...
- Select the Grid member that runs the captive portal and configure its properties, as described in Configuring Captive Portal Properties .
Optionally, customize the captive portal and registrati.
- If you enabled SSL, generate the CA certificate, as described in Managing Captive Portal Certificates on page 1281.
- Start the captive portal, as described in Starting the Captive Portal Service .
Anchor | ||||
---|---|---|---|---|
|
Anchor | ||||
---|---|---|---|---|
|
...
- Select the member that runs the captive portal and click the Edit icon.
- In the General Basic tab of the Member Captive Portal Properties editor, complete the following:
NIOS 8.1NIOS Administrator Guide (Rev. A) 1279
Authenticated DHCP
- Use This Authentication Server Group for Authenticating Captive Portal Users: Select the authentication server group that authenticates users for this captive portal. For information about authentication server groups, see About Authentication Server Groups 6.
- Captive Portal User Types: Specify whether the captive portal is used to register Authenticated users only, Guest users only, or Both.
- Portal IP Address: Select the IP address of the captive portal server. The appliance lists the VIP address and the IP addresses of the loopback interface and the LAN2 port, if enabled. You can select any of these addresses as the portal IP address.
- Enable SSL on Portal: Select this to support encrypted web traffic through SSL/TLS. If you select this option, you must upload a certificate or generate a self-signed certificate. For information about creating and uploading a certificate for the captive portal, see Managing Captive Portal Certificates .
- Network View: This field displays if there are multiple network views configured. Select the network view in which the authenticated, quarantine, and guest DHCP ranges belong.
- Log Registration Success: Select to enable the member to log successful registrations in syslog, and then select the logging level from the drop-down list.
- Log Registration Failure: Select to enable the member to log failed registrations in syslog, and then select the logging level from the drop-down list.
...
- From the Grid tab, select the Grid Manager tab, and then click Captive Portal.
- Select the member that is running the captive portal and click the Edit icon.
- Select the Customization tab of the Member Captive Portal Properties editor.
- In the General Captive Portal Customization section, complete the following:
- Company Name: Enter the name of your company. The company name displays on the title bar of the browser. You can enter a maximum of 256 characters.
- Welcome Message: Type the message that displays on the captive portal. The message can contain a maximum of 300 characters.
- Help Desk Message: Type a message that provides Helpdesk information, such as contact information for technical assistance. The message can contain a maximum of 300 characters.
1280NIOS Administrator Guide (Rev. A)NIOS 8.1
About the Captive Portal
- Logo Image, Header Image, Footer Image, Acceptable Use Policy: To display the image files and the acceptable use policy on the captive portal, click Select beside the item you want to upload. In the Upload dialog box, click Select File and navigate to the image or text file. Select the file you want to display and click Upload. Note that these files have size requirements, as listed earlier in this section.
- In the Guest Users Web Page Customization section, complete the following:
- The appliance displays certain fields on the guest registrati — Custom Field 4: You can display up to four additional fields on the guest registrati characters. Select Require to require users to complete the field.
- Users can enter a maximum of 128 characters in each of the fields in the captive portal login page and the guest registrati
- No text!!! Managing Captive Portal Certificates!!! broken link in the very beginning of the chapter!
- and a RSA key size of 1024 or 2048. SHA-256 (SHA-2) can be selected together with a RSA key size of 2048 or 4096. The default value is SHA-256 2048.
- Days Valid: Specify the validity period of the certificate.
- Common Name: Specify the domain name of the captive portal.
- Organization: Enter the name of your company.
- Organizational Unit: Enter the name of your department.
- Locality: Enter a location, such as the city or town of your company.
- State or Province: Enter the state or province.
- Country Code: Enter the two-letter code that identifies the country, such as US.
- Admin E-mail Address: Enter the email address of the captive portal administrator.
- Comment: Enter additional information about the certificate.
- Click OK.
NIOS 8.1NIOS Administrator Guide (Rev. A) 1281
Authenticated DHCP
Generating Certificate Signing Reques
Anchor | ||||
---|---|---|---|---|
|
You can generate a CSR (certificate signing request) that you can use to obtain a signed certificate from your own trusted CA. Once you receive the signed certificate, you can import it in to the Grid member that runs the captive portal, as described in Uploading Certificates .
To generate a CSR:
- From the Grid tab, select the Grid Manager tab, and then click Captive Portal.
- Select the member that is running the Captive Portal, and then click HTTPS Cert -> Create Signing Request from the Toolbar.
- In the Create Signing Request dialog box, enter the following:
- Secure Hash Algorithm and Key Size: You can select SHA-1 and a RSA key size of 1024 or 2048. SHA-256 (SHA-2) can be selected together with a RSA key size of 2048 or 4096. The default value is SHA-256 2048.
- Common Name: Specify the domain name of the captive portal.
- Organization: Enter the name of your company.
- Organizational Unit: Enter the name of your department.
- Locality: Enter a location, such as the city or town of your company.
- State or Province: Enter the state or province.
- Country Code: Enter the two-letter code that identifies the country, such as US.
- Admin E-mail Address: Enter the email address of the captive portal administrator.
- Comment: Enter information about the certificate.
- Click OK.
...
The appliance imports the certificate . When you log in to the appliance again, it uses the certificate you imported.
Downloading Certificates
You can download the current certificate or a self-signed certificate so users can install it in their browsers. To download a certificate:
- From the Grid tab, select the Grid Manager tab, and then click Captive Portal.
- Select the member that is running the captive portal, and then click HTTPS Cert -> Download Certificate from the Toolbar.
- Navigate to where you want to save the certificate and save it.
1282NIOS Administrator Guide (Rev. A)NIOS 8.1
Defining the IPv4 Network and DHCP Ranges
Anchor | ||||
---|---|---|---|---|
|
Anchor | ||||
---|---|---|---|---|
|
...