<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Direct access despite SMS authentication in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478590#M294504</link>
    <description>&lt;P&gt;With Meraki Support we have found the solution.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;There were 2 "problems".&lt;BR /&gt;1. the access point could not connect to the splash page servers. (&lt;EM&gt;185.17.255.128/25, 209.206.57.0/24, 209.206.58.0/24 on TCP 80 and TCP 443&lt;/EM&gt;)&lt;BR /&gt;2. set "&lt;STRONG&gt;Access control&lt;/STRONG&gt;" -&amp;gt;"&lt;STRONG&gt;Controller disconnection behavior&lt;/STRONG&gt;" to "&lt;STRONG&gt;Restricted&lt;/STRONG&gt;".&lt;BR /&gt;&lt;BR /&gt;That solved our problem.&lt;/P&gt;</description>
    <pubDate>Thu, 12 Apr 2018 11:40:05 GMT</pubDate>
    <dc:creator>Dominik1</dc:creator>
    <dc:date>2018-04-12T11:40:05Z</dc:date>
    <item>
      <title>Direct access despite SMS authentication</title>
      <link>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478581#M294495</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;&lt;P&gt;We have a guest with the following settings:&lt;BR /&gt;- Network access: open&lt;BR /&gt;- Splashe page: Sign-on with SMS Authentication&lt;BR /&gt;&lt;BR /&gt;We noticed that clients can log in without sms authentication even though it is enabled.&lt;BR /&gt;There is also no splash page. At the details of the client it is written:&lt;BR /&gt;Splash: Not authorized&lt;BR /&gt;&lt;BR /&gt;Why does this suddenly stop working?&lt;/P&gt;</description>
      <pubDate>Thu, 05 Apr 2018 12:40:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478581#M294495</guid>
      <dc:creator>Dominik1</dc:creator>
      <dc:date>2018-04-05T12:40:41Z</dc:date>
    </item>
    <item>
      <title>Re: Direct access despite SMS authentication</title>
      <link>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478582#M294496</link>
      <description>&lt;P&gt;Addition:&lt;BR /&gt;Even with another SSID with encryption and SMS authentication, there is no splash page and therefore no SMS authentication.&lt;/P&gt;</description>
      <pubDate>Thu, 05 Apr 2018 12:53:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478582#M294496</guid>
      <dc:creator>Dominik1</dc:creator>
      <dc:date>2018-04-05T12:53:28Z</dc:date>
    </item>
    <item>
      <title>Re: Direct access despite SMS authentication</title>
      <link>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478583#M294497</link>
      <description>&lt;P&gt;Make sure you set "Captive portal strength" to "Block all access until sign-on is complete".&lt;/P&gt;&lt;P&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot from 2018-04-06 07-24-15.png" style="width: 435px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.png"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/268576i86CF33AD95BD552F/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.png" alt="image.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 05 Apr 2018 19:24:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478583#M294497</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2018-04-05T19:24:34Z</dc:date>
    </item>
    <item>
      <title>Re: Direct access despite SMS authentication</title>
      <link>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478584#M294498</link>
      <description>&lt;P&gt;Hi Philip&lt;BR /&gt;Thanks for your input. I have already set this option. I apologize for not having included this in my description.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Apr 2018 06:42:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478584#M294498</guid>
      <dc:creator>Dominik1</dc:creator>
      <dc:date>2018-04-06T06:42:51Z</dc:date>
    </item>
    <item>
      <title>Re: Direct access despite SMS authentication</title>
      <link>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478585#M294499</link>
      <description>&lt;P&gt;I recall that there is an option for the setting of the splash page frequency, so quite possibly if the IP lease is long enough, a specific, previously authorised user does not have to re-authenticate if the DHCP lease is still valid.&lt;/P&gt;&lt;P&gt;I do recall a situation at a village pub where the guest network handed out long IP leases and the regulars would keep the same IP pretty well indefinitely. Which made for some interesting analysis, particularly when it came to unnoticed coincidences. The management were usually weeks ahead of the village gossips.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Apr 2018 07:02:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478585#M294499</guid>
