Please setup policy rule as below to get Captive Portal for unauthenticated users.
1. Configure Default rule for LAN to WAN as Drop. 2. Configured Rule with User Identity enable to allow Traffic from LAN with WAN with Scanning & Web Filter policy. 3. If SF is not used as DNS server in end user machine please configure one more rule to allow DNS traffic.
When you configure Scan HTTP ; it will do URL based filtering for HTTPS traffic based on SNI or Server Certificate.
Please setup policy rule as below to get Captive Portal for unauthenticated users.
1. Configure Default rule for LAN to WAN as Drop. 2. Configured Rule with User Identity enable to allow Traffic from LAN with WAN with Scanning & Web Filter policy. 3. If SF is not used as DNS server in end user machine please configure one more rule to allow DNS traffic.
When you configure Scan HTTP ; it will do URL based filtering for HTTPS traffic based on SNI or Server Certificate.