ExtremeWireless WiNG 5 WLAN

From Social ID Developers
Revision as of 17:35, 9 October 2015 by Renato.neves (Talk | contribs)
Jump to: navigation, search

Contents

Configuring the RADIUS server

Configure the Social-ID RADIUS server by creating a new AAA Policy.

Go to "Configuration > Network > AAA Policy", click in the "Add" button and fill the AAA Policy name, such as "AAA-SOCIAL-ID":

Wing5 add aaa policy.png

In the "RADIUS Authentication" tab click in the "Add" button and fill the following info:

  • Host: radius.socialidnow.com (Hostname)
  • Port: make sure that the chosen port is 1812
  • Secret: the provided RADIUS client secret
  • Request Proxy Mode: through-centralized-controller

Wing5 add radius authentication server.png

Click "OK" to save these settings and go to the "Settings" tab:

Wing5 aaa policy settings.png

Double check these settings:

  • RADIUS Authentication > Protocol for MAC, Captive Portal Authentication: PAP
  • RADIUS Address Format > Attributes: All

Configuring the DNS Whitelist

Go to "Configuration > Services > DNS Whitelist", click in the "Add" button and fill the "Name", such as "SOCIAL-LOGIN":

Wing5 dns whitelist.png

Create the DNS Entries according to Walled Garden for the Social Login URLs. Add each URL as a "Hostname" and Match Suffix as "Yes"

Configuring the Captive Portal

Go to "Configuration > Services > Captive Portal", click in the "Add" button and fill the Captive Portal Policy name, such as "CP-SOCIAL-ID":

Wing5 add captive portal.png

Change the following settings in the "Basic Configuration" tab:

  • Captive Portal Server Mode: Internal (Self) [you can select a more appropriate option if you prefer]
  • AAA Policy: the previously AAA Policy created (e.g.: "AAA-SOCIAL-ID")
  • Access Type: RADIUS Authentication
  • DNS Whitelist: the previously DNS Whitelist created (e.g.: "SOCIAL-LOGIN")

Click in "OK" to save the settings and go to the "Web Page" tab to configure the external captive portal:

Wing5 captive portal web page.png

Configure:

  • Web Page Source: Externally Hosted
  • Login URL: the provided captive portal login URL
  • Welcome URL: the provided captive portal welcome URL
  • Fail URL: the provided captive portal fail URL

You can fill the other URLs if you need also. Click in "OK" to save the settings.

Configuring the Wireless LAN

Now you need to associate the Captive Portal previously created to the Wireless LAN. You need to have a Wireless LAN already created and configured in order to proceed with this step.

Select your Wireless LAN in "Configuration > Wireless > Wireless LANs" and go to the "Security" tab:

Wing5 wireless lan security.png

In order to provide Free Wi-Fi with Captive Portal enabled you need to set the following parameters:

  • Select Authentication: PSK / None
  • Enforcement: check "Captive Portal Enable"
  • Captive Portal Policy: select the previously created Captive Portal Policy
  • Select Encryption: Open
Personal tools
Namespaces
Variants
Actions
Navigation
Toolbox