• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Trouble With CaptivePortal on Two VLANs in One Interface

Captive Portal
pfsense captive portal vlans interfaces dhcp
3
5
2.0k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • M
    mylmzertia
    last edited by Mar 28, 2019, 3:58 PM

    Hello everyone,

    First of all, Thanks for all the ideas and comments

    I couldn't make it work whatever I try the CaptivePortal with two VLANs. I would like to create an authentication system to understand who has a user account and who don't. By this way, I will put every device to User VLAN or Guest VLAN. Firstly I have created three Interfaces and those are by sequence; WAN, LAN, CHOICE. CHOICE has two VLANs and those are USER and GUEST. I have already supplied my LDAP connections with the pfSense. I have created a rule to GUEST VLAN to not to reach other VLANs by entering manual IP. I have set the DHCP settings for all of them.

    CHOICE IP Block -: --192.168.50.100 - 120/24
    USER IP Block ----: --192.168.10.100 - 200/24
    GUEST IP Block ---: --192.168.20.100 - 200/24

    Everything is ready but!!! the CaptivePortal settings are not. The CaptivePortal of CHOICE shows a page to the user to select which network to go. This page shows two button on it and I have created it by myself.

    One of the buttons says User Login and the second one says Guest Login.

    When I press the User Login button, It redirects me to the CaptivePortal of USER VLAN and authentication screen works well. After all of these steps, the browser opens a page and it says You are connected !

    The same thing happens while doing the same things for GUEST VLAN.

    But after all, the IP shows that I have an IP 192.168.50.100 and never changes. Actually, I have created this for distributing two different IP addresses from one interface named CHOICE.

    Sorry for my ignorance but if you have any idea, it would be wonderful to help me.

    F 1 Reply Last reply Mar 28, 2019, 6:17 PM Reply Quote 0
    • F
      free4 Rebel Alliance @mylmzertia
      last edited by Mar 28, 2019, 6:17 PM

      @mylmzertia hello,

      captive portals can be NAT-based or VLAN-based.
      pfSense only support nat-based captive portal

      if you are looking for VLAN based captive portals, I would suggest you to have a look to other products, such as packetfence

      1 Reply Last reply Reply Quote 1
      • M
        mylmzertia
        last edited by Mar 29, 2019, 8:19 AM

        Thank you for your reply.
        You mean I can only make this happen with two different interfaces on pfSense?

        1 Reply Last reply Reply Quote 0
        • G
          Gertjan
          last edited by Apr 1, 2019, 6:54 AM

          You are already using multiple interfaces - a VLAN is considered as a interface.

          Typically, each interface has its own dedicated AP(s) - using a dedicated radio (== Wifi) setup.
          A user should choose the correct Wifi SSID first to use the correct network. You can't automatize this.

          No "help me" PM's please. Use the forum, the community will thank you.
          Edit : and where are the logs ??

          M 1 Reply Last reply Apr 5, 2019, 2:44 PM Reply Quote 1
          • M
            mylmzertia @Gertjan
            last edited by Apr 5, 2019, 2:44 PM

            @Gertjan said in Trouble With CaptivePortal on Two VLANs in One Interface:

            You are already using multiple interfaces - a VLAN is considered as a interface.

            Typically, each interface has its own dedicated AP(s) - using a dedicated radio (== Wifi) setup.
            A user should choose the correct Wifi SSID first to use the correct network. You can't automatize this.

            I just wanted to make it happen. I was planning to redirect the user to the correct VLAN by using just one SSID. But I completely got that I can not do it. Thanks for your helps.

            @free4 I still can not find an opportunity to try PacketFence. I will write down here if I can be successful on it.

            1 Reply Last reply Reply Quote 0
            4 out of 5
            • First post
              4/5
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.