<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Sourcefire Captive portal in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/sourcefire-captive-portal/m-p/2854785#M44020</link>
    <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I'm deploying sourcefire to my domain. I just brought it out of monitor only mode. I had a handful of acl's which delt with social media sites etc within sourcefire. I was expecting it to hit the captive portal, but nothing ever comes up.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have followed the requirements, I have a routed deployment, I put a "trust" acl into sourcefire for all traffic sourced from private networks to the port I configured the captive portal on.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I configured the captive portal port on both the ASA and within the firepower management center. I set my identity policys to ONLY include active authentication... and for testing configured it explicitly as Http basic authentication. I am never greeted with a prompt.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I'm currently testing the functionality with an http site vs something like facebook using https.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Does anyone have any insight into what could be the issue here?&lt;/P&gt;
&lt;P&gt;is there any way to explicity hit the captive portal to verify its even functioning?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 13:36:02 GMT</pubDate>
    <dc:creator>Robert Nethken</dc:creator>
    <dc:date>2019-03-10T13:36:02Z</dc:date>
    <item>
      <title>Sourcefire Captive portal</title>
      <link>https://community.cisco.com/t5/network-security/sourcefire-captive-portal/m-p/2854785#M44020</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I'm deploying sourcefire to my domain. I just brought it out of monitor only mode. I had a handful of acl's which delt with social media sites etc within sourcefire. I was expecting it to hit the captive portal, but nothing ever comes up.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I have followed the requirements, I have a routed deployment, I put a "trust" acl into sourcefire for all traffic sourced from private networks to the port I configured the captive portal on.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I configured the captive portal port on both the ASA and within the firepower management center. I set my identity policys to ONLY include active authentication... and for testing configured it explicitly as Http basic authentication. I am never greeted with a prompt.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I'm currently testing the functionality with an http site vs something like facebook using https.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Does anyone have any insight into what could be the issue here?&lt;/P&gt;
&lt;P&gt;is there any way to explicity hit the captive portal to verify its even functioning?&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 13:36:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sourcefire-captive-portal/m-p/2854785#M44020</guid>
      <dc:creator>Robert Nethken</dc:creator>
      <dc:date>2019-03-10T13:36:02Z</dc:date>
    </item>
    <item>
      <title>Hi</title>
      <link>https://community.cisco.com/t5/network-security/sourcefire-captive-portal/m-p/2854786#M44021</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;You can verify config referring to this article.&lt;/P&gt;
&lt;P&gt;https://www.cisco.com/c/en/us/support/docs/security/asa-firepower-services/200329-Configure-Active-Directory-Integration-w.html&lt;/P&gt;
&lt;P&gt;Apart from that if you have a rule with "trust" action , I would suggest to make it allow.&lt;/P&gt;
&lt;P&gt;Is&amp;nbsp; the traffic coming to captive portal tagged ? If it is then , I would suggest to upgrade to 6.0.1 as there is a known issue with tagged traffic with captive portal.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Yogesh&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sat, 16 Apr 2016 10:14:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sourcefire-captive-portal/m-p/2854786#M44021</guid>
      <dc:creator>yogdhanu</dc:creator>
      <dc:date>2016-04-16T10:14:17Z</dc:date>
    </item>
    <item>
      <title>I did infact follow that very</title>
      <link>https://community.cisco.com/t5/network-security/sourcefire-captive-portal/m-p/2854787#M44022</link>
      <description>&lt;P&gt;I did infact follow that very guide. I have changed my ACL within sourcefire to "allow" instead of "trust" now. There is still no prompt for active authentication.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I will look into getting this upgraded to 6.0.1&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;I will leave feedback once that is done, any other things I can do to check in the meantime are appreciated!&lt;/P&gt;</description>
      <pubDate>Mon, 18 Apr 2016 12:51:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/sourcefire-captive-portal/m-p/2854787#M44022</guid>
      <dc:creator>Robert Nethken</dc:creator>
      <dc:date>2016-04-18T12:51:40Z</dc:date>
    </item>
  </channel>
</rss>

