SonicWALL Security Appliance Configuration Guide

The Unique Firewall Identifier, WAN interface MACs and default gateway IP of the Guest WiFi interface must be reported to support before guests will be able to load the splash page.

The following instructions outline how to configure a SonicWALL network for the Smart WiFI Platform. This guide covers details such as configuring RADIUS, address objects, and user, zone, and interface settings. This guide assumes that your SonicWALL appliance is already operational. Please make sure any firewall rules, web content filters, and other security measures have been configured to interface with the platform.

  1. Login to your SonicWALL appliance.
  2. Click Manage at the top.
  3. On the menu to the left, click on VPN > Base Setting. The Unique Firewall Identifier must match the original serial number of the device as displayed on the licenses page.
  4. On the menu to the left, click on Users > Settings
    1. Click on the Authentication option at the top and configure with:
        • User authentication method: RADIUS + Local users
        • Click the Configure RADIUS button.
          1. On the RADIUS Servers Settings page, click ADD
            • Hostname or IP Address: You will be provided this
            • Port: 1812
            • Shared Secret: You will be provided this
            • Confirm Shared Secret: Repeat secret
            • Advanced Tab- User Name Format: Name@Domain
            • Click Save
          2. On the RADIUS Servers Settings page, click ADD again
            • Hostname or IP Address: You will be provided this
            • Port: 1812
            • Shard Secret: You will be provided this
            • Confirm Shared Secret: Repeat secret
            • Advanced Tab- User Name Format: Name@Domain
            • Click Save
          3. On the RADIUS Servers Setting page, click the RADIUS users option at the top
            • Default user group to which all RADIUS users belong: Guest Services
          4. Click OK to save.
    2. On the User Settings page again, click the Accounting option at the top and then click RADIUS Accounting
      1. On the RADIUS Accounting Servers Settings page, click ADD
        • Hostname or IP Address: You will be provided this
        • Port: 1813
        • Shard Secret: You will be provided this
        • Confirm Shared Secret: Repeat secret
        • Advanced Tab- User Name Format: Name@Domain
        • Click Save
      2. On the RADIUS Accounting Servers Settings page, click ADD again
        • Hostname or IP Address: You will be provided this
        • Port: 1813
        • Shard Secret: You will be provided this
        • Confirm Shared Secret: Repeat secret
        • Advanced Tab- User Name Format: Name@Domain
        • Click Save
      3. On the RADIUS Accounting Servers Settings page, click the User Accounting option at the top
        • Send accounting data for: Guest Users
        • Include: Domain and local users
        • Send interim updates: 10 minutes
      4. Click OK
    3. On the User Settings page again, click Accept at the bottom to save changes.
  5. On the menu to the left, click Objects > Address Objects.
    1. Click the Add button at the top to create an Address Object. Using the template below as an example you will need to create an Address Object for every default walled garden entry for the integrations intended for use with this hotspot.
      • Name:
      • Zone Assignment: WAN
      • Type: FQDN
      • FQDN Hostname: *.exampledomain.com
    2. Once all the required Address Object entries have been created, click the Address Groups option at the top of the page.
    3. Click the Add button at the top to create an Address Group.
      • Name: SmartWiFi
      • Use the -> arrow to move every entry you just created into the group.
      • Click OK to save.
  6. On the menu to the left, click on Network > Zones and edit the zone you want to enable the captive portal on.
    1. Click on the Guest Services option at the top
    2. Click the checkbox for Enable Captive Portal Authentication and click Configure
      • External Captive Portal URL: You will be provided this
      • Captive Portal Welcome URL Source: Custom
      • Custom Captive Portal Welcome URL: You will be provided this
      • Session Timeout Source: From RADIUS
      • Idle Timeout Source: From RADIUS
      • RADIUS Authentication Method: CHAP
      • Click OK to save.
    3. Click the checkbox for Pass Networks and select SmartWiFi
    4. Change the MAX guest option to a suitable concurrent number of authorized guest sessions for your network.
    5. Click OK to save.
  7. Click OK to save the Zone.

Disclaimer on hardware configuration guides in the KB:

This equipment has been integrated and tested in our labs with the Smart WiFi Platform using the firmware versions below.

SonicOS Enhanced 6.5.4.11-97n

LIMITED HARDWARE SUPPORT: Hardware manufacturers frequently make changes to firmware, controllers and GUI’s. The information below may be out of date or images may be different and is to be used as a general reference guide. We do offer additional limited support to help with trouble-shooting and we highly recommend that you have a hardware support agreement and/or access to a hardware support engineering representative from the manufacturer.

Updated on June 14, 2023
Was this article helpful?