Configuring Captive Portal
Captive Portal configurations for wireless access to visitors are to be accomplished on both FortiPresence and FortiGate/FortiLAN Cloud/FortiWLC based on the deployed access points. You are required to configure RADIUS profiles for authentication and specify the Fully Qualified Domain Names (FQDN URL) that will be exempted and enabled to process social WiFi login. For example, to allow Facebook login, enter www.facebook.com. The list of FQDNs are available on the FortiPresence GUI – Portal > Portal Settings > RADIUS Clients.
The RADIUS profiles are configured with RADIUS server IP address 34.245.252.61/radius.presence.fortinet.com and port 1812 for authentication and 1813 for accounting.
This section describes the Captive Portal configurations on the FortiGate/FortiLAN Cloud/FortiWLC. Prior to configuring Captive Portal ensure the following:
- Sites are created – See Site Management
- Portals are configured on FortiPresence – See Portal Management.
Follow this procedure to create RADIUS clients on FortiPresence.
- On the FortiPresence GUI navigate to Portal > Portal Settings > Radius Clients to create a RADIUS client for the public IP address of the FortiLAN Cloud.
- Enter the RADIUS Client Name, RADIUS Client IP, RADIUS Secret Key, and select the Device Type as FortiGate/FortiLAN Cloud/FortiWLC. Click Add.

For FortiLAN Cloud setups:
Configure the RADIUS Client IP address based on your region. For the latest RADIUS client IP address, navigate to FortiAP Network > Configure > SSID on the FortiLAN Cloud GUI.
FortiLAN Cloud Global – 173.243.132.77
FortiLAN Cloud Europe – 81.201.100.238
FortiLAN Cloud Japan – 173.243.132.207
The Project Secret Key is fortipresence. - Navigate to Portal Management and select the site to attach the configured RADIUS client.
- Select Radius Configuration and click Attach against the RADIUS client created for FortiLAN Cloud. The captive portal URL is generated.
