I'm looking for an authenticated network access solution. Basically I
need an authenticating firewall, but it's a little more complicated
than that. I'd like to have a captive portal for two of my subnets. the
first I'd like to give access to the outside world via a cable modem we
have routed through a higher-level router on the network. I'd like this
captive portal to simply present the end user with an acceptible usage
agreement. The second subnet needs to have an authenticating gateway
allowing per-user access to various subnets throughout the network.
I've looked into spinach, horatio, m0n0wall and nocatauth and none of
them is quite exactly what I need. Does anyone know of any other
projects that might be of help/interest to me, or if one of the ones
I've been looking at might work and I'm just having trouble seeing it?
Here's a little more info on my situation:
I have one wifi network on a 10.50.40.0/24 network and a network for
public ethernet ports in the building on 10.50.222.0/24. both networks
reside on seperate vlans across the switches in the building. I want a
box for each network to act as authenticating firewall and gateway (as
per specificationg above) bridging these two networks onto my internal
backbone on 10.50.122.0/24. I have a router on this network routing
access to a worldwide vpn, and to the public internet via my oc48 and a
cable modem (yeah, I know it's a cable modem, but it was left here by
the telecom as a temp solution while they ran the OC48 and it's lit so
I want to use it for non important users). I want to give users on the
10.50.40.0/24 access only to the public internet via the cable modem if
they accept the usage policy. I want to give users on the
10.50.222.0/24 access to the internal network (only the subnets they
need access to) and/or the public net via either the oc48 or the cable
depending upon user priveledges.
Help me! This is turning into a large project very fast and I'm hoping
someone has a solution that can help me out.
|