      <dc:creator>Uberseehandel</dc:creator>
      <dc:date>2018-04-06T07:02:58Z</dc:date>
    </item>
    <item>
      <title>Re: Direct access despite SMS authentication</title>
      <link>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478586#M294500</link>
      <description>&lt;P&gt;Thanks for your input!&lt;BR /&gt;I have created a new SSID with the following settings:&lt;/P&gt;&lt;P&gt;Network access &lt;STRONG&gt;&lt;EM&gt;Open&lt;/EM&gt;&lt;/STRONG&gt;&lt;BR /&gt;Splash page &lt;STRONG&gt;&lt;EM&gt;Billig&lt;/EM&gt;&lt;/STRONG&gt;&lt;BR /&gt;Captive portal strength &lt;STRONG&gt;&lt;EM&gt;Block all access until sign-on is complete&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;Splash frequency&lt;STRONG&gt;&lt;EM&gt; Every half hour&lt;BR /&gt;&lt;/EM&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;The client (new one) can still connect to this SSID and browsing to http and https sites.&lt;/P&gt;&lt;P&gt;For the test I was able to download an iso file (2GB) from a website without any problems.&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Client_SB011725.jpg" style="width: 364px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.jpeg"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/268578i96559A239CF1DC21/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.jpeg" alt="image.jpeg" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;SPAN class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Client_SB011725_traffic.jpg" style="width: 333px;"&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="image.jpeg"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/268579iE83EE4A018291C0D/image-size/large?v=v2&amp;amp;px=999" role="button" title="image.jpeg" alt="image.jpeg" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 06 Apr 2018 07:55:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478586#M294500</guid>
      <dc:creator>Dominik1</dc:creator>
      <dc:date>2018-04-06T07:55:13Z</dc:date>
    </item>
    <item>
      <title>Re: Direct access despite SMS authentication</title>
      <link>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478587#M294501</link>
      <description>&lt;P&gt;And the DHCP lease duration  . . . &lt;/P&gt;&lt;P&gt;In case the system still "sees" a validated user returning&lt;/P&gt;</description>
      <pubDate>Fri, 06 Apr 2018 08:20:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478587#M294501</guid>
      <dc:creator>Uberseehandel</dc:creator>
      <dc:date>2018-04-06T08:20:47Z</dc:date>
    </item>
    <item>
      <title>Re: Direct access despite SMS authentication</title>
      <link>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478588#M294502</link>
      <description>&lt;P&gt;We use bridge mode with VLAN tagging. The lease is 8 hours.&lt;BR /&gt;The client i uesed for the test was a new one and hasn't had a IP-adress.&lt;/P&gt;</description>
      <pubDate>Fri, 06 Apr 2018 08:31:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478588#M294502</guid>
      <dc:creator>Dominik1</dc:creator>
      <dc:date>2018-04-06T08:31:49Z</dc:date>
    </item>
    <item>
      <title>Re: Direct access despite SMS authentication</title>
      <link>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478589#M294503</link>
      <description>looks like you eliminated that possibility</description>
      <pubDate>Fri, 06 Apr 2018 08:33:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478589#M294503</guid>
      <dc:creator>Uberseehandel</dc:creator>
      <dc:date>2018-04-06T08:33:01Z</dc:date>
    </item>
    <item>
      <title>Re: Direct access despite SMS authentication</title>
      <link>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478590#M294504</link>
      <description>&lt;P&gt;With Meraki Support we have found the solution.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;There were 2 "problems".&lt;BR /&gt;1. the access point could not connect to the splash page servers. (&lt;EM&gt;185.17.255.128/25, 209.206.57.0/24, 209.206.58.0/24 on TCP 80 and TCP 443&lt;/EM&gt;)&lt;BR /&gt;2. set "&lt;STRONG&gt;Access control&lt;/STRONG&gt;" -&amp;gt;"&lt;STRONG&gt;Controller disconnection behavior&lt;/STRONG&gt;" to "&lt;STRONG&gt;Restricted&lt;/STRONG&gt;".&lt;BR /&gt;&lt;BR /&gt;That solved our problem.&lt;/P&gt;</description>
      <pubDate>Thu, 12 Apr 2018 11:40:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/direct-access-despite-sms-authentication/m-p/5478590#M294504</guid>
      <dc:creator>Dominik1</dc:creator>
      <dc:date>2018-04-12T11:40:05Z</dc:date>
    </item>
  </channel>
</rss>

