• Interface(opt3) does not redirect to portal

    5
    0 Votes
    5 Posts
    3k Views
    T
    @nothing: Just add your DNS servers to "allowed ip addresses" in captive settings. I can confirm that this is probably the problem. /erik
  • Captive Portal with external certificate

    7
    0 Votes
    7 Posts
    6k Views
    M
    No worries, sorry my explanations might not have been the clearest. Glad you got it working. Send me a pm if you have any problems, just starting to learn server 2012 myself for work.
  • No Redirection to captive portal

    4
    0 Votes
    4 Posts
    2k Views
    N
    Maybe you are using external DNS, which you should add to "Allowed IP addresses" in Captive settings? Try browsing any IP address instead of hostname - 1.1.1.1 for example.
  • Traffic request port question.

    5
    0 Votes
    5 Posts
    2k Views
    E
    You have to change the ipfw fwd line as it was back in 2.0 or 1.2.x days to redirect everything.
  • Problem Captive Portal with Repeater

    6
    0 Votes
    6 Posts
    3k Views
    GertjanG
    H'm, still having troubles understanding the problem. Let me get this straight: You connect yourself with a PC to repeater1 - you use the voucher and it works. Now, you move on to the next repeater, call it repeater2, and you have to re-authenticate again, with a new voucher. Is that right ? Can you tell me what your IP was when you connected yourself to the portal when you were using repeater1 ? What is your IP when you use repeater2 ? Btw: normally, to make things simple to work with, you have some work to do. Behind the Portal-interface-NIC, you hook up a switch. On this switch, you hook up - by cable - all your wifi access points, and theses boxes should work in AP (Access Point) mode. These AP's should have their DHCP server function shut down. Never use the WAN ether net port on these devices (if one is present). I have many 'DD-WRT' on WRT54GL working like this for the last 10 years. Using repeater might change the IP …. this messes up the portal authentication. Using repeater might change the the MAC .... this messes up the portal authentication. "Repeaters" are nice boxes, but you only use one if nothing else is possible. You only move the 'cable' problem to a 'logical network' problem. Btw: I had some good experiences with AP-boxes using "WDS" mode.
  • Captive portal using Gmail accounts to authenticate wireless user

    4
    0 Votes
    4 Posts
    4k Views
    GertjanG
    You already have your keyword - and you already know the way it works  ;) gmail The authentication process is a two-phase procedure. FIRST: When hitting the the portal autnetification page, the client should enter 2 credentials. The client should enter a gmail adress and an 'unkown' password. Of course, the client doesn't know this password. To retrieve this password, the user should enter his gmail mail account address. [[b]Hey, this procedure is being used by every site on the Internet !!!! - You saw it before - you used it before - it's always the SAME procedure] The portal code should send a mail to the visitors gmail mail address with the secret, randomly generated password. The client should login to the gmail's WEB mail interface to grab the 'challenge' mail - find the secret random. SECOND: Back on the portal interface, the visitor has the password, he can login. Note: All IP's from Google that are used to access the GMAIL web mail account servers should be listed as 'Allowed IP adress' on the portal service page. Maybe POP/IMAP accss should be handled as well, a part of the planet nevers uses web mails, they use mail-client software like Thunderbird, Outlook, etc. Access to SSL (https) pages can be problematic when you aren't yet authenticated with the portal. This is a pure PHP coding exercise. I advise you to create a mail adress (your-portal@gmail.com) that can be used by your own portal code so it can safely send maisl to other gmail accounts. BTW: this is just an idea, not a solution. I didn't Google anything up - just used my memory.
  • Captive Portal w/ Radius MAC Auth - error in radpostauth code

    3
    0 Votes
    3 Posts
    2k Views
    M
    I figured out this is part of the Radius SQL on my Radius server and not part of pfSense. If anyone is interested… The dialup.conf file in /etc/raddb/sql/mysql/dialup.conf has an entry for Authentication Logging options and this entry for the INSERT stmt was incorrect. mike
  • Captive portal with static routes

    3
    0 Votes
    3 Posts
    1k Views
    B
    Hello All, Sorry for replying to my own post again. I did try setting up my captive portal per the link I have in  post number two of this thread,and still cannot get captive portal to work with static routes. After some more searching it appears that my problem,is what is posted in this link.Bottom line the captive portal takes your to pfSense (ipaddress) rather that pfSense(hostname) http://forum.pfsense.org/index.php?topic=43089.0 I am not sure what I am wanting to do,,is possible with load balancing,failover, transparent proxy?,,, Thank You, Barry
  • Captive portal with ipsec setup

    3
    0 Votes
    3 Posts
    1k Views
    B
    jimp, Thank You..! I will give this a try in the morning when no one is here. Makes perfect sense. It goes without saying I have never set up captive portal,period. Take Care, Barry
  • Where in the script does the pass-through-mac occur?

    7
    0 Votes
    7 Posts
    3k Views
    C
    The PHP only configures the underlying system. dhcpd is the DHCP server.
  • Captiveportal Show first staff login ?

    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Captive portal not using redirurl=

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    A
    The problem was the day I did the upgrade I also changed my captive portal page by changing a phone number in the text part.  I did this clicking the link to "View current page".  I changed the number and loaded it back.  The only issue is that when I pulled it from the link the line <form method="post" action="$PORTAL_ACTION$"> was changed to I change it back to and redirurl started working. Thanks for anyone who looked at this.  Hopefully somone else will not fall into the same mistake I did. </form>
  • Captive Portal lightsquid show usernames

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    N
    ไม่ทราบเหมือนกันครับ กำลังหาข้อมูลอยู่เหมือนกัน
  • Use portal authentification in Squid

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • When using Captive Portal, CPU usage increases to %80

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    E
    For 2.0.3 features is quite stable. Only some IPv6 related issues are the ones being looked after.
  • 2.0.3 portal not showing up

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • CapitivePortal radius accounts update problem

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Portal hangs on redirect. Found the problem!

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    C
    @andymk: @cmb: Yes it does. It does nothing different in that regard. I have to disagree here as i have been using monowall for a long time now and this issue has never happened to us. Then the issue isn't as you've described in the linked URL because m0n0wall doesn't do anything differently than we do in that regard.
  • Use Cron to auto kick all users?

    Locked
    7
    0 Votes
    7 Posts
    3k Views
    L
    I use cron to kick users at just past midnight for our WiFi access (when the pub closes).  I also have a time lock implemented which shows a "Our WiFi is off" message instead of the captive portal once users are kicked. See this post here: http://forum.pfsense.org/index.php/topic,61730.msg333062.html#msg333062 I have posted the code I used to kick users at a set time. In saying this, when I run my script to kick all users, it does kick all users perfectly, and when you look in the captiveportal.db file, it is completely empty, so obviously works.  It does make me wonder if it would be simpler to just open the .db file and delete the contents, or even just delete the file (assuming pfsense will re-create it when required).  Not tried this though, so don't take my work for it!  The script linked to above works perfectly though! you can remove all the echo outputs from the script, and also remove the portion that writes a log file (that was more for me to check it was running through cron).
  • To show Mac & Ip Address in Captive portal Page (tutorial)

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    DerelictD
    Did you try using the captive portal function instead of your own callout to arp? In /usr/local/captiveportal/index.php I see: $clientip = $_SERVER['REMOTE_ADDR']; $clientmac = arp_get_mac_by_ip($clientip); That function is in /etc/inc/util.inc.  It does things like try to ping $clientip first to repopulate the arp table if necessary and check the result with is_macaddr().
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.