This page explains configuration of SonicWall devices to work with IronWifi Captive Portal.


  1. SonicWall Access Point is setup and running the latest firmware.
  2. 802.1x SSID is already configured.
  3. DHCP and DNS are appropriately configured.
  4. IronWifi initial setup is complete. This includes Network and Captive Portal settings.
  5. SonicWall Access Point can communicate with IronWifi servers.
  6. The Guest SSID VLAN can communicate with IronWifi servers.
  7. All systems are appropriately licensed.


Sign in to SonicWall Administration Interface. Click Network, click Zones and click WLAN edit button.


Leave the "General" options default and click Guest Services


Check Enable Guest Services and check Enable External Guest Authentication. Change the Max Guests value to 255.


Select HTTP client Redirect Protocol. Under "Web Server", select HTTPS protocol and create new object for Splash page - FQDN, zone DMZ. Enter 443 as the Port Number.


Select Auth Pages tab and enter "/api/pages/xxxxxx/" to all input fields. "xxxxxx" is your Splash page identifier, from Console.


Review other settings and click OK to save Changes.



The last step is to Allow remote connections on your Firewall. IronWifi needs to be able to connect to the SonicWall Guest Services to authorize connected clients. Guest Services are listening on port 4043 and IronWifi will try to connect to the URL in this format:


The source IP address will be same as is the Captive Portal URL -, so no further changes are required in your SonicWall firewall rules.