Forums

×

Warning

JUser: :_load: Unable to load user with ID: 176101
Medium
Offline
Resolved
0 votes
Hello,

Currently, In our College, Firstly new user needs to register their device's MAC address to the NOC. (All 2000 student go to single NOC Room). When they register their MAC address, a static address is assigned to them and entry is added to the Cyberoam firewall. (Now, they have started to use DHCP to assign static IP to a MAC address).

Now, what we want is that wifi becomes open and has no MAC filtering. So, once a user is connected to the internet, The firewall blocks every connection to that host except one IP address and a specific port which would be of our Authentication Server. Then, the user will get a captive portal that will allow them to download our College's App. Once user Installs the App, The App should send a request to the Auth Server to allow Access to Intranet Services to that specific MAC Address. Then the App should Contain an Internet page on which there will be a Connect button. When they click on connect on connect button, The auth server will whitelist their MAC for Internet Access(Whoever has paid for it) to the firewall and assign bandwidth and Quota Limit. (Optional) The firewall should blacklist the MAC when their session ends.

So basically, we want to create a middle auth server which will have its own database(& separate panel for admins) which will communicate to the firewall for blacklisting and whitelisting MAC's.

Is there any way, that by using firewall's API , we can meet above specified conditions
Wednesday, July 05 2017, 01:01 PM
Share this post:
Responses (1)
  • Accepted Answer

    Wednesday, July 05 2017, 08:09 PM - #Permalink
    Resolved
    0 votes
    It looks like two of you have the same task. What you are almost describing is a hotspot service. Search the forum for coovachilli and there is a Radius app available in the marketplace. See if they will do what you want but you may need to modify your approach. I am not sure how you could use the ClearOS API, but Ben's reply to your other post is about the most you'll get.
    The reply is currently minimized Show
Your Reply