• Can a captive portal voucher be fixed on only a specific Device

    4
    0 Votes
    4 Posts
    583 Views
    GertjanG
    @OpenWifi said in Can a captive portal voucher be fixed on only a specific Device: Hello guys,can i set vouchers to be only used with a specific device(MAC address) and cannot be shared by another person or device.So the voucher when activated on my iphone,then i would not be able to share it with another device maybe my laptop Try what has been said here : One Voucher Per Device I proposed a modification that changes the behaviour of the Concurrent user logins setting. An option for "only the first login" is present. @free4 said in Can a captive portal voucher be fixed on only a specific Device: Pfsense support this feature. Selecting "Disable concurrent logins" will cause tout iphone to get disconnected when your laptop will connect I maintained that possibility which has good reasons to exists. New : the other way around : a reuse use of a voucher or login is prohibited while an active connection using that voucher or login exists. This minimizes the risk of passing along the voucher, voluntary, or not. One could loose his voucher, another person couldn't use it (again).
  • pfsense captive portal HTTPS

    2
    0 Votes
    2 Posts
    414 Views
    GertjanG
    @curioushuman said in pfsense captive portal HTTPS: enabling HTTPS on my captive portal http captive portal login, or https captive portal login is identical. The login page doesn't show up ? Check https://docs.netgate.com/pfsense/en/latest/captiveportal/captive-portal-troubleshooting.html But you do not want to propose home-made certificates on a captive portal. Your "pfsense1.localdomain" will not be trusted by any browser - the usual error messages will show up. Most eople will (and should) bail out when they see these messages. You need a "real" certificate, one that is recognized by every browser. Go buy one, or use the acme package. You need to have an existing domain name !
  • Portal "You are connected" but no internet

    5
    0 Votes
    5 Posts
    2k Views
    T
    Hi xhivo97 same problem here!
  • Captive Portal disconnects LAN network

    5
    0 Votes
    5 Posts
    1k Views
    GertjanG
    Look also at the video https://www.youtube.com/watch?v=qb5TDpihnq4&t=1043s
  • A user portal for clients

    5
    0 Votes
    5 Posts
    415 Views
    GertjanG
    @safarad said in A user portal for clients: solution Well, you need a proxy, and probabaly more. Read about all the Squid's and so in teh Cache/proxy forum and Traffic monitoring forum. This will not be a click and done solution. (be wise, do not go into this path .... many admins are declared missing since they went on the "let's analyse what users are doing" tour. In Europe, they are probably in prison. Elsewhere : ..... probably worse)
  • 0 Votes
    6 Posts
    1k Views
    GertjanG
    EDIT : I tested the Captive portal on LAN, using a Windows 7 PC, and discovered that things have changed. When I activated the portal on LAN, after setting it up, I disconnected my LAN RJ45 cable (actually, I'm lazy, so I deactivated the network card for several seconds). When I re activated the card, nothing happened .... that's new. I opened my default browser, Firefox, and this is what happened : [image: 1555317772947-57bc1e01-50fb-4956-bc61-d596be062638-image.png] Firefox informs me that I needed some sort of account to connect !!! Which is 100 % correct. ... so I hit the button as advised. This showed up : [image: 1555317850511-d462fe6c-c209-450f-a0dd-ef701a9be7d9-image.png] So, I maintain : Windows 7 works well.
  • 0 Votes
    8 Posts
    3k Views
    F
    @Gertjan Other one are missing, because of google being blocked in china, cellphones and multiple chinese garbage browsers (360browser, etc...) are usually using one of these URL: https://connect.rom.miui.com/generate_204 (Xiaomi) http://www.qualcomm.cn/generate_204 (Huawei) http://www.265.com/generate_204 (Google Chrome, Asus cellphones. This website is owned by google) I also heard that nintendo devices are using http://conntest.nintendowifi.net for captive portal detection but anyway, i don't think that's very important..
  • 0 Votes
    4 Posts
    639 Views
    GertjanG
    @Ludgarvb said in Autenticação Captive Portal + Radius + Tela de Login com opção de cadastro.: Have any of your colleagues already implemented this scenario and could you please help me out? Hi, Yes, it has been done a number of times. Visit this forum : Home pfSense Software Captive Portal - it's the forum where you posted your question Hit his button [image: 1554993783649-1b935a47-97cd-46b2-9ff4-49f3b3fb315d-image.png] and sort on "Most posts". The first solution - maybe not up to date - shows the way to go. Be ware : these are never "click-and-ready" solutions. Up to tou to write your own captive portal html/php login page. Up to you to handle your database (mysql or other) storage area. Up to you to add the FreeRadius support. Etc etc. You can make it as beautiful as you want.
  • How to list authenticated users from shell

    captive portal authentication reports
    5
    0 Votes
    5 Posts
    1k Views
    jimpJ
    If you just want a count, you can use the script that is there for RRD: /usr/local/bin/php-cgi -q /usr/local/bin/captiveportal_gather_stats.php '<zone name>' 'loggedin' /usr/local/bin/php-cgi -q /usr/local/bin/captiveportal_gather_stats.php '<zone name>' 'concurrent'
  • 0 Votes
    5 Posts
    2k Views
    mylmzertiaM
    @Gertjan said in Trouble With CaptivePortal on Two VLANs in One Interface: You are already using multiple interfaces - a VLAN is considered as a interface. Typically, each interface has its own dedicated AP(s) - using a dedicated radio (== Wifi) setup. A user should choose the correct Wifi SSID first to use the correct network. You can't automatize this. I just wanted to make it happen. I was planning to redirect the user to the correct VLAN by using just one SSID. But I completely got that I can not do it. Thanks for your helps. @free4 I still can not find an opportunity to try PacketFence. I will write down here if I can be successful on it.
  • Captive portal not redirect

