NETGEAR is aware of a growing number of phone and online scams. To learn how to stay safe click here.
Forum Discussion
purple-james
May 11, 2026Follower
Insight - RADIUS attribute bug - External Captive Portal
Hi,
I am from Purple Wifi - we are a Guest WiFi service provider offering external captive portal and RADIUS solutions.
We've recently been asked by a customer to integrate our solution with NETGEAR Insight.
We've configured the captive portal setting as per
https://kb.netgear.com/000066743/How-do-I-set-up-an-Insight-External-Captive-Portal-service and everything is working, except that when the AP makes the RADIUS request to the RADIUS server, it's missing some basic/crucial attributes.
We can see the following in the Access-Request:
Access-Request Id 0 ens4:51.7.213.100:57854 -> 10.210.63.147:1812 +9.011
User-Name = "2-3599a6f342d645c89d6741386daf936f-form@195dff"
User-Password = "..."
NAS-IP-Address = 192.168.1.149
NAS-Identifier = "14:59:c0:28:xx:xx"
Message-Authenticator = 0xf3df60664dc768f4271309e6651ba6db
However, as per RFC 2865, all RADIUS Access and Accounting requests should contain the following attributes also:
- Called-Station-Id (MAC of the AP)
- Calling-Station-Id (MAC of the client device)
Without this, the RADIUS server cannot look up the AP or the client, to authorize successfully.
I realize the NAS-Identifier is the MAC of the AP, but the above attributes should be included as a minimum.
Please can this be looked at?
Thanks,
James
No RepliesBe the first to reply
Related Content
NETGEAR Academy
Boost your skills with the Netgear Academy - Get trained, certified and stay ahead with the latest Netgear technology!
Join Us!