cancel
Showing results for 
Search instead for 
Did you mean: 

Captive portal redirection does not work

Captive portal redirection does not work

Georg
New Contributor

I have the problem that unauthenticated clients are not automatically redirected to the internal captive portal page of the XCA, but they can access the page when they type in the IP address of the XCA.

I already tried this with many different clients.

What can be the cause of this problem?

In the Identify world there were several options to trigger the automatic redirection, but on the XCA i have no clue what is required to let this work.

The Setup is:

VE6120 Small

Version 04.76.04.0005

AP310i Access-Points

1 ACCEPTED SOLUTION

SantM
New Contributor III

@Georg I did upgrade to the version 04.76.04.0005, created new network and new CP. It worked fine for me. Captured packets in AP and checked how it works in general. Seems that AP does some checks with DNS and does temporary redirection before it contacts XCA.

Client ip: 192.168.201.27

DNS : 192.168.100.115

XCA : 192.168.100.131

 

16c8be149e594f669ac7fe80eb850b68_ab2bda53-5b59-4771-b149-a9cd5f3f43c6.png

 

View solution in original post

26 REPLIES 26

Georg
New Contributor

Hey Ronald, 

yeah i am just thinking of setting the XCA to factory defaults right now. The default VLAN is configured for bridge@AP. Its the default topology “bridge @ AP untagged”.

Thanks for the link.

Georg
New Contributor

Hi Christoph,

The screenshot with the “vlan-201” is from Santosh.

I am using B@AP untagged as default VLAN, which is in my case the local breakout VLAN, where the XCA is the DHCP-Server and holds the Captive Portal. So the XCA is in the same subnet as the Clients.

I set 8.8.8.8 as DNS server.

Ronald_Dvorak
Honored Contributor

@Georg is the VLAN configured for bridge@AC mode?!

I just installed a fresh XCA with latest code and it’s working for me.

-Ron

 

I know it’s for Identify  but could be that gives you an idea how it works in general - it’s the same principle for XCA.

https://gtacknowledge.extremenetworks.com/articles/How_To/How-to-create-a-Guest-Portal-Service/

 

Christoph_S
Extreme Employee

In the Default Auth Role vlan-201-role what’s configured for DNS access?

 

Christoph S.

Georg
New Contributor

A rule issue seems to be the most plausible explaination for this behavior as well.

GTM-P2G8KFN