Hotspot Services - NCOS-How-to-Setup-Hotspot-Services-Captive-Portal/Hotspot-Services

Setting up Hotspot Services and Captive Portal

NetCloud Feature
Networking > Wireless LAN
ft:locale
en-US
ft:sourceName
Paligo_Prod

The following describes the purpose and the steps to configure the Hotspot Services feature. Hotspot Services enables businesses to provide their customers a public Wi-Fi hotspot with access controls. On networks that allow open public access, like in a hotel or on a bus, it is often beneficial to present users with a page detailing the terms and limitations of the Wi-Fi service. Hotspot Services provides an easy way to set up a captive portal like this, where clients attempting to access the internet are initially redirected to a different web page or are placed in a limited-service "walled garden". In this state, clients can only access allowlisted websites until they accept the Terms of Service (ToS) or meet other defined authentication requirements. Ericsson Enterprise Wireless also offers RADIUS/UAM hotspot mode, which permits additional enterprise-level configuration through custom or third-party authentication servers.

Key features and functionality include:

  • Require ToS acceptance to use the Wi-Fi hotspot

  • URL redirect to an administrator-defined URL on authentication

  • Disable Wi-Fi hotspot service when on 3G/4G failover service

  • Configure user-session duration and idle timeout

    Note

    When hotspot session timeouts expire, DHCP assignments are not released so the client may remain connected to the network but have no internet access. Depending on client type, the hotspot may redirect to the captive portal, leaving the client with no internet access. Set the DHCP lease time to the same or less than the session timeout, so that hotspot connected devices lose their DCHP leases at the same time or before the session times out, forcing them to reconnect and reauthenticate.

  • Set maximum-bandwidth limits

  • Specify URLs to be accessible prior to authentication (within the walled garden)

  • Allowlist MAC addresses to bypass the hotspot authentication/redirect

  • Allow authenticated hotspot users to roam between routers on the same network without reauthenticating (requires third-party AAA RADIUS hotspot services)

  • Use third-party AAA RADIUS/UAM hotspot services:

    • Customizable splash pages

    • User login credential checking

    • Hotspot billing services (such as credit cards, vouchers, and SMS authentication)

    • Revenue sharing

    • Advertising revenue

    • Transaction reports

    • User search and usage information

    • Custom reporting

    • Other options offered by third-party services

Important

Ericsson Enterprise Wireless does not offer third-party AAA RADIUS authentication services. Additional fees may apply to third-party services, though open-source services are available.