Contents
Multiple LAN Hotspot
This sample scenario represents an HSG deployment for a large hotspot network, where you broadcast multiple SSID and require each SSID to offer a differentiated user experience with a unique portal per SSID (eg. each SSID mapping to its own VLAN).

- Can use any type of Access Point at LAN side
- Have dedicated management VLAN for AP management addressing (VLAN1)
- Multiple SSID and each SSID maps to its own specific VLAN
- Each SSID/VLAN has its unique landing page. unique experience per SSID
Common use cases
Hotels | Shopping malls | Tourism places | Airports, stadiums, etc.
Deployment of Multi SSID, VLAN, and Portal Using UI
Prerequisite
- Upgrade the Hotspot Gateway box firmware version 20210213-2300. See link Upgrade Firmware
- Connect the WAN Interface of HSG to ISP device (ONT or Modem)
- Info– The WAN port (eth0) of HSG is pre-configured to get dhcp IP from ISP ONT/modem (or upstream router).
- Connect ETH1 port of HSG to the LAN Switch.
- Info– The ETH1 port (eth1) of HSG is pre-configured to release IP to LAN.
- Connect the AP to the LAN Switch
- Use default VLAN1 as management VLAN for AP/WLC
- Access Point will be receiving DHCP IP from HSG from network 192.168.8.0/22
- Info– Reserved IP for WLC or other devices, range from 192.168.8.2 to 192.168.8.99.
- Add all VLANs on the switch (VLAN10, 20, 30), configure all switch-ports to be in trunk mode, and permit all VLANs for each port (default)
- Configure APs to broadcast the desired SSID and assign each SSID to pre-configured VLANs
- Info– Keep the Switch to default VLAN (VLAN1) and Configure AP to broadcast SSID and do not assign any VLAN>>
- Use default VLAN1 as management VLAN for AP/WLC
- Connect ETH2 port to a PC for Management
- Info– The ETH2 port (eth2) of HSG is pre-configured to release IP.
Procedure
Step 1 – Access to Hotspot Management UI
- Login to Hotspot Gateway UI
- on-premises Hotspot Gateway – Use the Management PC and browse to http://10.10.10.1 and login with the Credentials.

Step 2 – Create Entity, User Account, and Permission for the User Account
- Create Entity – See link Create Customer Entity
- User can use the Company name as entity name
- Create and Configure Permission for the User Account
- Navigate to ‘ADMIN > Permissions‘. Click on the
button and configure the required permission.
- Recommendation – Create the new User Account and in the Profile field select ‘Super admin’ for this Scenario.
- Navigate to ‘ADMIN > Permissions‘. Click on the
- Create User Account – See link Create User Account
Step 3 – Create VLANs (10, 20 & 30) in eth1 interface
- Navigate to ‘NETWORK SETTINGS > Interfaces > VLAN‘ tab and click on the
button, See link New VLAN interface
- Configure three new VLANs, The example of VLANID-10 config values are shown below in Table 1, and also find the details of the other VLANs below.
- VLAN10 | IP – 172.16.10.1/24
- VLAN20 | IP – 172.16.20.1/24
- VLAN30 | IP – 172.16.30.1/24
- Configure three new VLANs, The example of VLANID-10 config values are shown below in Table 1, and also find the details of the other VLANs below.
NOTE
The below table is VLANID 10 config values, and user can config the other VLAN accordingly
S/N | Section | Field | Value |
---|---|---|---|
01 | New Interface VLAN | ||
VLAN Name | vlan10 | ||
Admin Status | Enabled | ||
Physical Interface | eth1 | ||
IP/Netmask (IP Address/Mask) | 172.16.10.1/24 | ||
02 | DHCP Server | ||
DHCP Description | vlan10 dhcp pool | ||
DNS Servers | Default | ||
Client Default Gateway | 172.16.10.1 | ||
Lease Time | Default | ||
03 | Hotspot Service | Enable | |
Step 4 – Create, Configure Captive Portal and Login Method
- Create three different Captive Portal and different portals. User can use the below portal name and the portal template. See link Create/Edit Captive portal
- portal name – ‘Portalvlan10’ | portal template – ‘Central’
- portal name – ‘Portalvlan20’ | portal template – ‘Prestige’
- portal name – ‘Portalvlan30’ | portal template – ‘EasyVideo’
- Configure Login Method (Enable Username Password and Email OTP methods). See link Login Method Types. Enable Login Methods as mentioned below.
![]() | ![]() | ![]() |
Portal Name: Portalvlan10 Portal Template: Central Entity: Customer’s Entity name Login Method: Standard Login Option (Username & Password) | Portal Name: Portalvlan20 Portal Template: Prestige Entity: Customer’s Entity name Login Method: Email Registration | Portal Name: Portalvlan30 Portal Template: EasyVideo Entity: Customer’s Entity name Login Method: NA |
Step 5 – Configure Hotspot Instance (VLAN10, VLAN20, VLAN30) interface.
- Navigate to ‘Hotspot Settings > Hotspot Instances‘. Click on ‘vlan10′ below the interface column heading and configure the vlan10 all three sections of instance, as per the Table 2 settings below.
- Configure the VLAN interfaces as per below



NOTE
The below table is VLANID 10 config values, and user can config the other VLAN’s hotspot Instances accordingly.
S/N | Section | Field | Value |
---|---|---|---|
01 | Hotspot Instance Base Config | ||
Hotspot Enable | enable by ticking the option | ||
Hotspot Portal | Select the Portal according to the VLAN interface. Eg: http://captive.ransnet.com/pid/Portalvlan10/login.php | ||
02 | Hotspot Instance Optional Config | ||
Client Parameters | Permit External Client Network – 172.16.10.0 Permit External Client Netmask – 255.255.255.0 | ||
Redirect/Success URL | http://www.ransnet.com | ||
Bypass/Whitelist By | Destination Domain – .ransnet.com Destination IP/URL – 2.1.2.1 | ||
Enable/Disable Parameters | Intercept DNS Requests – enable by ticking the option |
Step 6 – Configure Access Control
- Configure Username Password profile (Portalvlan10) for staff user.
- Navigate to ‘HOTSPOT USERS > Access Profile‘. Create a new Access Profile. See link New Access Profile
- Select ‘User Authentication‘ from User type and enter the Username and password
- Navigate to the ‘Account info’ tab on the ‘New User’ page and configure the relevant settings
- Configure Email Registration profile (Portalvlan20) for Guest users.
- Navigate to ‘HOTSPOT USERS > Access Profile‘ and locate for
- Note – To configure the Email Registration profile, the user has to first test the Captive portal Email Registration Authentication. After the first test is successful, the Email OTP auto-creates the profile in ‘Access Profile’ in the format of (RansNet_[Device Name]_[Interface Name]_[MAC Address, last 4 digits]_<<emailonepageotp>>. Eg : RansNet_mbox_br-vlan10_96-19_emailonepageotp). User can click on the Profile name and configure the account info settings as per the user requirement.
Deployment References Links (Videos/Demos)
- Create Captive portal and Configure Login Methods – https://youtu.be/yrjAkt8XkT8
NOTE
syslog server (user access logging) is enabled to collect DNS access logs and storing data up to the last 5 days.
User access records are stored up to the last 90 days
User info (username and profile data) is kept unlimited