Setting Up Captive Portal Redirect
After the SSIDs are set up, configure a captive portal page on your wireless controller so that it redirects users from the open SSID to the Cloudpath web page to begin the enrollment process.
- On the Wireless LAN Controller (WLC), configure the open SSID pre-authentication ACLs to permit access to the IP address of the Cloudpath server. Configure the WLC to point to Cloudpath as an External captive portal.
- Set up the secure WPA2-Enterprise SSID to delegate authentication to the Cloudpath onboard RADIUS server, the NPS, or an external RADIUS server.
Note: If using an external RADIUS server, you must configure layer 3 access to the Cloudpath
virtual appliance to allow certificate status verification.
For more information, see the following sections in this guide: