NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.

Forum Discussion

purple-james's avatar
purple-james
Follower
May 11, 2026

Insight - RADIUS attribute bug - External Captive Portal

Hi,

 

I am from Purple Wifi - we are a Guest WiFi service provider offering external captive portal and RADIUS solutions.

 

We've recently been asked by a customer to integrate our solution with NETGEAR Insight.

 

We've configured the captive portal setting as per 

https://kb.netgear.com/000066743/How-do-I-set-up-an-Insight-External-Captive-Portal-service and everything is working, except that when the AP makes the RADIUS request to the RADIUS server, it's missing some basic/crucial attributes.

 

We can see the following in the Access-Request:

 

Access-Request Id 0 ens4:51.7.213.100:57854 -> 10.210.63.147:1812 +9.011
        User-Name = "2-3599a6f342d645c89d6741386daf936f-form@195dff"
        User-Password = "..."
        NAS-IP-Address = 192.168.1.149
        NAS-Identifier = "14:59:c0:28:xx:xx"
        Message-Authenticator = 0xf3df60664dc768f4271309e6651ba6db

 

However, as per RFC 2865, all RADIUS Access and Accounting requests should contain the following attributes also:

 

  • Called-Station-Id (MAC of the AP)
  • Calling-Station-Id (MAC of the client device)

 

Without this, the RADIUS server cannot look up the AP or the client, to authorize successfully.

 

I realize the NAS-Identifier is the MAC of the AP, but the above attributes should be included as a minimum.

 

Please can this be looked at?

 

Thanks,

 

James

No RepliesBe the first to reply

NETGEAR Academy

Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology! 

Join Us!

ProSupport for Business

Comprehensive support plans for maximum network uptime and business peace of mind.

 

Learn More