Transparent HotSpot

Hello
So I have about 100 users, I am using mikrotik for wireless and for routing too, also i have installed hotspot and usermanager on x86 server but i have problem


ISP has got me range of piblic IP, so i want to use this ips for all users, i want to use hotspot only for authentication not for routing, i have tried bridge but on bridge radius has stoped working. can anyone help me?

Thankyou

No one can help me???

???

Thank yuo for your replay
I meen that when i add to bridge all interfaces ehernet1 and ethernet2, in log there was messages radius server error, I have usermanager and hotspot on same hardware.

My task is.
I have range of IP-s, so i want to assigne this ip-is to clients and i want to use hotspot only for authentication not for routing, is it possible?

Now i have 192.168.0.0/24 Local, private IP-s, I want to change them to public. I have about 100-150 users all of them are using private IP-s.

and second question, if its possible to block sniffer programs, one way is to block icmp packets and change arp to replay only, but this option is bad for me i want differnet solution.

Thank you


Sorry for bad english.

what error?..

well, it’s not bad, it just won’t work. arp mode is for routing only, it have nothing to do with bridging, I believe

OK i will explane shortly

Now i have to mikrotik servers one for user manager and one for hotspot, usermanager server i want to use also for wireless login.

so question

i want to use hotspot server for bridging not for masqureid, here look
for example
192.168.0.1 gateway
192.168.0.2 is hotspot server
192.168.0.3 usermanager
192.168.0.5 clinet

when client connectes to hotspot hot spot must check to usermanager if this user is enable and he can access internet, when this done hotspot must let this client to go to gateway and gateway will do touting for clinets, i want hotpspot only for authentication. laso i want that clients ip after hotspot must stay same, (here are private ip-s, but i will use publics.) can you jelp me how to configure this.


Thank toy and if this are stupid questions sorry for them

hm… I’m not familiar with Hotspot, but I’m not sure you can use Hotspot on bridge… guys?..

Hi, look, Im not very used to those configurations yet, but since I researched A LOT about RADIUS, UserManager and Hotspot those last days to make my system work here I bet your problem could be the router setting in UserManager. Do you set the bridge IP? I mean, your hotspot IP Interface and the router configured in UserManager has to be the same IP. I read this info 2 days ago in a reply for another problem, but reading your post I think this can be the cause it wont auth users in usermanager after you bridge it. Hope it helps!!!

Thank you for replaing

I have hotspot installed also i have ip address for hotspot, usermanager now works and users can authenticate to hotspot but they cannot access internet or gateway. i think hotspot is blocking them but why i dont know.

If you could be more specific…but not too…how is your router set up? Which interface is connected to the internet? Which to your localnet behind the hotspot?

If you have a private set of IPs, you will need to do a srcnat or masquerade somewhere between the hotspot and the internet. Otherwise, it will be only a private net. Is there another router between your hotspot router and the internet?

If you are trying to use public IPs behind the hotspot, could you please tell me why? What advantage will you gain from that?

ok
I have range of ip address-is given from ISP. all clients have or nanostation 5 or rb411, and other manufacturers products, all client devices are configured to router. for example clients inside of devices they have private networks but device have public ip. also there are many access point from which users can connect using there laptops, hotspot is running on x86 computer also usermanager but on diferent computer. for that client that have devices i also use radius wireless, but for hotspot users i want to use hotspot authenication.

scenarion

hotspot 94.43.127.2
usermanager 94.43.127.3
clinets have dhcp and dhcp server will asign them public ip

so when client will connect to AP, any access point (there is big network, about 15 access points and 5 williges) he will be askd for username and password by hotspot, if he will enter corect username and password hotspot lets him to pass throw hotspot and go to isp, every client will have his own public ip.

the problem is that

I have two netcards on hotspot servers. both of them i have add to bridge and now bridge ip is 94,43,127.2, i am using radius on this server and all clients are able to authenticate but they cannot pass throw hotspot. also i forget when i was setuping hotspot i have uncheck masqurade chebox.


This is my problem

Sorry for bad english

and thankyou for helping



o also i forget answer for this question


If you are trying to use public IPs behind the hotspot, could you please tell me why? What advantage will you gain from that?

i thought that i can yous ip binding, that users have private network but access-ing internet hotspot will give them public, i need public becaouse on some local sites many users from one ip are prohibitet.

Maybe you should look at netmap. You can assign a range of public IPs to a range of private IPs. Just assign the netmap from the range of public IPs to the dhcp range for your localnet. Is that out of the question? (Is it possible?)

BTW, your English is fine!

I had some problem with HotSpot logging but not navigating. The solution was to set HTTP Proxy to a valid proxy of yours and set the right port as well… I dont know why this happened to me but it solved the problem. To see if you have the same problem as I do, check if https works. In my case Http didnt worked but https did. Try to access https://www.gmail.com. If it works just set HTTP Proxy and port to a valid one. If you have squid set to use your squid and it should solve the problem!!!

Thank to all for helping.

about usermanager i solve the problem, its works on bridge interface but hotspot doesnot, users can access login page they can authenticate but they cannot access internet. i think there is some problem with hotspot and bridge problem. :frowning: