Captive Portal (LDAP & QR Code)

Captive Portal (LDAP & QR Code)

Securus NET utilises a ‘Captive Portal’ to identify domain users when a device is used. The Captive Portal will automatically load when a browser is opened on first login.

The default session time is 55 minutes, however other session times can be selected in the drop-down menu when logging in. The session will time out and ask for re-authentication after 55 minutes and a further 3 minutes of inactivity. These values are customisable and can be changed upon request.


Login with LDAP

To ensure the Captive Portal is used, select option 1 when prompted for an authentication method during the Securus NET server installation. Our certificate must be installed on the device before the Captive Portal will work correctly.

Acceptable Use Policy

When first accessed, the Captive Portal will display an Acceptable Use Policy (AUP). The AUP can be edited by a member of the support team at any time. If you would like to change contents of the AUP, please email the support team with your request content. The AUP images can also be customised in the Admin Panel.

The user must accept the AUP before being able to continue to the login page.

With LDAP Authentication selected during installation, logins are handled by using the schools' domain credentials, the same that would be used to log into a domain attached Windows machine.

Simply type the username (a domain name prefix is not necessary) and password, then click Login.

Please note the captive portal can only handle accounts with a password.

A lesson time length can also be selected using the drop-down menu. These values are customisable.

image-20240701-122951.png

The page will be redirected back to the original page or to default homepage upon successful login.

Logout

The currently logged-in user can log out of their Securus NET session by going to:

https://captive-portal.securus-software.com/success.php?logout=true

The user will be redirected to the login page, allowing a new user to log in and use the device.

This URL can be bookmarked and saved to the browser toolbar for a quick way to log a user out.


Login with QR Code

Instead of using LDAP, QR Codes can be used to log users in and provide a username to captures.

The session will use the default settings applied to the server which are 55 minutes and a further 3 minutes of activity to log a user out.

You can find more information on creating QR Codes here.

With QR Code enabled, you will be instead prompted to scan your QR Code.

image-20260807-133024.png

Open your camera app and scan your QR Code and follow the link.

If a PIN Number has been setup against your QR Code, you will be prompted to type it in.

image-20260807-133119.png

Type in the PIN and click Login.

If no PIN was set against your account, following the link from the QR Code will automatically log you in and redirect you back the page you were on.

Logout

The currently logged-in user can log out of their Securus NET session by going to:

https://captive-portal.securus-software.com/success.php?logout=true

The user will be redirected to the login page, allowing a new user to log in and use the device.

This URL can be bookmarked and saved to the browser toolbar for a quick way to log a user out.


Capture Examples

Captive Portal login with LDAP

Captures will use the username taken from Active Directory after login.

Captive Portal With QR Code

image-20260807-133350.png

User was logged in with the following QR Code

image-20260807-133414.png

 

IP Address

With no authentication method select, the devices IP address will be displayed as the username.

Hostname

Hostname authentication will display the hostname of the device as the username.

Document number/reference: SEC-KB-NET-001

Classification Level: Public

Related Articles