Page 93 of 97
Appendix A Using the External Login Server
MESH AP provides an option that allows administrator to redirect users to a remote server to
log in to the public access interface instead of using the internal login page.
The advantages of using the external login server are listed as follow:
•
The login page is completely customizable and centralized located at the web server.
•
Users can login to the public access interface without exposing their web browsers to
the SSL certificate on the MESH AP. Warning messages caused by having an SSL
certificate on the MESH AP that is not signed by a well-known certificate authority is
eliminated.
•
Only a single SSL certificate signed by a well-known certificate authority is required for
the remote web server. There is no need to obtain the SSL certificate for every MESH
AP.
External Login could be used, for example to deploy a centralized login portal. Following
diagram shows the sequence of the login process when a client start access internet using
MESH AP Access Point.
External Login Process
Hotspot Access Point
RADIUS Server
External Web Server
Client Station
Non authenticated
HTTP request
Request Redirect
Login Page is Sent
Username &
Password Sent
Radius
Authentication and
Accounting
Request
Login Accepted/
Rejected
Login Results
returned
Return Login
Results in defined
template format
A-1 Configuring the MESH AP
Login to the access point configurations, under Login Setup->User Login Parameters, enter