Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

How to bypass ip/mac address from captive portal

Guys i had a problem when my UBNT AP AC PRO installed in my network.

 

FYI :

1. i used XG450

2. topology : sophos -> switch manageable -> LAN (UBNT)

3. no dhcp

4. my AP already connected and get ip

5. im using captive portal for every person when they wanna connect to internet

 

the problem is AP cannot adopt it, because as i know, it must login via captive portal

 

already try mac host and added it firewall, but i dont know how to setup the firewall rules 



This thread was automatically locked due to age.
Parents
  • Hi Ricky ,

    You may need to check if the request incomming to XG is of the same Mac address or differnet.

    Test

    You may use the TEST IP 1.2.3.4

    Open Disgnostics on Sophos XG and enter the BPF string host 1.2.3.4

    Go to the system or test machine and enter the same on the browser. You should see the MAC address of the incomming packet. If it is different you may need to check if there is any 3rd Party Router wireless point added . If So configure it as a Access Point so the MAC address will not be  changed. Otherwise any Layer 3 device could change the Mac address even though NAT is not applied.

    Regards,

    Aditya Patel
    Global Escalation Support Engineer | Sophos Technical Support

    Knowledge Base  |  @SophosSupport | Sign up for SMS Alerts
    If a post solves your question use the 'This helped me' link.

Reply
  • Hi Ricky ,

    You may need to check if the request incomming to XG is of the same Mac address or differnet.

    Test

    You may use the TEST IP 1.2.3.4

    Open Disgnostics on Sophos XG and enter the BPF string host 1.2.3.4

    Go to the system or test machine and enter the same on the browser. You should see the MAC address of the incomming packet. If it is different you may need to check if there is any 3rd Party Router wireless point added . If So configure it as a Access Point so the MAC address will not be  changed. Otherwise any Layer 3 device could change the Mac address even though NAT is not applied.

    Regards,

    Aditya Patel
    Global Escalation Support Engineer | Sophos Technical Support

    Knowledge Base  |  @SophosSupport | Sign up for SMS Alerts
    If a post solves your question use the 'This helped me' link.

Children