Wireless-LAN Captive Portal + Best Practice
Good morning,
about our FortiGates (FortiOS 7.0.9) and FortiAPs we have published via Wireless-LAN incl. Captive Portal. Unfortunately, there are always problems with the connection of Apple iOS (iPhone / iPad) devices.
Among other things, the captive portal does not open or if a user leaves the reception area of the wireless LAN, he must always reconnect or authenticate at the captive portal. On the iPhone, we have already configured that no(!) private MAC address should be used. Unfortunately, it did not improve the situation.
The problems then affect the user programs, because there is no reasonable connection.
Hence my question,
what is the best practice configuration for WiFi incl. Captive Portal, if you want to provide the user access to the internal network as well as Internet.
Keyword: Idle Timeout, SSL Inspection, etc.
Regards
