<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[External login page authentication]]></title><description><![CDATA[<p dir="auto">The <em>Pre-authentication redirect URL</em> redirects to our radius and login server but we want to use the server for the login page and still use the captive portal as the radius client.</p>
<p dir="auto">Any ideas on how to auth with radius via external login page?</p>
]]></description><link>https://forum.netgate.com/topic/171488/external-login-page-authentication</link><generator>RSS for Node</generator><lastBuildDate>Sat, 11 Apr 2026 15:17:39 GMT</lastBuildDate><atom:link href="https://forum.netgate.com/topic/171488.rss" rel="self" type="application/rss+xml"/><pubDate>Mon, 11 Apr 2022 23:30:55 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to External login page authentication on Tue, 19 Apr 2022 08:07:33 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/guntery">@<bdi>guntery</bdi></a></p>
<p dir="auto">Like <a href="https://www.youtube.com/watch?v=RS0nMVxPznY" target="_blank" rel="noopener noreferrer nofollow ugc">https://www.youtube.com/watch?v=RS0nMVxPznY</a> ?</p>
<p dir="auto">It's not as simple as the classic local auth with the build in captive portal web server.<br />
I've tried it ones, long time ago, just to see how it works and if I could make it work.</p>
<p dir="auto">See also here : <a href="https://forum.netgate.com/topic/137979/what-happened-to-pre-authentication/2">https://forum.netgate.com/topic/137979/what-happened-to-pre-authentication/2</a></p>
]]></description><link>https://forum.netgate.com/post/1038479</link><guid isPermaLink="true">https://forum.netgate.com/post/1038479</guid><dc:creator><![CDATA[Gertjan]]></dc:creator><pubDate>Tue, 19 Apr 2022 08:07:33 GMT</pubDate></item><item><title><![CDATA[Reply to External login page authentication on Mon, 18 Apr 2022 21:09:23 GMT]]></title><description><![CDATA[<p dir="auto">Yeah the pre auth is the wrong option.</p>
<p dir="auto">Our current captive portals all have external login pages for auth which use a form to send auth details back to the CP.</p>
<p dir="auto">This way with a remote radius/web server we can better control the login pages and clients.</p>
<p dir="auto">Don't know how to remotely run the auth so ended up keeping the login page in pfsense and enabling php-mysql to talk to the remote web server, cheers.</p>
]]></description><link>https://forum.netgate.com/post/1038424</link><guid isPermaLink="true">https://forum.netgate.com/post/1038424</guid><dc:creator><![CDATA[guntery]]></dc:creator><pubDate>Mon, 18 Apr 2022 21:09:23 GMT</pubDate></item><item><title><![CDATA[Reply to External login page authentication on Thu, 14 Apr 2022 15:49:25 GMT]]></title><description><![CDATA[<p dir="auto"><a class="plugin-mentions-user plugin-mentions-a" href="/user/guntery">@<bdi>guntery</bdi></a> said in <a href="/post/1037408">External login page authentication</a>:</p>
<blockquote>
<p dir="auto">The Pre-authentication redirect URL redirects to our radius</p>
</blockquote>
<p dir="auto">Well ....</p>
<p dir="auto"><img src="/assets/uploads/files/1649950816806-89c5eff7-0735-48c9-a2b7-5c8168694437-image.png" alt="89c5eff7-0735-48c9-a2b7-5c8168694437-image.png" class=" img-fluid img-markdown" /></p>
<p dir="auto">a Radius server is a server process that listens on ports 1812 1813 and 1816.<br />
Redirecting a web browser to a radius server .... you have a lot of explanation to do here / I don't get it.</p>
<p dir="auto">I'm using FreeRadius myself.</p>
<p dir="auto">Using <a href="https://docs.netgate.com/pfsense/en/latest/captiveportal/configuration.html" target="_blank" rel="noopener noreferrer nofollow ugc">Pre-authentication redirect URL</a> is "not easy".<br />
Click the link, read and only proceed if you are fully aware of what needs to be done.<br />
I consider the "Pre-authentication redirect" usage very advanced.</p>
<p dir="auto">Instead of seeing the small word "Connected", use the "After authentication Redirection URL" to a known page, like your own companies web site, where you explain that the visitor was just granted Internet access.</p>
]]></description><link>https://forum.netgate.com/post/1037899</link><guid isPermaLink="true">https://forum.netgate.com/post/1037899</guid><dc:creator><![CDATA[Gertjan]]></dc:creator><pubDate>Thu, 14 Apr 2022 15:49:25 GMT</pubDate></item></channel></rss>