Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Captive Portal Authentication

    Scheduled Pinned Locked Moved pfSense Packages
    4 Posts 2 Posters 3.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • A
      adam.barber
      last edited by

      What we would like to achieve is to allow an active directory group through the captive portal.

      We have added our LDAP server under System:Authentication Servers
      we have Created a group under System:Group Manager that matches or group in AD
      we have set Authentication server to our server under System: User Manager Settings

      When testing a user in Diagnostics: Authentication we get
      "User: authenticated successfully.
      This user is a member of these groups:
      Name of group that matches AD"

      We have setup the captive portal on out LAN interface and authentication is set to Local User Manager/Vouchers and the Allow only users/groups with "Captiveportal Login" privilege set.

      We have added the "Captiveportal Login" privilege to the group.

      The problem we are seeing is that the user that is a member of the group gets a 'Invalid Credentials specified'

      Is this feature not going to work the way i am expecting it to? have i understood it wrong??

      1 Reply Last reply Reply Quote 0
      • E
        eri--
        last edited by

        You need to use IAS for active directory with CP no integration with user manager has been done as of now.

        1 Reply Last reply Reply Quote 0
        • A
          adam.barber
          last edited by

          sorry i should have made it clear that we are running the 2.1-RC0 (amd64) built on Tue Jul 2 17:07:07 EDT 2013 build which is why i posted in the 2.1 forum.

          1 Reply Last reply Reply Quote 0
          • E
            eri--
            last edited by

            No problems, i moved mostly because of easily findable thread inside the topic.
            But the same is for all versions as of today you need IAS.

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.