Now I have 3 Mikrotics routers with WiFi and HotSpot service connected to dedicated VLAN on PA200. On the HotShot I have profile that limiting download/upload transfer to 500kb/s per user.
Id like to change Mikrotic routers to AP mode and on PA200 make captive portal. But Im looking for solution how to make session limit to every logged person to 500kb/s. Is it possible?
On QoS profile I can make limitation per interface but not for user.
Please advice me how to solve my problem.
Authentication must be done in RADIUS server.
so its boils down to limiting the throughput for each ip address separately which i don't think is possible in a simple way!!
You can try using DOS policies where you can limit particular IP address to a certain number of sessions, but that will work based on sessions not throughput !!
hmmm - thats bad news ...
The most important thing why Id change my configuration is that I didnt' see users on PAN. Mikrotiks make NAT for connections so I see only traffic from Microtics routers, not from users.
Has anyone idea how to solve my problem?
The question is - how with Access Points and PAN make acccess for people to Internet with radius authentication and with limiting transfer per user (or per IP that this user get from DHCP).
Any idea will be welcome!
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!
The Live Community thanks you for your participation!