Portal Cautivo Huawei.
Paso 1: Alta del Servidor RADIUS de AIWIFI
En el panel de Huawei, ve a Design > Template Management > Policy Template.
Selecciona RADIUS Relay Server en el menú izquierdo y haz clic en Create.
Configura el perfil:
Name:
RADIUS_AIWIFIAuthentication Server Address: 3.135.4.246 . Puerto: 1812.
Accounting Server Address: 3.135.4.246. Puerto: 1813.
RADIUS Key / Shared Secret: mysecret
Authentication Protocol: Selecciona PAP.
Guarda la plantilla.
Paso 2: Creación del Walled Garden (Sitios Exentos)
Para que las antenas Huawei dejen cargar el portal antes de que el usuario inicie sesión, crearemos la lista ACL.
En el menú de plantillas, ve a ACL y haz clic en Create.
ACL Type: Selecciona User.
Agrega las siguientes reglas (Rules):
Regla 1 (DNS): Protocolo
UDP, Puerto Destino53, Action:Permit(Esencial para evitar pantallas en blanco).Regla 2 (Nube Huawei): Permite el dominio
mx-device.naas.huaweicloud.com.Reglas 3 a 12 (AIWIFI & Redes): Agrega los dominios FQDN.
captive.aiwifi.iostorage1-prod-media.s3.us-east-2.amazonaws.comapi.aiwifi.ioconnect.facebook.netfacebook.comsentry.iocloudfront.comlr-ingest.iodoubleclick.netfbsbx.com
Guarda la plantilla ACL con el nombre
WALLED_GARDEN_AIWIFI.
Paso 3: Enlazar la URL del Portal AIWIFI
Ve a Admission Resources > Page Management > URL Template y haz clic en Create.
Template Type: Elige Cloud platform-based relay authentication.
Guarda los cambios básicos.
Ahora ve a la pestaña superior Portal Page Push Policy y haz clic en Create.
Configura la redirección:
Match SSIDs: Selecciona el SSID de tus clientes.
Authentication Mode: Cloud platform-based relay authentication.
Interconnection Mode: RADIUS Relay.
URL Template: Selecciona la plantilla que acabas de crear.
Third-party authentication URL: Pega la URL exacta de AIWIFI:
[http://captive.aiwifi.io] o (captive.aiwifi.io)
Haz clic en Apply.
Paso 4: Modificación del SSID en los APs AirEngine
Ve a Provision > Device Configuration > Site Configuration > AP > Wi-Fi.
Edita tu SSID existente.
En la pestaña Security Authentication:
WLAN Security Policy: Selecciona Open Network.
Activa la casilla Open + Portal authentication.
Page Pushing Mode: Relay authentication by cloud platform.
Interconnection Mode: RADIUS Relay.
RADIUS Relay Server: Selecciona tu perfil
RADIUS_AIWIFI(Paso 3).Default Permit Rule (Walled Garden): Selecciona tu ACL
WALLED_GARDEN_AIWIFI(Paso 4).
Haz clic en Save/Apply.