Community discussions

MikroTik App
 
Piplfox
just joined
Topic Author
Posts: 13
Joined: Mon Nov 13, 2006 3:43 pm

HotSpot users allowed only to internet traffic

Sun May 26, 2013 1:24 pm

Hi, I need a little help with hotspot scenario. We have a little hotel with one internet access and now we want to allow our guests to access internet too. So we have both RB751G-2hnd. This is our network configuration:
Internet
l
ADSL modem (dhcp-on)
l
switch (office lan-not manage switch)
l l
office PCs Miktorik (hot-spot)

Hot spot is configured on wlan1 interface and gest auth. works. Guests have internet access but also to our office network. So that is the problem guest’s access to our network. How we can’t deny that so the guest have only access to internet. Miktorik I connected over WAN(port 1-dhcp client) to our switch.
Any suggestions please.
 
CelticComms
Forum Guru
Forum Guru
Posts: 1765
Joined: Wed May 02, 2012 5:48 am

Re: HotSpot users allowed only to internet traffic

Sun May 26, 2013 1:50 pm

Is your ADSL modem acting as a router with DHCP server? Can it be put in bridge mode so that the routerboard acts as the router/DHCP server?
 
Piplfox
just joined
Topic Author
Posts: 13
Joined: Mon Nov 13, 2006 3:43 pm

Re: HotSpot users allowed only to internet traffic

Sun May 26, 2013 2:15 pm

Is your ADSL modem acting as a router with DHCP server? Can it be put in bridge mode so that the routerboard acts as the router/DHCP server?
Yes
 
CelticComms
Forum Guru
Forum Guru
Posts: 1765
Joined: Wed May 02, 2012 5:48 am

Re: HotSpot users allowed only to internet traffic

Sun May 26, 2013 2:38 pm

The best solution would probably be to put the ADSL modem in bridge mode then connect the RouterBoard such that the Hotspot is on one interface and the office switch is on another - then use Forward chain filters to ensure that traffic is permitted/denied as required.
 
Piplfox
just joined
Topic Author
Posts: 13
Joined: Mon Nov 13, 2006 3:43 pm

Re: HotSpot users allowed only to internet traffic

Mon May 27, 2013 11:43 am

The best solution would probably be to put the ADSL modem in bridge mode then connect the RouterBoard such that the Hotspot is on one interface and the office switch is on another - then use Forward chain filters to ensure that traffic is permitted/denied as required.
Can you please put some example?
 
Piplfox
just joined
Topic Author
Posts: 13
Joined: Mon Nov 13, 2006 3:43 pm

Re: HotSpot users allowed only to internet traffic

Wed May 29, 2013 11:24 am

Ok I think i solved the problem. Under firewall I have added rule to drop communication between two subnets, local subnet for office PCs and hotspot clients.