Hotspot Instances

Overview

Hotspot instance UI defines how the mbox hotspot access controller handles user traffic when it comes to HSG. We can configure different instances for different networks, control different accesses, and enforce different user experiences, etc. Each instance works like a virtual hotspot access controller.

NOTE

While configuring VLAN, make sure the switch-port connecting to physical LAN (Switch) interface must be configured as a trunk port (with 802.1Q VLAN tagging).

Create Hotspot Instance

Procedure – Hotspot Instance (HSG)

  • User can navigate to ‘HOTSPOT SETTINGS > Hotspot Instances‘, click on the Hotspot Setting tab and click button to configure hotspot ‘New Instance’ as shown below.
    • From the ‘New Instance‘ pop window, the user can select the interface and the created Captive Portal URL and click on proceed.

The fields of Hotspot Instance List are summarized below:

FieldsDescription
InterfaceName of Hotspot Instance-interface
Admin StatusDisplays the Enable /Disable status of the interface
Hotspot ServerConfigured Hotspot server IP address
Client-Net/NetmaskConfigured Hotspot server’s Client Network IP
Hotspot-PortalCaptive Portal URL
ActionOption to delete the Hotspot Instance.
New Instance Window
   Select Interface (New Instance)Select the Interface to configure as Hotspot Instance
   Hotspot Portal (New Instance)Select the Captive Portal URL for the Hotspot Instance.

.

New/Edit Instance

  • User can click on the Hotspot Instance name, located under the Interface field in the Hotspot Setting tab to configure the Instance. The EDIT INSTANCE consists of two sections (Hotspot Instance Base Config and Hotspot Instance Optional Config) as shown in below Image.

The fields of EDIT INSTANCE List are summarized below:

SectionFieldDescription
 Hotspot Instance Base Config
Hotspot LANHotspot Instance interface
Hotspot ID (Optional)
Hotspot EnableTo enable the Hotspot Instance
Hotspot ServerHotspot instance server IP (Clients network default gateway)
Client NetworkClient networks address within the instance
Radius ServerAuthentication server for the Hotspot Instance.
Key: Radius Server Pre-shared key.
Hotspot PortalCaptive Portal URL for the Hotspot instance.

 Hotspot Instance Optional Config
Client ParametersClient Bandwidth (Optional) :
Client Timeout (Optional): Session timeout is the absolute session time, after which user session will be cleared even if the user is actively using (user will be forced to login out and the user will need to login again if required to browse).

Client DHCP Range : DHCP IP range to issue to user clients
Client DHCP DNS Server : The user can configure an explicit DNS Server, else not configure then Instance will use the default google DNS.
Permit External Client Network :??
Redirect/Success URL (Optional)Redirect client browse to a specific URL upon successful login. The page can be hosted portal within HSG or an external URL.
Bypass/Whitelist By
Permit user access without authentication based on the below settings.

Destination Domain : This field permits access based on domains, so all the URLs using sub-domains are automatically permitted
Eg: if we permit .ransnet.com, then portal.ransnet.com and http://www.ransnet.com are both permitted without Authentication.
Multiple domains can be configured here.
You also need to put a ‘.’ (dot) in front of each domain.
This is a sample entry – .ransnet.com<press enter>.outlook.com<press enter>

Destination Domain List : This field is similar to ‘Destination Domain‘ setting that permits access based on domains but in form of list.


Destination IP/URL : This field permits access based on destination URLs /IP address/Subnets.
Multiple domains can be configured here.
This is a sample entry – ww.ransnet.com<press enter>yahoo.com<press enter>www.google.com<press enter>10.1.0.0/16<press enter>20.1.1.0/24

Source MAC (Entry) : This field permits access based on the device source MAC address.
Multiple MAC addresses can be configured here.
This is a sample entry : 00-0C-29-44-8B-F8<press enter>00-0C-29-44-8B-02

Source IP/Networking (Entry) : This field permits access based on the user source IP or subnets.
Multiple MAC addresses can be configured here.
This is a sample entry – 192.168.10.9<press enter>192.168.7.0/24<press enter>172.16.1.9

Source MAC (RADIUS Setting) : This field permits access based on RADIUS MAC address authentication. The device source MAC addresses are added in the RADIUS user database using User Management > import_btn, click the button.
Seamless Re-loginEnable’s client session relogin seamless after the Portal login.

Since first login : This field settings keeps the session for no. of days from the first login.
Since last login : This field settings keeps the session for no. of days from the last use.
Enable/Disable ParametersIntercept DNS Requests :

iPhone CNA Support : Enable to auto trigger the splash portal for iPhone/iMac devices.
Edit Instance field list.

.

  • After the Hotspot Instances are configured, the user can view the current status of the Instance (Enabled instance) in the Hotspot Status tab as shown below. The page provides user with information like virtual tunnels created by instances, connected devices (IP issued by Hotspot Instance), and successfully authenticated users through Hotspot Instance.
Hotspot Status list tab

Procedure – Hotspot Instance (mFusion)

  • User can navigate to ‘ORCHESTRATOR > Configuration > [HSA / UA Series]’ and click on host mac address to open the configuration page.
  • Navigate to Security tab and click on Hotspot menu to open the below screen. Click on the button to configure hotspot instance.

Hotspot Instance Filed Settings

FieldDescription
Hotspot Interface*Hotspot Instance interface
Enable*To enable the Hotspot Instance
Auth. Server
(Radius)
*
Authentication server for the Hotspot Instance.
RADIUS Server : Host Radius IP address
RADIUS Key  : Host secret key
Captive Portal URL*The URL of the designed captive portal-( User can preview the portal page and copy the URL and paste it in this field )
Optional Hotspot Settings – (Keep it empty, The Host will auto config the settings)Server/Ports : [ Server (IP or Host) : | Port 1 : | Port 2 : ]
Client Network : Client networks address within the instance [ Network : IP Address | Netmask : IP Address ]
Static Network : [ Network : IP Address | Netmask : IP Address]
VLAN Steering (Steering Profile) : mention the Access Profile (Case sensitive) before captive portal authentication
CNA : Enable to auto trigger the splash portal for iPhone/iMac devices.
Optional Client ParametersBandwidth : [ Idle Timeout (s) : | Session Timeout (s) : ]
Timeout : [Idle Timeout (s) : | Session Timeout (s) : ]
Redirect URL After Login : Redirect client browse to a specific URL upon successful login. The page can be hosted portal within HSG or an external URL.
Client Sticky : [ Start: This field settings keeps the session for no. of days from the first login. | Last: This field settings keeps the session for no. of days from the last use.]
Sticky VLANs :
Local DNS :
Bypass /Whitelist By*Domain List : This field permits access based on domains, so all the URLs using sub-domains are automatically permitted with portal authentication
Destination IP/URL : This field permits access based on destination URLs /IP address/Subnets.
eg: http://www.ransnet.com, yahoo.com, http://www.google.com, 10.1.0.0/16, 20.1.1.0/24.
Source MAC
: This field permits access based on the device source MAC address.
Multiple MAC addresses can be configured here. eg: 00-0C-29-44-8B-F8<press enter>00-0C-29-44-8B-02
Source IP/URL
: eg: x.x.x.x,portal.ransnet.com etc…
Edit Instance field list.

User can configure Hotspot setting based on the above table and click on the and .

wpChatIcon
wpChatIcon