• Opera incompatible with Captive Portal?

    Locked
    6
    0 Votes
    6 Posts
    5k Views
    jimpJ

    Ah, then it might be something to do with the expiration bit. I didn't try that, just a normal login. Not sure how much can be done about that since it's browser specific…

  • How does CP limit client bandwidth?

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    C

    It's by MAC and IP (CP enforces the association between them). IP and MAC passthroughs have no limits in 1.2.3, they have per-entry limits in 2.0.

  • Login Captive Portal With Facebook

    Locked
    6
    0 Votes
    6 Posts
    15k Views
    J

    this is a good idea! keep us posted on your progress if i get soem time at work tomorrow i will play with this a little as well

  • Captive portal and OpenDNS

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    A

    I left my global DNS setting as provided from my ISP.  And leave the local OPT interface DNS config for the CP interface.  And I pipe OPT/CP traffic only through Squid.  Inside Squid I set the DNS provided by client.  This does a real nice job.  This solves your need, as it does mine.  And provides a real nice feature, even if the clients DNS servers entry is statically set, it will still resolve names from OpenDNS servers, transparent to the user, reducing the ability to get around my OpenDNS content filtering rules.

  • Captive Portal in front of DSLAMS DSL users all access

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    jimpJ

    Captive portal works at layer 2 (read: MAC address), so unless your clients are bridged to the same layer 2 network as pfSense, and pfSense can see the client MAC addresses directly, then it will not do what you are after.

    We have a feature request open (not sure if it's on redmine or elsewhere) for a layer 3 captive portal that would work by IP, but it's something that requires quite a lot of time toward (and funding…) in order for it to happen.

  • Captive portal timeout and squid

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    G

    i have add on Cp a idle timeout (30 min) and it seems to be fonctionnal …

  • Captive portal not working on repeater/wds

    Locked
    4
    0 Votes
    4 Posts
    4k Views
    jimpJ

    That's up to your AP's configuration. Nothing pfSense can do about that, and Captive Portal only works at Layer 2 so there isn't a workaround at the firewall level.

  • Portal page without authentication

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • CP not work correctly

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    jimpJ

    If you were coming from an older snapshot then you might be seeing this:

    https://rcs.pfsense.org/projects/pfsense/repos/mainline/commits/2d4003aab1d969ed9ba3e52f2fe3ec083e4bef8c

    We were not calculating the bandwidth received from RADIUS according to the standard. You'll probably have to fix your bandwidth values in your RADIUS server.

  • CP based on Local user + mac

    Locked
    1
    0 Votes
    1 Posts
    1k Views
    No one has replied
  • Automatic redirecction

    Locked
    2
    0 Votes
    2 Posts
    2k Views
    J

    Maybe a CAPTCHA on the landing page?

  • Authenticate using remote IMAP .

    Locked
    2
    0 Votes
    2 Posts
    1k Views
    jimpJ

    No, that isn't possible to do with the code as it is. It could probably be modified to do that, but it would be a bit of work to pull off.

    2.0 can't do that either.

  • Captive Portal on a Bridge

    Locked
    3
    0 Votes
    3 Posts
    4k Views
    R

    Many thanks for your response.

    There is a work around for this scenario - and that is to NAT into the existing LAN and 1:1 NAT from one subnet to the other.

    Hopefully the pfSense will provide firewall logs of translations so we can match user's traffic on the Internet to authenticated traffic on
    wireless LAN.

    I don't know of another distribution that supports this feature, maybe ZeroShell?

    - so we may just build one!

    Thanks

    Rob

  • Pre-authentication redirect URL

    Locked
    6
    0 Votes
    6 Posts
    25k Views
    U

    Cool, thanks a bunch!

  • Help customizing CP login page

    Locked
    2
    0 Votes
    2 Posts
    4k Views
    P

    You probably want to upload your own error page in section "Authentication error page contents" (right below "Portal page contents"). That's what I did and my portal login and error pages are of the same style and look.

    Logout pop-up doesn't work, you're right. I guess it is a bug.

  • Bandwidth control per specific user or group ?

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    S

    @ermal:

    You need a radius server to do this for you.

    Hi ermal,

    I've managed to make CP + Active Directory (through RADIUS in Win2k8 R2) work for my RC1 2.0 box.

    But i'm not sure where should I create groups for limiting bandwidth?

  • Disconnected in CP but in my external Radius is connected yet ! [2.0 RC1]

    Locked
    1
    0 Votes
    1 Posts
    980 Views
    No one has replied
  • Captive portal URL

    Locked
    3
    0 Votes
    3 Posts
    2k Views
    ?

    you don´t need to get this domain, this could work if you use a local dns server.

    i have a local dns server, but i have no idea, how i can change that behaviour..

    i want the captiveportal redirect go to http://pfsense.company.com:8000  instead of http://ipadress:8000, but how i can i do this?
    any rule to set in pfsense, to forward from ipadress to pfsense.company.com, or configure captiveportal to use domain instead ipadress?

  • Captive portal and Vlans / subnets

    Locked
    5
    0 Votes
    5 Posts
    3k Views
    GruensFroeschliG

    You can configure a passthrough IP for this.
    ("Allowed IP addresses" on the CP config page)

  • Shorter ticket codes

    Locked
    4
    0 Votes
    4 Posts
    2k Views
    P

    Done!  :)

Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.