+ Post New Thread
Page 3 of 4 FirstFirst 1234 LastLast
Results 31 to 45 of 46
Wireless Networks Thread, Ruckus & VLANs in Technical; Are you able to post the switch config (thats if it isnt too big) and let us know what each ...
  1. #31
    timbo343's Avatar
    Join Date
    Dec 2005
    Location
    Leeds/York area, North Yorkshire
    Posts
    3,033
    Thank Post
    305
    Thanked 293 Times in 203 Posts
    Rep Power
    120
    Are you able to post the switch config (thats if it isnt too big) and let us know what each VLAN ID is for each group... ie VLAN 100 = Staff, VLAN 101 = Students etc.

  2. #32
    ass17's Avatar
    Join Date
    Feb 2013
    Posts
    343
    Thank Post
    5
    Thanked 38 Times in 35 Posts
    Rep Power
    27
    Make sure that your VLAN IDS on the switch match those you have setup as your smoothwall interfaces.

  3. #33

    Join Date
    Apr 2012
    Location
    Cheshire
    Posts
    126
    Thank Post
    4
    Thanked 1 Time in 1 Post
    Rep Power
    0
    Finally made a lot of progress with this, I have now managed to get smoothwall dishing out IP addresses exactly as I want and correctly depending on which SSID I connect to. I have followed the guide that was posted on here to configure the transparent proxies to re-direct to SSL page with session cookie and that is where I come unstuck. If I connect a device it takes me to the ruckus page to authenticate and authenticates perfectly, it then tries to load the smoothwall authentication page on port 442 which shows up in the web browser address bar correctly but then it says page cannot be displayed. What could I have missed?
    Last edited by Badaz52; 8th September 2014 at 03:55 PM.

  4. #34
    altecsole's Avatar
    Join Date
    Jun 2005
    Location
    Whittington, Lancashire
    Posts
    284
    Thank Post
    39
    Thanked 36 Times in 26 Posts
    Rep Power
    25
    I'm assuming you have an allow entry for Smoothwall. With our setup, I found that I had to change my ZoneDirector ACL to 'Allow all by default', set the entries I wanted to allow as No. 1 - 7 and then set a final entry at No. 8 to Deny our entire subnet. Previously I had it set to 'Deny all by default' with entries to allow, but couldn't get the SSL login to work. Changing to the above sorted that. Hope that helps for you.

  5. #35

    Join Date
    Apr 2012
    Location
    Cheshire
    Posts
    126
    Thank Post
    4
    Thanked 1 Time in 1 Post
    Rep Power
    0
    I don't think I have that bit sorted, are you able to guide me through how to do this? I don't know much about ruckus still learning! lol

  6. #36
    altecsole's Avatar
    Join Date
    Jun 2005
    Location
    Whittington, Lancashire
    Posts
    284
    Thank Post
    39
    Thanked 36 Times in 26 Posts
    Rep Power
    25
    If you haven't got any access control setup on your Zonedirector, I wouldn't worry about it. It was the ACL for our WLANs that stopped the SSL login page working for us. If you haven't configured ACLs, then that won't be the problem.

  7. #37

    Join Date
    Apr 2012
    Location
    Cheshire
    Posts
    126
    Thank Post
    4
    Thanked 1 Time in 1 Post
    Rep Power
    0
    Quote Originally Posted by altecsole View Post
    If you haven't got any access control setup on your Zonedirector, I wouldn't worry about it. It was the ACL for our WLANs that stopped the SSL login page working for us. If you haven't configured ACLs, then that won't be the problem.
    I dont have any Acls configured but do have some restricted subnets defined in guest access but i dont think its the ZD. I authenticate to ZD no problem it then tries to find smoothwall on port 442 for login but cant. I cant ping it nor does it connect if i change it from hostname to ip. What else could be stopping it?

