<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: authenticating users who access the LAN in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589307#M13212</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Search around for "captive portal." &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco's captive portal (stand-alone) is BBSM, there are several "open" solutions, one of which is "nocat" (which runs on *nix, I think most of the open solutions do). &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is a web page that pops up when the client first accesses the network, and requires some action (like an acknowledgement of no liability on the bandwidth supplier) must be taken.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Good Luck&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Scott&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 11 Aug 2006 22:29:21 GMT</pubDate>
    <dc:creator>scottmac</dc:creator>
    <dc:date>2006-08-11T22:29:21Z</dc:date>
    <item>
      <title>authenticating users who access the LAN</title>
      <link>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589306#M13211</link>
      <description>&lt;P&gt;We have a Cisco 1200 Aironet and would like to challange anyone accessing our network for their credentials (perhaps like a wireless hotspot)? The users will only have access to the internet so security is not a concern for us. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How can we do this without having to make changes to the client PC? &lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 19:50:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589306#M13211</guid>
      <dc:creator>j.langton</dc:creator>
      <dc:date>2021-07-04T19:50:24Z</dc:date>
    </item>
    <item>
      <title>Re: authenticating users who access the LAN</title>
      <link>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589307#M13212</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Search around for "captive portal." &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco's captive portal (stand-alone) is BBSM, there are several "open" solutions, one of which is "nocat" (which runs on *nix, I think most of the open solutions do). &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is a web page that pops up when the client first accesses the network, and requires some action (like an acknowledgement of no liability on the bandwidth supplier) must be taken.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Good Luck&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Scott&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 11 Aug 2006 22:29:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589307#M13212</guid>
      <dc:creator>scottmac</dc:creator>
      <dc:date>2006-08-11T22:29:21Z</dc:date>
    </item>
    <item>
      <title>Re: authenticating users who access the LAN</title>
      <link>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589308#M13213</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks. I settled on pfSense from &lt;A class="jive-link-custom" href="http://www.pfsense.org." target="_blank"&gt;www.pfsense.org.&lt;/A&gt; They have done an excellent job with this project and have it well documented. It runs on FreeBSD and uses CARP for load blanacing and redundancy. Also, they say that it will run on a 486 with 16 Mb of RAM. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Definitely worth a look for anyone looking for a captive portal that is built around a nice firewall.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 28 Aug 2006 20:30:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589308#M13213</guid>
      <dc:creator>j.langton</dc:creator>
      <dc:date>2006-08-28T20:30:00Z</dc:date>
    </item>
    <item>
      <title>Re: authenticating users who access the LAN</title>
      <link>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589309#M13214</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The cleanest way, in my opinion to do this is to use Cisco ACS. It ties right into AD. I would also combine this with a locked down vlan on the WAP&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 28 Aug 2006 22:41:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589309#M13214</guid>
      <dc:creator>jwjohansen</dc:creator>
      <dc:date>2006-08-28T22:41:30Z</dc:date>
    </item>
    <item>
      <title>Re: authenticating users who access the LAN</title>
      <link>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589310#M13215</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yep, the pfSense captive portal allows for RADIUS authentication so you can use the Cisco ACS Secure Server. I am not a fan of tying it to AD though.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 29 Aug 2006 12:23:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589310#M13215</guid>
      <dc:creator>j.langton</dc:creator>
      <dc:date>2006-08-29T12:23:43Z</dc:date>
    </item>
    <item>
      <title>Re: authenticating users who access the LAN</title>
      <link>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589311#M13216</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Just curious about not linking ACS to AD...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Why?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 29 Aug 2006 16:04:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589311#M13216</guid>
      <dc:creator>jwjohansen</dc:creator>
      <dc:date>2006-08-29T16:04:56Z</dc:date>
    </item>
    <item>
      <title>Re: authenticating users who access the LAN</title>
      <link>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589312#M13217</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;We use it too.  If there is no need for any auth (which it can do too) It makes for an excellent splash page portal.  Our purpose is to redirect guest browsers to our acceptible usage policy page and then allow them out to the world. &lt;/P&gt;&lt;P&gt;*BSD, linux &amp;amp; other iptables based firewalls are not as nice to multiple vpn connections from behind, so we use a pair of pixes for nonbrowser traffic.  The wifi guest network lives behind a router with route policies that direct ports 80,443 &amp;amp; 8000 (portal access) to the pfsense server and all the rest to the PIX&lt;/P&gt;&lt;P&gt;Pfsense can run in a failover setup via carp&lt;/P&gt;&lt;P&gt;It works like a champ for us. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 31 Aug 2006 13:10:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/authenticating-users-who-access-the-lan/m-p/589312#M13217</guid>
      <dc:creator>ericgarnel</dc:creator>
      <dc:date>2006-08-31T13:10:27Z</dc:date>
    </item>
  </channel>
</rss>

