• CP not work to Control Upload speed/control, while down rate is okay.

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Logout problem

    Locked
    5
    0 Votes
    5 Posts
    2k Views
    N

    @wallabybob:

    It is not clear to me how the captive portal can determine the voucher is no longer in use (as distinct from 'the user is taking a snack break').

    The only ways that CP recognizes that a voucher isn't online anymore is:
    1.) The voucher runs into a timeout (Idle Timeout or Hard Timeout).
    2.) You disconnect the voucher manually by hand using the GUI (Diagnostics -> Captive Portal)
    3.) The user clicks the "logout" window.

    If you like that users will be disconnected when taking a break for lunch or something else set the idle timeout to 10 minutes.
    If you want to make sure that everybody gets disconnected one (or several) times a day choose hard timeout 180 minutes.

  • Captive Portal - Freeradius - Acct-Session-Time

    Locked
    4
    0 Votes
    4 Posts
    5k Views
    E

    Check out this https://redmine.pfsense.org/issues/2164.

  • Searching for a hack for changing Voucher to Online Time

    Locked
    22
    0 Votes
    22 Posts
    9k Views
    E

    Try this out https://redmine.pfsense.org/issues/2164 and let me know.

  • Php-mysql support + Radius database

    Locked
    6
    0 Votes
    6 Posts
    6k Views
    F

    @wallabybob:

    Does the SQL server need to be configured to allow access from the firewall?

    That was it. I needed to type this command when logged in to the MySQL server:

    GRANT ALL ON radius.* TO pfsense@'pfsenseIPADDRESS' IDENTIFIED BY "PASSWORD";

    Thanks for the help!

    Also the test connection script need to be:

    mysql_connect("192.168.1.100","pfsense","PASSWORD") or die(mysql_error()); echo "Connected to MySQL "; mysql_select_db("radius") or die(mysql_error()); echo "Connected to database";

    It couldn't find the hostname but works with the IP address instead.

  • Time schedule for captive portal

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    N

    @hendasa:

    Thanks for your help;
    I installed FreeRadius 1.1.8 package,
    I set up the online time for a  test  like ! "WK1200-1300", when I tested, I remarked that access to Internet is only allowed betwen 12h00 and 13h00, but if a user validated his access during that time, he can continue access to internet even after 13h00.
    Is there any solution to cut the access at 13h00
    thanks.

    Hi,

    first you should use freeradius2 package instead because it is actively maintained and it supports much more features than freeradius1.
    second if you choose "Wk" then this is from monday till friday. Try with "Al1200-1300" which as far as I know means "every day".
    third: If you do not want to disable CP but blocking internet is enough the just create a shedule and set this shedule for a firewall rule which blocks/allows traffic.

  • Show a username without Authentication

    Locked
    7
    0 Votes
    7 Posts
    5k Views
    T

    Just what I was looking for! I want to protect the network at the WPA level (to completely keep out the curious) and use the captive portal for TOS. This isn't a public network, but it isn't entirely private, either. The idea is for contractors and consultants and such to be able to get internet access. They get the password from us, then have to agree to the TOS before continuing.

    I was thinking it'd be nice to have somebody enter their name before clicking "Agree and Continue", but it didn't show up the logs. This patch fixes that! Thanks so much!

    It would be nice to prevent them from leaving it blank, too. Maybe an option in the UI for "No authentication but still require (and log) a username"? :)

  • Captive portal issues

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    N

    I mentioned problems when I enter on CP page as redirection URL jus:
    www.google.com

    I need to enter:
    http://www.google.de

    Then the redirection is working - if without http:// I got a loop.

    Not sure, if this is related to your problem.

  • Redirection to login page once voucher is expired

    Locked
    4
    0 Votes
    4 Posts
    1k Views
    W

    Last time I used captive portal (pfSense 2.0, before release of 2.0.1) the browser went to the login page on the access after the voucher expired.