    41
    0 Votes
    41 Posts
    6k Views
    GertjanG
    @Martí-Ferret said in Captive portal not redirect: @Gertjan https://vimeo.com/user97033072/review/328553388/b94c374499 Look i make a video doing what u sayed. The videos already exist ^^ : here they are : https://www.youtube.com/channel/UC3Cq2kjCWM8odzoIzftS04A/videos There are 3 good Captive portal videos. take the first one that initiates with the captive portal.
  • Captive Portal performance issues - specifically with UDP

    4
    0 Votes
    4 Posts
    781 Views
    GertjanG
    What are the firewall rules for this VLAN ? Can't really help you with VLAN setup itself - but you can test this : hook up the AP on the LAN, and activate a captive portal on LAN. You see the same issue ?
  • Trim username

    9
    0 Votes
    9 Posts
    1k Views
    H
    I think everyone can agree that pr's should save time. Making comments on this forum uses valuable time. Probably more time then it would take a skilled coder to fix a couple of characters of code in some crappy pr that a random amateur created
  • redirect problem with ssl certificate

    2
    0 Votes
    2 Posts
    361 Views
    GertjanG
    @tennesse said in redirect problem with ssl certificate: Can anybody tell me how to fix this? There is no fix. For the simple reason that a fix isn't needed. See for yourself : Disconnect you device (PC, Phone, whatever) from your network. Do this be disconnecting the Wifi, or rip out the network cable. Wait several seconds. Connect your device again. What happens now, without you being able to see anything *** : you will see a message that special action is needed, or a browser opens that brings you to the captive portal login page. This is independent to the URL that you wanted to visited initially. With default OS settings (if those exists) and default browser settings, this always works. ** you could see what happens : when send your pfSense logs to a remote syslog server, you will see that, as soon as the connection comes up, the device obtains an IP (and mask, gateway, DNS, etc) from pfSense. Then it will throw out a basic http (not https) !! request - for an Apple device this is " http://captive.apple.com/hotspot-detect.html " (click on the link !) : this link should bring back the word "Success" - if so, the device knows that it's connected directly to the Internet, and no more actions are needed. If not, a captive portal is presumed, and the user is notified. The OS opens a browser, and this browser repeats the " http://captive.apple.com/hotspot-detect.html " URL, and get's redirected to the login page. Note that the original requested link was added as an URL parameter (your www.google.de), after successful authentication you will be redirected that that URL : the connections is unblocked and www.google.de shows up. Windows based system popup a message at least - or open the default browser. From what I know, recent Android systems also work now. Note : the captive portal facility is something that is supported by your device. people tend to think that pfSense is "doing the work", but it's only blocking (all) requests - and redirecting them to the internal web server. These should be "browser" requests - for example, fat mail client won't be able to trigger a login screen ^^ edit : I'm using a certificate portal.brit-hotel-fumel.net - and people (complete strangers for me) connect just fine using any possible device.
  • Redirection issue after voucher expiration

    2
    0 Votes
    2 Posts
    180 Views
    GertjanG
    Hi, When I use a voucher, and it expires, my device is removed from the captive portal firewall. My device 'looses' that Wi-Fi connection, so I have to re-select it to connect. (It's important to reconnect). I do see the standard login page again. It's like a first, initial connection and authentication. If the voucher has expired, I'm getting redirected to the "error login page" which is identical to to standard login page, with one extra red message line "Voucher expired". Btw : no need to browse to a "http" site to 'force' a login page to appear. The OS of your device should be doing that / discover all that for you.
  • How can I disable secondary authentication method in login page

    3
    0 Votes
    3 Posts
    1k Views
    P
    It works. Thank you so much. ^^
  • Captive Portal and DNS Resolver

    3
    0 Votes
    3 Posts
    763 Views
    I
    @infosoporte said in Captive Portal and DNS Resolver: Thank you!!
  • Change captive portal images via cli ( ssh )

    4
    0 Votes
    4 Posts
    600 Views
    F
    @luyo it's not same the web server of the captive portal has a root to /usr/local/captiveportal/ so updating your files somewhere else probably won't work...
  • IOS 12.1.2 and 12.1.3 not working with Captive portal

    5
    0 Votes
    5 Posts
    668 Views
    L
    Sorry for the delay. After the upgrade and some other configurations like HTTPS the IOS issue was solved. Thanks a lot!!
  • Captive portal databases are reset!

    captive portal sqlite3 database
    9
    0 Votes
    9 Posts
    2k Views
    P
    @Gertjan thanks, it looks like a solid explanation for my case
Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.