Before you change anything
- Confirm the correct venue
- Keep current settings handy
- Test with one device first
Connect hardware with Generic RADIUS
Generic RADIUS works with enterprise controllers and gateways that support external portals, MAC authentication, or WPA-Enterprise.
Values to enter
| Setting | Value | |---|---| | Authentication server | Your WeefyBox RADIUS host | | Authentication port | UDP 1812 | | Accounting port | UDP 1813 | | CoA / disconnect port | UDP 3799 | | Shared secret | The secret generated in WeefyBox Setup | | Interim accounting interval | 300 seconds |
Setup
- Open Setup in WeefyBox and choose Generic RADIUS.
- Copy the RADIUS host, ports, shared secret, portal URL, and walled-garden domains.
- In your WiFi controller, add a new RADIUS authentication server.
- Enter the authentication host and UDP port 1812.
- Add the accounting server on UDP port 1813.
- Enter the same shared secret in both systems.
- Enable accounting start, interim update, and stop messages.
- Set interim updates to 300 seconds.
- If supported, configure CoA/Disconnect-Message on UDP 3799.
- Configure the guest WLAN's external portal URL.
- Add every walled-garden domain shown by WeefyBox.
- Save the integration and run Test my setup.
- Join the guest network with a phone and complete the portal.
- Confirm internet access and check Portal debugger.
Troubleshooting
| Problem | Check | |---|---| | Requests time out | Firewall rules for UDP 1812/1813 and the NAS source IP | | Access-Reject | Shared secret, username format, and controller clock | | Sessions never close | Accounting stop messages and interim updates | | Disconnect does not work | NAS CoA support, UDP 3799, and the controller's CoA secret |