Jump to content

Recommended Posts

Posted

Hey guys,

 

I'm in the process of getting quotes and trying to budget for our very own Smoothwall UTM but in the meantime I'm busy playing around with Smoothwall Express.

 

We have a UniFi wireless network setup to authenticate to a Radius server (Server 2008) and with our current UTM (Cyberoam) users are required to sign in using a captive portal for internet access. Is there anyway in Smoothwall express (I'm pretty sure this exists in Smoothwall proper) that users will not need to authenticate again given that they've already authenticated (via Radius)?

 

So perfect scenario for BYOD:

 

Users arrive with their devices, connect to Wifi using Radius (AD credentials) and then are authenticated for internet use with no need to authenticate again.

Internet server, in this case Smoothwall Express, is still able to track and log that users internet usage by username?

 

Thanks!

Posted

No you will need a new BYOD VLAN/subnet where the Smoothwall acts as the DHCP server.

 

You authenticate through WiFi and using 802.1x it speaks to Smoothwall that then speaks to AD to check credentials. Then Smoothwall uses 802.1x to link to its DHCP table. This links the user to the device IP/MAC address. Then Smoothwall is set as default gateway so acts at transparent proxy using its DHCP table as an auth lookup. So it needs it's own VLAN where Smoothwall is gateway and DHCP server.

  • 1 month later...
Posted
Cool. I have routing between VLANs with a Access Control List letting traffic through to Apple print server. My Wi-Fi system is Aruba with a MDNS proxy service called Airgroup. There are free Linux MDNS setups that have a NIC on each subnet, but luckily for me my Aruba Wi-Fi dose that for me.
  • Thanks 1

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...