Deployment Guide

Table Of Contents
Table 23: External Captive Portal Settings (continued)
Field Description
handshake and protection against future password
compromises.
WPA3-Compatibility — Option for mixed deployments of
802.11ax APs and older AP models. If the network is
configured with WPA3-Compatibility (SAE or WPA2 PSK
authentication), 802.11ax APs running ExtremeWireless
WiNG 7.2.x or later utilize the WPA3-Personal protocol.
Older AP models that are not WPA3 compatible use WPA2
AES.
For more information, see the Extreme Campus Controller User
Guide or Online Help.
Enable Captive Portal Check this option to enable captive portal support on the
network service.
Captive Portal Type Select External as the Captive Portal Type.
ECP URL URL address for the external captive portal.
Walled Garden Rules Select Walled Garden Rules to configure policy rules for the
external captive portal.
Identity Determines the name common to both the Extreme Campus
Controller and the external Web server if you want to encrypt
the information passed between the Extreme Campus
Controller and the external Web server. Required for signing
the redirected URL. If you do not configure the Identity, the
redirector on the AP drops the trac.
Shared Secret The password that is used to validate the connection between
the client and the RADIUS server.
Use HTTPS for connection Indicates that the connection will be secure with HTTPS.
Send Successful Login To Indicates destination of authenticated user. Valid values are:
Original Destination. The destination of the original request.
Custom URL. Provide the URL address.
MAC-based authentication (MBA) Check this option to enable MBA.
3. Select Save.
Next, edit the configuration profiles in each device group, specifying the External Captive Portal
network.
Related Topics
Editing the Device Group Profile for ECP Network on page 195
Editing the Device Group Profile for ECP Network
Configure an ECP network and be aware of the authenticated policy role that you are using before
modifying the device group profile.
1. Go to Configure > Sites and select a site.
2. Click Device Groups.
ECP Local Authentication
Editing the Device Group Profile for ECP Network
Extreme Campus Controller Deployment Guide for version 5.46.03 195