    Are you expecting the browser to go immediately to the login page ON voucher expiry?

  • MOVED: Tiempo de voucher expira

    Locked
    1
    0 Votes
    1 Posts
    932 Views
    No one has replied
  • Captive Portal radius attributes (Gigawords)

    Locked
    3
    0 Votes
    3 Posts
    4k Views
    N

    Hi,

    I am developing freeradius2 package and I tested with CP.

    Take a look at my documentation - there I tested some features/attributes with CP:
    http://doc.pfsense.org/index.php/FreeRADIUS_2.x_package#Accounting_with_Captive_Portal

    Acct-Input-Gigawords
    Acct-Output-Gigawords
    should be supported by CP - if I remember correct I found this somewhere in the pfsense code.

    But accounting isn't working correct at the moment.

    1MB traffic in reality gets counted 6 times higher from CP. But this seems to be a problem of ipfw and not RADIUS.
    So 1MB in realy = 6MB on pfsense ;) That's easy to calculate I think ;)

  • CP cannot work when VM and host are working together

    Locked
    6
    0 Votes
    6 Posts
    3k Views
    Z

    Hmm…it is working but only without Simultaneous-Use in FreeRADIUS. Just leave the field empty. Then there is still the error in syslog but then there is no disconnection.
    But I am pretty sure that the problem is CP because I tried with another NAS (AP with DD-WRT) and there isn't such a problem/error.

    I posted this issue on pfsense mail list but we didn't find a solution. We discussed several problems there. Take a look at the conversation.
    http://lists.pfsense.org/pipermail/dev/2012-January/000118.html

    Why it isn't working with your VM environment...puh...I don't know.

    If I find a solution I will fix it. If someone tells me the solution, I will fix it. But at the moment I am out of ideas.

    First I would like to appreciate your great help.

    If I have money I will put a bounty on this, I am afraid I can't afford it..

    I noticed that PF 2.1 is now running snapshot, I will give a try later. maybe there is some lucky?

    Anyway, thanks a lot ~~

  • When captive portal is on active, my internet was down =(

    Locked
    8
    0 Votes
    8 Posts
    4k Views
    M

    @stramato:

    guys this happened to me and i don't know how to fix it.

    Mine was working perfect (CP + Active Directory authentication through RADIUS) then my local DNS server (another physical computer) hung one time. After restarting my local DNS server, when I use Captive Portal, the clients seem to have messed up DNS or something. I tried pinging internet addresses from the client and they seem to resolve DNS, but when using a browser, they can't seem to resolve DNS.

    I can't really use another DNS server, as my local DNS server hosts a bunch of intranet websites.

    Did you tried to reboot pfsense?

  • CP+Rotating Password

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    V

    Ok thank you for your advice, I will look into a procedure for setting up vouchers this week hopefully. I saw some good procedures googling around. That is something I was concerned about, was free loaders in the parking lot or nearby areas, the wifi is up high with a antenna I custom made and the signal goes a good about 75 - 100 yards on a wifi test using airmagnet. So I will definitely look into locking it down some more. You will hear from me later this week I am sure.

  • Captive Portal + VLAN question

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    V

    This is very good news :)

  • Different default gateway on different voucher list with captive portal ?

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    E

    I think this answer/customization is more suited for portal.pfsense.org

    Presently, the answer is no.

  • RADIUS captive portal running over OpenVPN

    Locked
    11
    0 Votes
    11 Posts
    6k Views
    N

    Thanks for your feedback. Now I know what your problem was like. Thanks for sharing this info!

  • TOS Agreements then Authentification via Voucher

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    E

    It needs development, i am unsure which other products can do this, but you might try even commercial support(portal.pfsense.org) to see what you get.

  • LAN users never asked to authenticate

    Locked
    1
    0 Votes
    1 Posts
    2k Views
    No one has replied
  • Captiveportal allow users on two interfaces

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    Q

    I forgot to mention I am using intergrated freeradius server to authenticate the users

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.