User's Manual
hwc_vnsconfiguration.fm
Virtual Network configuration
Configuring filtering rules for a VNS
A31003-W1050-U100-2-7619,
March 2008
HiPath Wireless Controller, Access Points and Convergence Software V5 R1 , C20/C2400 User Guide 197
• Type the default gateway IP address (VNS' IP address) that you defined
on the Topology tab for this VNS.
7. Click Add. The information is displayed in the Filter Rules section of the tab.
8. Click the new filter, then select the Allow checkbox applicable to the rule you
defined.
9. To edit the order of filters, click the filter, and then click the Up and Down
buttons. The filtering rules are executed in the order you define here.
10. To save your changes, click Save.
Note: For external Captive Portal, you need to add an external server to a
non-authentication filter.
6.9.2 Defining non-authenticated filters
Defining non-authenticated filters allows administrators to identify destinations to
which a user is allowed to access without incurring an authentication redirection.
Typically, the recommended default rule is to deny all. Administrators should
define a rule set that will permit users to access essential services:
• DNS (IP of DNS server)
• Default Gateway (VNS Interface IP)
Any HTTP streams requested by the client for denied targets will be redirected to
the specified location.
The non-authenticated filter should allow access to the Captive Portal page IP
address, as well as to any URLs for the header and footer of the Captive Portal
page. This filter should also allow network access to the IP address of the DNS
server and to the network address—the gateway of the VNS. The VNS gateway
is used as the IP for an internal Captive Portal page. An external Captive Portal
will provide a specific IP definition of a server outside the HiPath Wireless
Controller.