Huawei iMaster NCE (CloudCampus)

Modified on Wed, 29 Jan at 5:36 PM

1. Log in to Huawei iMaster NCE (CloudCampus)


Access the web interface.

In the top menu, click on Design > Template Management.


2. Create an ACL Template


In the left-hand menu, select ACL and click Create.

Configure the following settings:

  • Name: portalWiFi
  • ACL Type: User
  • ACL Number: 6000


Under Rule List, click Add and enter the required domains as per the list provided:

  • Rule Type: domain
  • IP/Domain: <domain_url>


Click OK to save.


List of domains:

flameanalytics.com

cwp.flameanalytics.com

cloudfront.net


(social logins domains if needed)


3. Create a URL Template


In the left-hand menu, select URL Template and click Create.

Configure the following settings:

  • Name: portalWiFi
  • Template type: Cloud platform-based relay authentication


Under Parameters in template, click Create and configure as follows:

  • Parameter: loginurl
    • Value Assignment Mode: Replace the existing value     
    • Parameter Name: login_url


Add the following additional parameters:

  • Parameter: redirect-url
    • Value Assignment Mode: Replace the existing value
      Parameter Name: original_url


  • Parameter: ssid
    • Value Assignment Mode: Replace the existing value
      Parameter Name: ssid


  • Parameter: user-mac
    • Value Assignment Mode: Replace the existing value
      Parameter Value: client_mac


  • Parameter: user-ip
    • Value Assignment Mode: Replace the existing value
      Parameter Name: user_ip


  • Parameter: device-mac
    • Value Assignment Mode: Replace the existing value
      Parameter Name: ap_mac


Format MAC:

  • Address case: Lowercase
  • Address Delimiter:  Colon (:)
  • Address Format: xx:xx:xx:xx:xx


Click OK to save.


4. Configure RADIUS Relay Server


In the left-hand menu, select RADIUS Relay Server and click Create.

Configure the following settings:

  • Name: portalWiFi
  • Authentication service: Portal authentication
  • Authentication protocol: PAP

Under Authentication server address, click Add and configure the following:

  • Priority: 1
  • Host: *radius_server_ip*
  • Port: 1812
  • Key: *radius_secret*

Under Accounting server address, click Add and configure similarly:

  • Priority: 1 and 2
  • Port: 1813
  • Key: *radius_secret*


Click Submit to save and set the following settings:

  • Timeout period: 5
  • Load balancing mode: Strict accordance with priority


Format MAC:

  • Address case: Lowercase
  • Address Delimiter:  Colon (:)
  • Address Format: xx:xx:xx:xx:xx



Click OK to save.


5. Configure SSID


In the top menu, click Provision > Site Configuration.

In the left-hand menu, select AP > SSID.

Click Create and configure the following settings:

  • SSID Name: Portal WiFi (or your preferred name)
  • Working status: On
  • Effective radio: 2.4 and 5G
  • Network connection mode: Layer 2 or NAT


Click Next and configure the following:

  • WLAN security policy: Open network
  • Push pages: On
  • Portal pushing mode: Relay authentication by cloud platform
  • Interconnection mode: RADIUS relay
  • Page push protocol: HTTPS
  • Username: username
  • Password parameter name: password
  • Redirect URL matching rule: Redirect URL parameter
  • Parameter name for the authentication success redirect URL: redirect_url
  • RADIUS relay server:  Select portalWiFi
  • Portal authentication free: Disabled
  • Real-time accounting: Enabled
  • Billing reporting cycle: 5
  • Default permit rule: Select portalWiFi
  • Bypass policy: User access is allowed without authentication


Click Next and then OK to save.


6. Configure Page Management


In the top menu, click Admission > Page Management.

Click on Portal Page Push Policy at the top.

Click Create and configure the following settings:

  • Name: portalWiFiManagement
  • Access Mode: Wireless
  • Match SSIDs: Yes, then click Add and select the SSID created earlier
  • Page Push authentication mode: Cloud platform-based relay authentication
  • Interconnection mode: Relay
  • URL template: Select portalWiFi
  • Third-party authentication URL:  <portalURL>


Click OK to save.


Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons

Feedback sent

We appreciate your effort and will try to fix the article