MSM7xx Controllers Configuration Guide v6.4.0
The following placeholders can be added to the login-url string.
DescriptionPlaceholder
Returns the IP address of the users computer.%c
Returns the WISPr location-ID. Supported for login-url only.%d
Returns the WISPr location-Name. Supported for login-url only.%e
Returns the URL on the controller where user login information should be
posted for authentication. By default, this value is URL encoded. (To
%l
enable/disable URL encoding, set the value of url-encode in the
<ACCESS-CONTROLLER> section in the configuration file.)
Returns the NAS ID assigned to the controller. By default, this is the units
serial number. Not supported in local mode.
%n
Returns the RADIUS login name assigned to the controller. By default, this
is the units serial number. Not supported in local mode.
%s
Returns the original URL requested by the user. By default, this value is
URL encoded. By default, this value is URL encoded. (To enable/disable
%o
URL encoding, set the value of url-encode in the <ACCESS-CONTROLLER>
section in the configuration file.)
Returns the domain name assigned to the controller Internet port.%i
Returns the port number on the controller where user login information
should be posted to for authentication.
%p
Returns the IP address of the controllers interface that is sending the
authentication request.
%a
When the location-aware feature is enabled, returns the ESSID of the
wireless access point the user is associated with.
%E
When the location-aware feature is enabled, returns the wireless mode
("ieee802.11a", "ieee802.11b", "ieee802.11g") the user is using to
communicate with the access point.
%P
When the location-aware feature is enabled, returns the group name of
the wireless access point the user is associated with.
%G
When the location-aware feature is enabled, returns the Called-station-id
content for the wireless access point the user is associated with.
%C
Returns the string sent by the RADIUS server when an authentication request
fails. The RADIUS server must be configured to support this feature. The
%r
information contained in the returned string depends on the configuration
of the RADIUS server.
Returns the MAC address of the wireless/wired client station that is being
authenticated.
%m
Returns the VLAN assigned to the client station at the controllers ingress.%v
Addressing security concerns
It is important that the connection between the login application and the controller be secure to
protect the exchange of user authentication traffic. The following strategy provides for complete
connection security.
Securing the remote login page
HTTPS can be used on the Web server to secure the login page. To avoid warning messages on
the users browser, the SSL certificate installed on the Web server should be signed by a well-known
CA.
Addressing security concerns 551










