Users Guide

Parameter Description
White List To add a netdestination to the captive portal whitelist, enter the destination host or
subnet, then click Add. The netdestination will be added to the whitelist. To remove
a netdestination from the whitelist, select it in the whitelist field, then click Delete.
If you have not yet defined a netdestination, use the CLI command netdestination to
define a destination host or subnet before you add it to the whitelist.
This parameter requires the Public Access license.
Black List To add a netdestination to the captive portal blacklist, enter the destination host or
subnet, then click Add. The netdestination will be added to the blacklist. To remove a
netdestination from the blacklist, select it in the blacklist field, then click Delete.
If you have not yet defined a netdestination, use the CLI command netdestination to
define a destination host or subnet before you add it to the blacklist.
Show Acceptable
Use Policy Page
Show the acceptable use policy page before the logon page.
Default: Disabled
User idle timeout
The user idle timeout value for this profile. Specify the idle timeout value for the client
in seconds. Valid range is 30-15300 in multiples of 30 seconds. Enabling this option
overrides the global settings configured in the AAA timers. If this is disabled, the
global settings are used.
Redirect URL URL to which an authenticated user will be directed. This parameter must be an abso-
lute URL that begins with either http:// or https://.
URL Hash Key If a redirection URL is defined, enter a URLHash Key to hash the redirect URL using
the specified key.
This parameter enhances security for the Clearpass Guest login URL so that Clear-
pass can trust and ensure that the client MAC address in the redirect URL has not
been tampered with by anyone. Default: Disabled.
Enabling Optional Captive Portal Configurations
The following are optional captive portal configurations:
l Uploading Captive Portal Pages by SSID Association on page 390
l Changing the Protocol to HTTP on page 391
l Configuring Redirection to a Proxy Server on page 392
l Redirecting Clients on Different VLANs on page 393
l Web Client Configuration with Proxy Script on page 393
Uploading Captive Portal Pages by SSID Association
You can upload custom login pages for captive portal into the controller through the WebUI (refer to Creating
and Installing an Internal Captive Portal on page 396). The SSID to which the client associates determines the
captive portal login page displayed.
You specify the captive portal login page in the captive portal authentication profile, along with other
configurable parameters. The initial user role configuration must include the applicable captive portal
authentication profile instance. (In the case of captive portal in the base operating system, the initial user role is
Dell Networking W-Series ArubaOS 6.4.x | User Guide Captive Portal Authentication | 390