Creating the Captive Portal Profile for External Web Authentication
The following steps configure the Captive Portal profile for external Web Authentication:
- Enter the
configure terminalcommand to enter global configuration mode. - Enter the
captive-portalcommand to create a user-defined Captive Portal profile.The Captive Portal profile name must not exceed 32 characters in length.The Captive Portal command mode is enabled, where you can specify the external policy server details that enable the switch to handle the HTTP redirection mechanism. - Enter the
virtual-ipcommand to configure the IP address of the external policy server as the virtual IP address.You can enter the IP address or the DNS name, which will resolve to the IP address. - Enter the
virtual-portcommand to configure the HTTP or HTTPS protocol port number to facilitate HTTP services for the clients in external Web Authentication.By default, HTTPS is used and the default port number for HTTPS is 443. You can also specify HTTP mode and the default port number for HTTP is 80. - Enter the
login-pagecommand to configure the login page details to redirect the client to the login page hosted on the external policy server. Use one of the following options, depending on which NAC server you using:if you are using RUCKUS Cloudpath, use the following command:
login-page/enroll/page-name.device(config-cp-cp_ruckus)# login-page/enroll/ruckus/guestlogin
if you are using Aruba ClearPass, use the following command:
login-page/guest/page-namedevice(config-cp-cp_ruckus)# login-page/guest/ruckusguestlogin.php
if you are using Cisco ISE, use the following command:
login-pagepage-name created by the Cisco ISE server.device(config-cp-cp_ruckus)# login-page ruckusguestlogin.php
The login page details must be same as the login page hosted on the external policy server. - (Optional) Enter the
show captive-portalcommand to view the output of the configured Captive Portal profile.