    I have a PFSense 1.2.3 box that we use Captive portal on. CP intercepts new users on that segment as expected. On the CP page I have 2 different things that I would like to have happen.

    1 - The user is a Public VLAN user. On the CP page they click a link that redirects to our guest provisioning service. Once registered they redirect back to CP, enter their username/password, the page does a radius auth and either succeeds (allows them on to their original destination) or fails (dumps them back on that same page).

    This all works just fine. I would like to add the following functionality:
    2- The user is a 802.1x allowed user. On the CP page thy click on a link that redirects to a page with a username/password prompt on it. This will do a radius auth to a remote radius server and either fail (dumps them back on that same page) or succeed (redirect to a page that has a 802.1x config package on it).

    I can accomplish #1. I can kinda accomplish #2. I have a person on the original CP page enter credentials and upon success get directed to the page with the 802.1x client on it (housed on the pfsense box with file manager). But I can only do one or the other. Is there a way to have both accomplished by CP with one page?

  • Are you asking "Can a web page distinguish a "public VLAN" user from a "802.1x allowed user" so that registration or authentication can be invoked?
    If that is the question then I suspect the answer will generally be "no". But there might be some specifics of your particular configuration that would allow that distinction to be made.

