• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Needed Configuration for Captive portal MAC Authentication using Freeradius MACs tab

Scheduled Pinned Locked Moved Captive Portal
captive portalmac-addressfreeradius
3 Posts 2 Posters 1.7k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • D
    danicavini
    last edited by Apr 5, 2022, 11:02 PM

    Good night friends, I'm a new user in Pfsense and I need to create a captive portal in two separate interfaces. So far I managed without problem, but I need users to be authenticated by MAC ADDRESS through a pre-registration, within FreeRadius.
    But even if I create an entry in the MACs tab in FreeRadius and select the MAC ADDRESS Authentication option in the captive portal, the devices do not authenticate, I always get the authentication failed error

    In the case in question, I need it to be done through FreeRadius because if I use the MAC ADDRESS tab directly in the Captive portal, Pfsense does not count the number of connected users.
    can you help me?

    I searched the entire internet and didn't find any topic or tutorial based on MAC ADDRESS and freeradius on the captive portal.

    Thanks to all!

    G D 2 Replies Last reply Apr 6, 2022, 8:47 AM Reply Quote 0
    • G
      Gertjan @danicavini
      last edited by Gertjan Apr 6, 2022, 8:51 AM Apr 6, 2022, 8:47 AM

      @danicavini

      Normally, I use the classic user/password Freeradius authentication.

      To make MAC auth work, I had to :

      Check this option on the main Freeradius settings page :

      c977620b-1475-41f1-b91b-f3c169ce4a03-image.png

      Switch to Radius MAC

      82e72651-5a9d-40a1-8c83-9e8c5549a26e-image.png

      I discovered that I had a enter 'something' for "RADIUS MAC Secret" - if this field is empty pfSense doesn't contact the radius server. ' The manual told me that that field can not be empty. Ok, I entered 'secret', because : why not ;).
      It's very possible that this "RADIUS MAC Secret" isn't really used.

      Then I added my phone's MAC to the list :

      1e005b7c-e2f9-4196-b36f-6adbd7d4ff93-image.png

      When I connected to the wifi portal network, I saw the word "Succes" and was connected.

      No "help me" PM's please. Use the forum, the community will thank you.
      Edit : and where are the logs ??

      1 Reply Last reply Reply Quote 0
      • D
        danicavini @danicavini
        last edited by Apr 6, 2022, 12:55 PM

        @danicavini
        Thanks, i will try it !

        1 Reply Last reply Reply Quote 0
        • G Gertjan referenced this topic on Apr 6, 2022, 3:44 PM
        • G Gertjan referenced this topic on Apr 6, 2022, 3:44 PM
        3 out of 3
        • First post
          3/3
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
          This community forum collects and processes your personal information.
          consent.not_received