This article describes how to enable Cloudi-Fi captive portal on Huawei Cloud.
This setup consists of below main parts:
1. Get Cloudi-Fi required URL
Location URL: this URL will be used to configure an External Captive Portal
-
Cloudi-Fi administration Locations Click on the menu button of the location and select Copy Splash page URI
Transform the URI as follows

2. Create API User
The following describes how to create a tenant administrator account with the Open Api Operator, which will be used to obtain tokens.
-
Login to iMaster NCE-Campus as an administrator
-
Go to System User Management User Management, click the Users tab, and click Create. On the displayed page, set Type to Third-party set a username and a password, and click Next.
-
On the Select User Groups page, you can add the user to a specific user group and click Next.
-
On the Select Roles page, select Open API Operator and Open Api Monitor, and click Next.
-
On the Select Managed Object, Select all resources, and click Next.
-
On the Select Access Policies page, click Next.
-
Click OK. The tenant administrator account with the Open Api Operator role is created successfully.
-
Share the login/password to Cloudi-Fi support team
3. Create the SSID
This section describes how to configure an SSID.
Go to Provision Physical Network Site Configuration from the main menu. Select a site from the Site drop-down list in the upper left corner. Then go to AP WI-FI, click Create, and configure basic SSID information.
Click Next
Configure the authentication mode as follows

In the Default permit rule, create ACL Rules for :
-
Cloudi-Fi captive portal domain : *.cloudi-fi.net
-
DNS
-
Default Gateway
-
Huawei domain : *.huawei.com
Click Next
In Policy Control, you can enable the bandwidth limitation per SSID and Enable Application / URL filtering.
Click OK.
4. Configure Portal Page Push Policy
This section describes how to configure a portal push policy based on which the specified portal will be pushed to the terminals associated with Wi-Fi.
Go to Admission Admission Resources Page Management and select Portal Page Push Policy, and click Create.
Set a Name, select the Site(s) you want to deploy the Captive Portal and Access Mode to Wireless

Set Authentication mode and paste the Captive Portal URI as a Third-party authentication URL.

Click Apply.
5. Configure Authorization Result (Optional)
This section describes how to configure the ACL, rate limit policy and other permissions granted to successfully authenticated users.
Go to Admission Admission Policy Authentication and Authorization, select Authorization Result and click Create.
Set a Name and select an authorization strategy, such as ACL, VLAN, or rate.

Click OK.
The authorization result is successfully created.
In the Bind sites dialog box, bind sites.
Go to Admission Admission Policy Authentication and Authorization, select Authorization Rules and click Create.
Set a Name, Authentication Mode to User access authentication, and Access Mode to Wireless.
Enable Match Sites and select the site(s) you want to deploy the Captive Portal.

Set the Authentication result to the result configured in earlier

Click OK.
If you have any questions, please contact Cloudi-Fi Support.
Comments
0 comments