Captive Portal , need password from users after reboot PFsense Server



  • I have PFsense 2.3.1 , squid transparent , captive portal and FreeRadius server , everything work good , but after reboot PFSense server , Captive portlal need password from users and after that Captiveportal do not need password ,
    Captive portal need password only from users after each reboot .
    what is problem ?

    I need help



  • @mfaridi:

    I have PFsense 2.3.1 , squid transparent , captive portal and FreeRadius server , everything work good , but after reboot PFSense server , Captive portlal need password from users and after that Captiveportal do not need password ,
    Captive portal need password only from users after each reboot .
    what is problem ?

    It's like your PC : after reboot you should re-authenticate.

    If you really want a "never authenticate after the first authentication " :
    Use
    Enable Pass-through MAC automatic additions
    and / or
    Enable Pass-through MAC automatic addition with username
    This way, ones authenticated, the client's MAC will be added to the MACs list - this list will persist after reboot.

    (you should probably remove all the radius stuff)



  • @mfaridi:

    …after each reboot ... what is problem

    The firewall admin is your problem. Don't reboot it if you have active users.



  • @Gertjan:

    @mfaridi:

    I have PFsense 2.3.1 , squid transparent , captive portal and FreeRadius server , everything work good , but after reboot PFSense server , Captive portlal need password from users and after that Captiveportal do not need password ,
    Captive portal need password only from users after each reboot .
    what is problem ?

    It's like your PC : after reboot you should re-authenticate.

    If you really want a "never authenticate after the first authentication " :
    Use
    Enable Pass-through MAC automatic additions
    and / or
    Enable Pass-through MAC automatic addition with username
    This way, ones authenticated, the client's MAC will be added to the MACs list - this list will persist after reboot.

    (you should probably remove all the radius stuff)

    Caotiveportal need password from user , after reboot PFsense server. and after first Authentication , it not need password .
    I need Captive portal need password after 120 min .again from users



  • @mfaridi:

    I need Captive portal need password after 120 min .again from users

    Why do you say just now that users should be disconnected after 120 minutes ?
    Look above : you didn't asked that …..  >:(

    Anyway : throw away your Radius /whatever  setup (to make things work right away, simple, easy, etc) : setup user local user authentication and password.
    And : Look for this at the Captive portal config page :
    Hard timeout (Minutes)
    and set it to 120.
    Save.
    Done.

    Afterwards, when it works, put Radius etc back in again, and keep things working. If they don't, just undo your steps.



  • @Gertjan:

    @mfaridi:

    I need Captive portal need password after 120 min .again from users

    Why do you say just now that users should be disconnected after 120 minutes ?
    Look above : you didn't asked that …..  >:(

    Anyway : throw away your Radius /whatever  setup (to make things work right away, simple, easy, etc) : setup user local user authentication and password.
    And : Look for this at the Captive portal config page :
    Hard timeout (Minutes)
    and set it to 120.
    Save.
    Done.

    Afterwards, when it works, put Radius etc back in again, and keep things working. If they don't, just undo your steps.

    Thanks
    Sorry my English is Bad
    I need Radius because I can set limitation for users and I can not do this with local users

    I need captive portal need password again because , some user leave work place and other users  can use that system agian



  • I for one, can't see what the problem is here. Just don't reboot the firewall and your users will remain logged in for however long you set them to (eg: 120 mins). Is there some reason you need to reboot the firewall while it's in use? Or are you saying that your users don't have to log in at all after they've logged in once?



  • @muswellhillbilly:

    I for one, can't see what the problem is here. Just don't reboot the firewall and your users will remain logged in for however long you set them to (eg: 120 mins). Is there some reason you need to reboot the firewall while it's in use? Or are you saying that your users don't have to log in at all after they've logged in once?

    Sorry for my bad English,
    My problem is this .
    when one user authenticate by captive portal , he or she can use Internet for long time , for example if she or he , come to work place tomorrow and after tomorrow , captiveportal do not ask user name and password again .

    I have to reboot PFsense Server , because after reboot captive portal need password and username again .

    for example again , I have this user
    AAA , when AAA want connect to internet , for first time after reboot PFsense Server , captive portal need username and password , but when AAA go home and comeback  to work place after several time , captive portal do not ask username and password again.



  • If I get this well :
    Some user should login and stay connected for "120" minutes.
    Others should stay connected all the time.

    That's it ?



  • @mfaridi:

    I have to reboot PFsense Server , because after reboot captive portal need password and username again .

    I repeat, why do you have to reboot the firewall? Just don't reboot it.



  • @Gertjan:

    If I get this well :
    Some user should login and stay connected for "120" minutes.
    Others should stay connected all the time.

    That's it ?

    No , my problem is this
    why captive portal only need password and username after reboot PFsense ?
    After reboot Captiveportal need pass and useranme and after first authentication , captive portal do not ask pass and username again .

    If user AAA enter his username and password , captive portal do not ask password and username from AAA . until next PFsense Server reboot.



  • @muswellhillbilly:

    @mfaridi:

    I have to reboot PFsense Server , because after reboot captive portal need password and username again .

    I repeat, why do you have to reboot the firewall? Just don't reboot it.

    I have to reboot it , because Captive portal do not ask username and password from users .
    only ask username and password after reboot system
    I reset service like captive portal , Freeradius , and squid , but nothing happen .



  • The way you're describing this, you say that your users should not have to enter a username/password after doing so once. Yet you also say you're having to reboot the firewall because it's not asking for a username/password, which you've already stated is what you want.

    I really do think you'd be best off asking this question in your own language on one of the foreign language parts of this forum. I appreciate English is not your strong suit, but you're really not getting across what you're after at all well, and we're just going round in circles trying to find out what the problem is.



  • @muswellhillbilly:

    The way you're describing this, you say that your users should not have to enter a username/password after doing so once. Yet you also say you're having to reboot the firewall because it's not asking for a username/password, which you've already stated is what you want.

    I really do think you'd be best off asking this question in your own language on one of the foreign language parts of this forum. I appreciate English is not your strong suit, but you're really not getting across what you're after at all well, and we're just going round in circles trying to find out what the problem is.

    I think my question us clear ,
    why captive portal do not ask username and password after 120 min , from all users.
    captive portal need password and username from users only when PFsense rebooted by admin ?



  • Hi!!!
    What is your Captive portal set up___???

    if you want all users to be disconnected after 120 minutes… I think you should go like this...

    reauthenticate users every minute should be disabled (that's below radius options), and set the hard time out to 120 minutes...

    ![reat.. users every minute.JPG](/public/imported_attachments/1/reat.. users every minute.JPG)
    ![reat.. users every minute.JPG_thumb](/public/imported_attachments/1/reat.. users every minute.JPG_thumb)


Log in to reply