This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Hotspot function over a routed network

Good morning community

following phenomenon or problem. In order to offer wireless at other sites , I tied a AP30 over a routed network.
At the config :
eth5 = 192.168.20.1/24 -> statically assigned ,
Router Location A = 192.168.20.254/24 ,
Router Location B = 192.168.21.254/24 ,
DHCP Server = 192.168.21.1/24 ,

The AP 30 recieves from the DHCP server a leases ( 192.168.21.11 ), everything works perfectly and i see the AP in the Webfrontend on the UTM. Clients can connect to the AP and traffic ist routed to the UTM. Oh , the AP is in mode ' bridget to AP LAN' , just so it works.

My problem is when I configure a hotspot on this AP, this works well so far. However, the first client that authenticate on the Network authenticate automatically each other. Smartphone A authenticate with an Voucher and every Client in this network has automatically access on the internet.

And i have no idea what it is or how i must change the config so thats works.

For your ideas and advice i would be very grateful.

MfG
Alex


This thread was automatically locked due to age.
  • You should get Sophos Support involved.  None of us can imagine why this isn't working for you.

    Cheers - Bob
     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
  • On the previous page trollvottel gave a hint about why only one client needs to authenticate.
    I believe his suggestion is to completely put the AP on a separate zone but I don't know exactly if he just means to put the AP on a new interface or something else...

    Managing several Sophos UTMs and Sophos XGs both at work and at some home locations, dedicated to continuously improve IT-security and feeling well helping others with their IT-security challenges.

    Sometimes I post some useful tips on my blog, see blog.pijnappels.eu/category/sophos/ for Sophos related posts.

  • Ok thanks for your help and advice. Now I can tell my boss it´s not to easy only with additional costs.

    Regards
    Alex
  • More or less I solved the problem with a RED device. Works pretty good.

    Yet again thanks to all.

    Greetings
    Alex