  8. #38
    ass17's Avatar
    Join Date
    Feb 2013
    Posts
    343
    Thank Post
    5
    Thanked 38 Times in 35 Posts
    Rep Power
    27
    Do you mean 443 not 442? 443 is default https port

  9. #39

    Join Date
    Apr 2012
    Location
    Cheshire
    Posts
    126
    Thank Post
    4
    Thanked 1 Time in 1 Post
    Rep Power
    0
    Quote Originally Posted by ass17 View Post
    Do you mean 443 not 442? 443 is default https port
    Smoothwall login page loads from 442 doesnt it? I have followed the guide which says provide external access for 81 and 442 is this not right?

  10. #40
    ass17's Avatar
    Join Date
    Feb 2013
    Posts
    343
    Thank Post
    5
    Thanked 38 Times in 35 Posts
    Rep Power
    27

    Ruckus & VLANs

    Ah yes smoothy login page is 442, didnt read it carefully.

  11. #41
    ass17's Avatar
    Join Date
    Feb 2013
    Posts
    343
    Thank Post
    5
    Thanked 38 Times in 35 Posts
    Rep Power
    27

    Ruckus & VLANs

    Try this

    Login to your ZD.

    Go to configure guest access then under restricted subnets put in the subnet

    The destination address to your range to wish to access.

    For example our rule is:

    Description access to pupils gateway
    address is 10.82.0.1/32
    to any application
    to any protocol
    to any destination.


    Save

    Make sure it sits at the top above the deny rules.

    10.82.0.1 is the vlan IP address of our pupil wifi interface setup in smoothy
    Last edited by ass17; 8th September 2014 at 08:37 PM.

  12. #42
    ass17's Avatar
    Join Date
    Feb 2013
    Posts
    343
    Thank Post
    5
    Thanked 38 Times in 35 Posts
    Rep Power
    27

    Ruckus & VLANs

    Also on smoothy you need the following:

    System >> Administration >> External Access

    Interface | Source | Service | Enabled
    Port 1-2_PupilWIFI | 10.82.0.0/21 | other web acess on HTTP (80) | Enabled
    Port 1-2_PupilWIFI | 10.82.0.0/21 | other web access on HTTPS (442) | Enabled


    As before change 10.82.0.0/21 for your ip network address
    Last edited by ass17; 8th September 2014 at 08:49 PM.

  13. #43

    Join Date
    Apr 2012
    Location
    Cheshire
    Posts
    126
    Thank Post
    4
    Thanked 1 Time in 1 Post
    Rep Power
    0
    Still no luck, really frustrating as this is the last piece of the puzzle lol.

  14. #44
    altecsole's Avatar
    Join Date
    Jun 2005
    Location
    Whittington, Lancashire
    Posts
    284
    Thank Post
    39
    Thanked 36 Times in 26 Posts
    Rep Power
    25
    We use port 80 for our SSL Cookie Session login page for Smoothwall? Admin login is on port 441.

  15. #45

    Join Date
    Apr 2012
    Location
    Cheshire
    Posts
    126
    Thank Post
    4
    Thanked 1 Time in 1 Post
    Rep Power
    0
    Quote Originally Posted by altecsole View Post
    We use port 80 for our SSL Cookie Session login page for Smoothwall? Admin login is on port 441.
    Finally got it working turns out i missed part of the instruction where on external access you add the network address with the subnet mask as a / i sort of didnt do that bit so only had the network address in with no subnet mask doh!

    Thank you to everyone who has helped and finally it is working :-)

SHARE:
+ Post New Thread
Page 3 of 4 FirstFirst 1234 LastLast

Similar Threads

  1. Ruckus - different VLAN for each SSID
    By localzuk in forum Wireless Networks
    Replies: 2
    Last Post: 21st August 2013, 11:26 AM
  2. Wireless Guest SSID VLAN Ruckus
    By robbie-w in forum Wireless Networks
    Replies: 1
    Last Post: 5th March 2012, 05:27 PM
  3. Ruckus and Cisco VLan's?
    By bjohnny42 in forum Wireless Networks
    Replies: 4
    Last Post: 29th July 2011, 02:57 PM
  4. Ruckus VLANs
    By cookie_monster in forum Wireless Networks
    Replies: 7
    Last Post: 26th April 2010, 10:15 AM
  5. RUckus SSID VLANs
    By badders in forum Wireless Networks
    Replies: 4
    Last Post: 13th April 2010, 09:59 AM

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •