beautypg.com

Services configuration, Configuring captive portal policies, Configuring a captive portal policy – Brocade Mobility RFS Controller System Reference Guide (Supporting software release 5.5.0.0 and later) User Manual

Page 625: Chapter 11, Configuring captive portal, Policies

background image

Brocade Mobility RFS Controller System Reference Guide

613

53-1003099-01

Chapter

11

Services Configuration

Controllers and service platforms natively support services to provide guest user access to the
network, lease DHCP IP addresses to requesting clients and provide RADIUS client authentication.

For more information, refer to the following:

Configuring Captive Portal Policies

Setting the DHCP Configuration

Setting the RADIUS Configuration

Smart Caching

Configuring Captive Portal Policies

A captive portal is an access policy for providing guests temporary and restrictive access to the
controller or service platform managed network.

A captive portal policy provides secure authenticated controller or service platform access using a
standard Web browser. Captive portals provides authenticated access by capturing and re-directing
a wireless user's Web browser session to a captive portal login page where the user must enter
valid credentials to access to the network. Once logged into the captive portal, additional Terms
and Agreement
, Welcome, Fail and No Service pages provide the administrator with a number of
options on captive portal screen flow and user appearance.

Captive portal authentication is used primarily for guest or visitor access, but is increasingly used
to provide authenticated access to private network resources when 802.1X EAP is not a viable
option. Captive portal authentication does not provide end-user data encryption, but it can be used
with static WEP, WPA-PSK or WPA2-PSK encryption.

Authentication for captive portal access requests is performed using a username and password
pair, authenticated by an integrated RADIUS server. Authentication for private network access is
conducted either locally on the requesting wireless client, or centrally at a datacenter.

Captive portal uses a Web provisioning tool to create guest user accounts directly on the controller
or service platform. The connection medium defined for the Web connection is either HTTP or
HTTPS. Both HTTP and HTTPS use a request and response procedure clients follow to disseminate
information to and from requesting wireless clients.

Configuring a Captive Portal Policy

To configure a guest access captive portal policy:

1. Select Configuration > Services.

The upper, left-hand, side of the user interface displays a Services menu pane where Captive
Portal, DHCP and RADIUS configuration options can be selected.

2. Select Captive Portals.