How to set up Hotspot in Mikrotik

Hotspot Configuration:


The hotspot configuration includes the following settings:
1. The Radius server configuration
2. Hotspot setup
3. Editing the profile
4. Adding the walled garden IP in the IP list for the Aradial Captive portal
5. Replacing the built in Captive portal with a redirect file for the Aradial Captive portal or the Spotngo Payment Module.
6. Replacing the Status Page and adding an image.

Radius Server Configuration:


On the left hand menu, select the Radius. Then in the radius window click on the + sign to add a radius server.



At the Add radius window:

1. Select hotspot
2. Enter the Radius server IP
3. Enter the shared secret 4.
Click on Apply
5. Click OK


Hotspot Setup: On the Left hand menu go to IP then Hotspot.
Then click on the + sign to add an hotspot interface.



Click on Setup
Select the hotspot interface typically ether2 or Wlan1



Select the desire ip address for the Hotspot



Select the IP address range

 

 If you have an SSL certificate for the Mikrotik Already, enter it now or you can add it later.



If you would like to offer SMTP server to your hotspot clients, enter it now, or you can enter it later. Most Hotspot providers will not add their SMTP server to avaid clients registering for short period and using their servers for spam.



Enter the DNS server for the Mikrotik. Typically if it is behind another gateway, you should enter the IP of the gateway as well for local DNS.



Enter the local DNS name for the Mikrotik. This is used for the Aradial Radius server Portal posting. It can further be changed in the Aradial and Spotngo Portal to match the service provider’s choice for the local DNS name. Aradial Default setting is: wireless.aradial.com



Enter an admin hotspot user for local account in case you have to get in through the captive portal when to correct a miss configuration. This users credentials will be stored on the router and the authorization requests will not be sent Aradial.



Set up should now have completed successfully.

Editing the Hotspot profile:

The hotspot profile is used to further control the hotspot setting including the login page to be used and for the radius authentication.
















In the main hotspot menu, click on Server Profiles and double click the profile you would like to edit. On the Tab menu on top, go to Login


 In the Login menu, uncheck the HTTP CHAP and Cookie and check the HTTP PAP


Proceed to the Radius Tab And select use Radius and accounting. Enabling interim updates: Under Interim Update, set the time interval for the mikrotik to send interim accounting updates to Aradial if desired. For example for interim updates every 5 minutes, enter 00:05:00 for interim update.


Click Apply an OK.
At this point you are ready to log in through the built in Mikrotik Captive Portal with a user in your Aradial radius server. If you have not added the NAS in the Aradial Radius Server, now is a good time to do so. To add the NAS in Aradial admin: - In the Aradial Main Admin, go to Server Configurations - Then select Add NAS - Enter the name of the new NAS, IP address, secret and for the NAS model select Mikrotik. For NAS server on dynamic IP, add the NASID as sent by the Mikrotik and the secret and select dynamic IP. The NASID setting in the Mikrotik is located under System side menu and Identity submenu.

Walled Garden:


Walled garden is the allowed sites which can be accessed prior authentication by the hotspot clients. Typically used for the service provider’s captive portal, their site, additional information about the venue, terms and conditions, etc In Order for External Captive portal redirection to work, it has to be added to the Walled garden list of allowed IP. In the Hotspot window, click on the Walled Garden IP Listin the top menu. Then click on IP List.



Then click on the + sign to add a location. - Select the hotspot server you would like the rule to apply to. - Select the Destination IP - And the destination ports – Optional





Note: 1. The check mark on the side of the setting means NOT (!), if checked the rule will apply to all other hotspot except hotspot1. 2. For website URL or redirection using URL and SSL Certificate such as: https://secure.aradial.com , Use the Dst. Host instead of Dst. Address for example:

External Captive portal redirection:


The Mikrotik internal Captive Portal can be replaced with an External captive portal redirection. On the side menu go to files, and replace the login.html file under the hotspot directory with a new login.html containing the following redirect code. This can be accomplished by removing the original login.html from the /hotspot/login.html (Highlight it and click the Minus button (-) to remove

Then drag the newly created login.html from your desktop and drop it under the hotspot directory. The file will reposition itself to /hotspot/login.html. Login.html for Spotngo Payment Module portal:



Share on Google Plus

About Unknown

This is a short description in the author block about the author. You edit it by entering text in the "Biographical Info" field in the user admin panel.

0 comments:

Post a Comment