beautypg.com

Brocade Mobility Access Point System Reference Guide (Supporting software release 5.5.0.0 and later) User Manual

Page 585

background image

Brocade Mobility Access Point System Reference Guide

575

53-1003100-01

9

8. Set the following Client Settings to define the duration clients are allowed captive portal access

and when they’re timed out due to inactivity:

9. Use the DNS White List drop-down menu to use a set of allowed destination IP addresses for

the captive portal. These allowed DNS destination IP addresses are called a Whitelist. If no
whitelist entry exists with the correct set of IP addresses, select the Create icon (to the right of
the drop-down menu) and define a new whitelist. For more information, see

Setting the DNS

Whitelist Configuration on page 9-582

.

Each supported access point model can support up to 32 whitelists, with the exception of
Brocade Mobility 6511 Access Point which can only support up to 16 whitelists.

To effectively host captive portal pages on an external Web server, the IP address of the
destination Web server(s) should be in the whitelist.

Refer to the drop-down menu of existing DNS White List entries to select a policy to be applied to
this captive portal policy.

If creating a new whitelist, assign it a name up to 32 characters. Use the + Add Row button
to populate the whitelist table with Host and IP Index parameters that must be defined for
each whitelist entry.

RADIUS VLAN Assignment

Select this option to enable the RADIUS server to assign a VLAN post authentication. Once
a captive portal user is authenticated, the user is assigned the VLAN as configured in the
Post Authentication VLAN field.

Post Authentication VLAN

Use the spinner control to define the VLAN that a captive portal user is assigned once
authenticated by a RADIUS server.

Client Access Time

Use the spinner control to define the duration wireless clients are allowed access to the
network using the captive portal policy. Set an interval from 30 - 10,800 minutes. The
default interval is 1,440 minutes.

Inactivity Timeout

Use the drop-down menu to specify an interval in either Minutes (5 - 30) or Seconds (300
- 1,800) that, when exceeded, times out clients that have not transmitted a packet within
the captive portal.