod This section describes the process for leveraging the Amigopod Captive Portal to bypass the Captive Network Assistant (Web sheet) that is displayed on iOS device such as iPhones, iPad and more recently Mac OS X machines running Lion (10.7). Based on the proposed configuration in this guide, the combination of an Aruba Wi-Fi network and Amigopod Guest Access Solution can effectively be used to bypass the Captive Network Assistant technology implemented by Apple in various of their Wi-Fi enabled mobile devices. The need to bypass this Web sheet solution for prompting users to perform a Web authentication task will largely be driven by the customer design and need to control the user experience as guest or public access users authenticate to the network. By enabling a full client Web browser based authentication, this solution enables fully customized Web login experience to be developed and presented through the Amigopod portal options. Some examples of use cases for the browser-based authentication are as follows but certainly not limited to:  Display of a welcome page to host session statistics, logout button, link to continue to original destination  Display of an interstitial page for the display of advertising media before being granted access to the Internet  Based on browser detection, display a promotional link to a mobile device App from associated App Store for retail applications  Provide mobile device App based Web authentication for transparent Wi-Fi access in retail application  Mobile Device Access Control (MDAC) environments where the Web authentication process is used to push  Device configurations and client certificates to mobile devices. This Web sheet is displayed on iOS devices when a device connects to a Wi-Fi network that has been configured with Open security, such as those typically found in guest access networks or public hotspots. The benefit of this feature provided by Apple is to automatically prompt users to log in to the detected Captive Portal network without the need to explicitly open a Web browser. This is useful on mobile devices where many of the common applications are not browser based such as email, social networking applications, media streaming and these applications would otherwise fail to connect without the successful browser based authentication. The Apple operating systems detect the presence of a Captive Portal enabled network by attempting to request a Web page from the Apple public Web site. This HTTP GET process retrieves a simple success.html file from the Apple Web servers and the operating system uses the successful receipt of this file to assume that it is connected to an Open network without the requirement for Captive Portal style authentication. If the success.html file is not received, the operating system conversely assumes there is a Captive Portal in place and presents the Web sheet automatically to prompt the user to perform a Web authentication task. Once the Web authentication has successfully completed, the Web sheet window will be automatically closed down and therefore preventing the display of any subsequent welcome pages or redirecting the user to their configured home page. Amigopod 3.7 | Deployment Guide RADIUS Services | 67

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403
  • 404
  • 405
  • 406
  • 407
  • 408
  • 409
  • 410
  • 411
  • 412
  • 413
  • 414
  • 415
  • 416
  • 417
  • 418
  • 419
  • 420
  • 421
  • 422
  • 423
  • 424
  • 425
  • 426
  • 427
  • 428
  • 429
  • 430
  • 431
  • 432
  • 433
  • 434
  • 435
  • 436
  • 437
  • 438

Amigopod 3.7
|
Deployment Guide
RADIUS Services
|
67
{$extra_fields.wlan}
To display all the remembered fields for the current visitor session, use the syntax:
{dump var=$extra_fields export=html}
Apple Captive Network Assistant Bypass with Amigopod
This section describes the process for leveraging the Amigopod Captive Portal to bypass the Captive
Network Assistant (Web sheet) that is displayed on iOS device such as iPhones, iPad and more recently Mac
OS X machines running Lion (10.7).
Based on the proposed configuration in this guide, the combination of an Aruba Wi-Fi network and
Amigopod Guest Access Solution can effectively be used to bypass the Captive Network Assistant
technology implemented by Apple in various of their Wi-Fi enabled mobile devices.
The need to bypass this Web sheet solution for prompting users to perform a Web authentication task will
largely be driven by the customer design and need to control the user experience as guest or public access
users authenticate to the network.
By enabling a full client Web browser based authentication, this solution enables fully customized Web
login experience to be developed and presented through the Amigopod portal options.
Some examples of use cases for the browser-based authentication are as follows but certainly not limited
to:
Display of a welcome page to host session statistics, logout button, link to continue to original
destination
Display of an interstitial page for the display of advertising media before being granted access to the
Internet
Based on browser detection, display a promotional link to a mobile device App from associated App
Store for retail applications
Provide mobile device App based Web authentication for transparent Wi-Fi access in retail application
Mobile Device Access Control (MDAC) environments where the Web authentication process is used to
push
Device configurations and client certificates to mobile devices.
This Web sheet is displayed on iOS devices when a device connects to a Wi-Fi network that has been
configured with Open security, such as those typically found in guest access networks or public hotspots.
The benefit of this feature provided by Apple is to automatically prompt users to log in to the detected
Captive Portal network without the need to explicitly open a Web browser. This is useful on mobile devices
where many of the common applications are not browser based such as email, social networking
applications, media streaming and these applications would otherwise fail to connect without the
successful browser based authentication.
The Apple operating systems detect the presence of a Captive Portal enabled network by attempting to
request a Web page from the Apple public Web site. This HTTP GET process retrieves a simple success.html
file from the Apple Web servers and the operating system uses the successful receipt of this file to assume
that it is connected to an Open network without the requirement for Captive Portal style authentication.
If the success.html file is not received, the operating system conversely assumes there is a Captive Portal in
place and presents the Web sheet automatically to prompt the user to perform a Web authentication task.
Once the Web authentication has successfully completed, the Web sheet window will be automatically
closed down and therefore preventing the display of any subsequent welcome pages or redirecting the user
to their configured home page.