Firewall with bridged interfaces and captive portal

Christopher Cowart ccowart at rescomp.berkeley.edu
Wed Dec 3 14:25:21 PST 2008


Olivier Nicole wrote:
> I need to implement a firewall with bridged interfaces that offers
> captive portal (authentication before opening the traffic).
[...]
> 
> Is there any solution that exists?
> 
> I looked at pfSense, but captive portal does not work on bridged
> interfaces; it's one or the other.
> 
> Any other suggestion?

Hello,

We are using a combination of squid+ipfw. Although we are NATing the
users, that really just introduces needless complexity that could be
avoided with a bridging solution.

Our web-app/captive portal/authentication program is written in-house;
it's very tightly integrated with several existing pieces of
infrastructure. I don't know if there are any solutions that will work
out-of-the-box.

I can get you more technical details if this is a direction you'd be
interested in moving.

-- 
Chris Cowart
Network Technical Lead
Network & Infrastructure Services, RSSP-IT
UC Berkeley
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 833 bytes
Desc: not available
Url : http://lists.freebsd.org/pipermail/freebsd-questions/attachments/20081203/becd938a/attachment.pgp


More information about the freebsd-questions mailing list