Configuring Altai Access Points

Purpose of this document

  • This document should be used in conjunction with Altai user guide for configuring your Altai gateways in WiFiLAN. Please refer to WiFiLAN administrator guide and Altai user guide for detail information.
  • It is assumed that the user has basic knowledge of networking including configuring subnet mask, RADIUS setting, default gateway and DNS configuration.
  • In order to configure Altai you will need a static IP address, Subnet mask, default gateway and DNS information given to you by your Internet Service Provider. Please keep this information handy while setting up your gateway.
  • Configuring WiFiLan you will need the WAN public IP address, AP MAC address, RADIUS secret, serial number and public IP address of your Altai gateway.
  • You need an active WiFiLan account. Please contact Wifi-soft sales to create your WiFiLan account.

 

WiFiLAN Setup

Add Hotspot:

  1. Open a web browser and type http://w1.wifi-soft.net/wifilan/ and press Enter. Welcome screen of WiFiLan appears.
  2. Click the Hotspot link under Authentication section.
  3. Click the Add New Hotspot tab. The New Hotspot page appears.

Fields and Buttons

Description

Hotspot Plan

Select the plan for the hotspot based on number of concurrent users.

Hotspot Name

Enter the name of the hotspot in the Hotspot Name field.

Address

Enter the address of the location in the Address field.

City

Enter the name of the city of the location in the City field.

State

Select the name of the state from the State drop down list.

Zip Code

Enter the zip code of the location in the Zip Code field.

Latitude

Enter the Latitude of the location in the Latitude field.

Longitude

Enter the Longitude of the location in the Longitude field.

Type

Select the type of location from the Type drop down menu.

Is Paid

Click Is Paid check box if the location is charged.

Auto MAC Register

Select Auto MAC Register check box to enable the auto login feature in WiFiLan.

Submit

Click Submit button to save the changes.


Then, enter the details of the gateway

Fields & Buttons

Description

Device Type

Select Altai from the Device Type drop down menu.

Public IP Address

Enter Public IP Address of the gateway in the IP Address field. If your broadband connection is having a dynamic IP, please enter the current IP address. WiFiLAN will work even when the IP address changes. In this case, WiFiLAN uses the MAC address or NAS ID of the router to validate the packet.

If you don't know the public IP, connect to your modem and type http://www.whatismyip.org. It will display your current public IP address.

Secret

Enter the RADIUS secret configured in the gateway in the Secret field.

NAS ID

Enter an Unique NAS Identifier for the device in the NAS ID field.

MAC Address

Enter the MAC address of the WAN port in the MAC Address field.

Description

Enter a short description for the device

Once the hotspot is added, WiFiLAN will be ready to start accepting AAA requests from the gateway/controller. When the hotspot is added, WiFiLAN will automatically add a user group for that hotspot. The space in the hotspot name is replaced with underscore for the user group name.

Now you will need to design a captive portal for your hotspot and generate a URL that can be configured in the gateway/controller's settings.

Please refer to the captive portal design guide for steps to design your custom captive portal.

 

 

Altai Setup

To setup Altai

  1. Open web browser, and enter Altai web address in the address bar, and press Enter.
  2. Enter Username, and Password.
  3. Enter the captcha in the given field.
  4. Click Login. Altai welcome appears.
  5. Click Tools link (top left corner).
  6. To create RADIUS Server profile, click RADIUS Server Profiles link under Profiles link (in the left pane).

Fields & Buttons

Description

Name

Enter name for RADIUS server in Name field.

Primary RADIUS

Select Primary RADIUS check box to enable Primary Server filed, and Primary Port field.

Primary Server

Enter primary server IP address as 166.78.136.12 in the Primary Server field.

Primary Port

Enter authentication port number 1812 in Primary Port field.

Primary Secret

Enter primary secret in the Primary Secret field. Secret should match the secret in WiFiLan.

Second RADIUS

Select Second RADIUS check box to enable Second Server filed, and Second Port field.

Second Server

Enter secondary server IP address as 74.208.78.152 in the Second Server field.

Second Port

Enter authentication port number 1812 in Second Port field.

Second Secret

Enter secondary secret in the Second Secret field. Secret should match the secret in WiFiLan.

NAS Identifier

Select NAS Identifier check, and enter NAS Identifier generated in WiFiLan in NAS Identifier field.

Add

Click Add button. The name of the RADIUS server will appear in the 2nd pane.

Access Rule Configuration

Set rule which will allow user to load external URLs without authentication. You can add as many rules as you want.

  1. Click Tools link (top corner).
  2. Click Access Rules link under Profiles link (in the left pane).
  3. Click Add button.

Fields & Buttons

Description

Name

Enter name of URL in Name field.

Action

Select accept from the Action drop down menu.

Protocol

Select Protocol check box, and select all from drop down menu.

Destination IP

Select Destination IP check box to enable Start and End fields.

Start

Enter the starting destination IP address of the URL in the Start field.

End

Enter the last destination IP address of the URL in the End field.

Add

Click Add button. The URL will appear in the 2nd pane.

Access Rule Profile Configuration

  1. Click Access Rules Profile link under Profile link (in the left pane).

  2. Enter the name of the profile in the Name field (in the right pane).

  3. Select Rule Name check box which you want to add under Access Rules (in the right pane).

  4. Click Add. The Access Rule will appear in the 2nd pane.

 

ACS Profile Configuration

Click ACS Profile link under Profile link (in the left pane). 2 panes will open. Name of ACS Profile in 2nd pane, and ACS profile settings in the 3rd pane.

  1. Select Default Termination Action check box, and select Logout from the drop down menu.
  2. Select HTML Auth Enable check box, and select enable from the drop down menu.
  3. Select HTML Auth Remote Enable check box, and select enable from the drop down menu.
  4. Select HTML Auth RADIUS Profile check box, and select RADIUS profile from the drop down menu.
  5. Select HTML Auth Login URL check box, and enter URL - http://wp1.wifi-soft.com/portal/default/index.php?n=wp1&c=3&l=13 in the field.
  6. Select HTML Auth Welcome Page URL check box and enter URL - http://wp1.wifi-soft.com/portal/default/loginIframeSuccess.php in the field.
  7. Select HTML Auth Post Login Redirect check box, and select enable from the drop down menu.
  8. Select Auth Goodbye Page URL check box, and enter logoff URL in the given field.
  9. Click Add to add the configuration settings.
Have more questions? Submit a request

0 Comments

Please sign in to leave a comment.