Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Captive portal login works, but local network accessable

    Captive Portal
    2
    11
    5.3k
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • T
      Tuckie
      last edited by

      Right now I have my ap plugged into my opt1 interface with opt1 bridged to lan.  I have the portal working fine in terms of trying to access the internet and the portal pops up forcing me to log in, but the problem that I am having is that I am still able to fully access computers on the lan.  The captive portal is pretty much setup using the default settings.  Is there a firewall rule or something that I am forgetting?

      Thanks in advance.

      PS: yes, I have beta2 installed

      1 Reply Last reply Reply Quote 0
      • S
        sullrich
        last edited by

        Rules setup on the LAN interface?  If so then it should be working.

        1 Reply Last reply Reply Quote 0
        • T
          Tuckie
          last edited by

          *  LAN net  *  *  *  *  Default LAN -> any

          Thats the only rule on the lan interface atm.

          1 Reply Last reply Reply Quote 0
          • S
            sullrich
            last edited by

            Well thats strange then, I have a school with over 3000 kids using a captive portal and they can talk to each other just fine….

            1 Reply Last reply Reply Quote 0
            • T
              Tuckie
              last edited by

              The problem isn't that I can't talk to each other compuer fine.  Its that before I login I still have access to all of the computers the network. (minus the pfsense box, and it blocks the net)

              1 Reply Last reply Reply Quote 0
              • S
                sullrich
                last edited by

                The captive portal is only a traffic cop on traffic flowing THROUGH it.  We cannot reach out to your switch ports and magically start blocking stuff.  Make sense?

                1 Reply Last reply Reply Quote 0
                • T
                  Tuckie
                  last edited by

                  I figured as much for the computers going through the AP, but traffic has to flow through it between the opt1(just the ap is hooked up) and lan.  Is the captive portal not catching it as the interfaces are bridged?  If so, is there a way to setup rules similar to a bridge where the captive portal could catch it?

                  Thanks in advance.

                  1 Reply Last reply Reply Quote 0
                  • S
                    sullrich
                    last edited by

                    Captive portal does not work on bridged interfaces (yet).

                    This is pretty much already changed in -HEAD (cvs).

                    1 Reply Last reply Reply Quote 0
                    • T
                      Tuckie
                      last edited by

                      At least its good to know that it wasn't that I was configuring something wrong.  What exactly do you mean in regards to that second part?

                      1 Reply Last reply Reply Quote 0
                      • S
                        sullrich
                        last edited by

                        @Tuckie:

                        At least its good to know that it wasn't that I was configuring something wrong.  What exactly do you mean in regards to that second part?

                        Look for this support in a future version.

                        1 Reply Last reply Reply Quote 0
                        • T
                          Tuckie
                          last edited by

                          Alright, good to know  :)

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.