This shows you the differences between two versions of the page.
| Both sides previous revision Previous revision Next revision | Previous revision | ||
|
сервис_captive_portal [2026/05/03 15:14] val [pfSense] |
сервис_captive_portal [2026/05/04 10:23] (current) val [Services/Captive Portal] |
||
|---|---|---|---|
| Line 6: | Line 6: | ||
| * [[https://ftp.fagskolen.gjovik.no/pub/pfSense/]] | * [[https://ftp.fagskolen.gjovik.no/pub/pfSense/]] | ||
| * [[https://simplificandoredes.com/en/install-pfsense-on-virtualbox/]] | * [[https://simplificandoredes.com/en/install-pfsense-on-virtualbox/]] | ||
| - | <code> | ||
| - | По умолчанию, em0 WAN, em1 LAN | ||
| + | ==== Базовая настройка ==== | ||
| + | |||
| + | * По умолчанию, em0 WAN, em1 LAN | ||
| + | <code> | ||
| Username: admin | Username: admin | ||
| Password: pfsense | Password: pfsense | ||
| Line 14: | Line 16: | ||
| Через консоль назначаем LAN IP: 192.168.X.1/24 | Через консоль назначаем LAN IP: 192.168.X.1/24 | ||
| + | </code> | ||
| - | Подключаемся через Web и отвечаем на вопросы Визарда: | + | * Подключаемся через Web и отвечаем на вопросы Визарда: |
| + | <code> | ||
| Hostname: gate | Hostname: gate | ||
| Domain: corpX.un | Domain: corpX.un | ||
| Line 31: | Line 34: | ||
| Admin Password: Pa$$w0rd | Admin Password: Pa$$w0rd | ||
| + | |||
| + | Services/DNS Resolver/General Settings/Enable: false | ||
| </code> | </code> | ||
| Line 40: | Line 45: | ||
| </code> | </code> | ||
| - | ==== Captive Portal ==== | + | ==== System/Certificates/Certificates ==== |
| + | |||
| + | * [[Пакет OpenSSL#Создание самоподписанного сертификата]] wild | ||
| + | |||
| + | ==== System/Advanced/Admin Access ==== | ||
| + | |||
| + | * SSL/TLS Certificate: wild | ||
| + | |||
| + | ==== System/User Manager/Authentication Servers ==== | ||
| + | |||
| + | * [[Сервис FreeRADIUS]] | ||
| <code> | <code> | ||
| - | HTTPS server name: 192.168.1.1 | + | Descriptive name: radius server |
| - | Allow only users/groups with "Captive portal login" privilege set | + | Type: RADIUS |
| + | Hostname or IP address: server | ||
| + | Shared Secret: testing123 | ||
| + | RADIUS NAS IP Attribute: LAN... | ||
| + | </code> | ||
| + | |||
| + | ==== Services/Captive Portal ==== | ||
| + | |||
| + | <code> | ||
| + | Interfaces: LAN | ||
| + | |||
| + | Authentication Method: Authentication backend !!! По умолчанию | ||
| + | Authentication Server: radius server | ||
| + | NAS Identifier: gate | ||
| + | |||
| + | Enable HTTPS login: yes | ||
| + | HTTPS server name: gate.corpX.un | ||
| + | SSL/TLS Certificate: wild | ||
| + | |||
| + | Services/Captive Portal/corpX/Allowed IP Addresses | ||
| + | 192.168.X.10 | ||
| </code> | </code> | ||
| ===== Самописный вариант ===== | ===== Самописный вариант ===== | ||