
121 | Captive Portal for Guest Access AOS-W Instant 6.3.1.1-4.0 | User Guide
Parameter Description
is
Encryption Select Enabled to configure encryption settings and specify the encryption parameters.
Table 22:
External Captive Portal Configuration Parameters
5. Click Next to continue and then click Finish to apply the changes.
In the CLI
To configure security settings for guest users of the WLAN SSID profile:
(Instant Access Point)(config)# wlan ssid-profile <name>
(Instant Access Point)(SSID Profile <name>)# essid <ESSID-name>
(Instant Access Point)(SSID Profile <name>)# type <Guest>
(Instant Access Point)(SSID Profile <name>)# captive-portal <type> external [profile]
[exclude-uplink <uplink-type>]
(Instant Access Point)(SSID Profile <name>)# blacklist
(Instant Access Point)(SSID Profile <name>)# mac-authentication
(Instant Access Point)(SSID Profile <name>)# max-authentication-failures <number>
(Instant Access Point)(SSID Profile <name>)# auth-server <server-name>
(Instant Access Point (SSID Profile <name>)# radius-accounting
(Instant Access Point (SSID Profile <name>)# radius-interim-accounting-interval
(Instant Access Point (SSID Profile <name>)# radius-accounting-mode {user-association|user-
authentication}
(Instant Access Point)(SSID Profile <name>)# wpa-passphrase <WPA_key>
(Instant Access Point)(SSID Profile <name>)# wep-key <WEP-key> <WEP-index>
(Instant Access Point)(SSID Profile <name>)# end
(Instant Access Point)# commit apply
Configuring External Captive Portal Authentication Using ClearPass Guest
You can configure AOS-W Instant to point to ClearPass Guest as an external Captive Portal server. With this
configuration, the user authentication is performed by matching a string in the server response and RADIUS server
(either ClearPass Guest or a different RADIUS server).
Creating a Web Login page in the ClearPass Guest
The ClearPass Guest Visitor Management Appliance provides a simple and personalized user interface through
which operational staff can quickly and securely manage visitor network access. With ClearPass Guest, the users
can have a controlled access to a dedicated visitor management user database. Through a customizable web portal,
the administrators can easily create an account, reset a password or set an expiry time for visitors. Visitors can be
registered at reception and provisioned with an individual guest account that defines their visitor profile and the
duration of their visit. By defining a web login page on the ClearPass Guest Visitor Management Appliance, you are
able to provide a customized graphical login page for visitors accessing the network.
For information on setting up the RADIUS Web Login feature, see the
RADIUS Services
section in the ClearPass
Guest Deployment Guide.
Configuring the RADIUS Server in AOS-W Instant
To configure AOS-W Instant to point to ClearPass Guest as an external Captive Portal server, perform the following
steps:
1. Select the WLANSSID for which you want to enable external Captive portal authentication with CPPM. You can
also configure RADIUS server when configuring a new SSID profile.
2. In the Security tab, select External from the Splash page type.
3. Select New the Captive portal profile drop-down and update the following fields:
Komentarze do niniejszej Instrukcji