Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Captive portal and wifi routers

    Scheduled Pinned Locked Moved Captive Portal
    4 Posts 4 Posters 3.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      cbtrocafort
      last edited by

      hello, i'm a newbie. so i had a basic setup of pfsense.
      i had a pfsense running in an old pc in a small office. wan connected to nic1, lan to nic2. so basically, all computers and routers are connected to lan switch. ive connected a wifi router cisco linksys ea3500 to the lan. it's running as it should. used traffic shaper with the wifi. works fine.
      now, problem runs when i add captive portal. computers at lan get authenticated per mac. problems with wifi routers, the only mac address that pfsense captures was the mac of the wifi router. so certainly, if one device connects to the wifi, a captive portal page will be shown, after that, the next devices will pass the portal. cause it only captures the routers mac. not the devices.
      how can i enable that all per devices that connects to that wifi router will be directed to the portal? how can pfsense be able to capture those devices macs? please help.

      1 Reply Last reply Reply Quote 0
      • J
        jflaugh
        last edited by

        I would set that router up as an AP you are currently double NATing.

        On the linksys
        Turn off DHCP
        Assign an IP to the LAN in your subnet so you can get back in and manage it later.
        Plug the linksys to your network using one of the LAN ports not the WAN.
        Now you linksys is an AP and 4 port switch.

        I just worked with a netgear that had a wizard that turned the router into an AP

        1 Reply Last reply Reply Quote 0
        • K
          king_arthos
          last edited by

          same problem of mine, im using tenda w311r+ , this is my setup
          isp>>pfsense>>switchhub>>wifi router.

          1 Reply Last reply Reply Quote 0
          • DerelictD
            Derelict LAYER 8 Netgate
            last edited by

            Don't put your wifi users behind routers. Put them behind access points (bridges) so the captive portal sees both the client MAC address and IP address.

            Chattanooga, Tennessee, USA
            A comprehensive network diagram is worth 10,000 words and 15 conference calls.
            DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
            Do Not Chat For Help! NO_WAN_EGRESS(TM)

            1 Reply Last reply Reply Quote 0
            • First post
              Last post
            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.