
724-746-5500 | blackbox.com
Page 116
724-746-5500 | blackbox.com
Chapter 9: Common Configuration Examples
Self-Registration
The user self-registers by entering data
that can then be saved to a syslog server
for tracking and auditing.
User Authentication
The user submits a
name and password,
which are sent to a
RADIUS server for
authentication.
Both (Auth/Self-reg)
Authentication at the
top and self-registration
at the bottom (the user
submits one of them).
Use Policy
Acceptance
The user must
accept a network
use policy to gain
network access.
Figure 9-7. Four types of registration through a captive Web portal running on a SmartPath AP.
9.3.2 Providing Network Settings
In addition to various registration types, Black Box offers two approaches to providing captive Web portal clients with network
settings.OneapproachusesexternalDHCPandDNSserversonthenetwork,andtheotherusesinternalDHCPandDNSservers
on the SmartPath AP itself.
Captive Web Portal with External DHCP and DNS Servers
With this approach, when the client of a previously unregistered visitor first associates with the guest SSID, the SmartPath AP
allowsDHCPandDNStraffictopassthroughsothattheclientcanreceiveitsaddressandTCP/IPassignmentsandresolvedomain
namestoIPaddresses.ItalsoallowsICMPtrafficfordiagnosticpurposes.However,theSmartPathAPinterceptsallHTTPand
HTTPStrafficfromthatclient—anddropsallothertypesoftraffic—therebylimitingitsnetworkaccesstojusttheSmartPathAP
with which it associated. No matter what website the visitor tries to reach, the SmartPath AP directs the visitor’s browser to a
registration page. After the visitor registers, the SmartPath AP stores the client’s MAC address as a registered user, applies the
appropriateuserprofiletothevisitor,andstopskeepingtheclientcaptive;thatis,theSmartPathAPnolongerinterceptsHTTP
andHTTPStrafficfromthatMACaddress,butallowstheclienttoaccessexternalwebservers.Theentireprocessisshownin
Figure 9-8.
Kommentare zu diesen Handbüchern