Skip to main content

Configure your HPE Instant GUI access points

Configuration guide for your HPE Instant IAP access points via the web-based interface to work with Wireless Social.

S
Written by Stephanie Desveaux
Updated over a month ago

Aruba Instant GUI - Virtual Controller WLAN configuration

To configure your HPE access points via the HPE Aruba Instant GUI, log in to your HPE Aruba Master IAP and then follow each of the sections below in order.

WLAN and VLAN settings

Follow the steps below to set up your guest SSID and configure your VLAN:

  1. Under Network at the top left, click on New. Configure with:

    • SSID Name: your chosen SSID name - e.g. _ Venue Name Guest WiFi

    • Primary usage: Guest

  2. Click Next and configure with:

    • Client IP assignment: Virtual Controller managed.

    • Client VLAN assignment: Default - unless you have a custom VLAN set up.

  3. Click Next to proceed to the Security settings.

Security configuration

Follow the steps below to set up the captive portal settings:

  1. Set the Splash page type: External

  2. From the Captive portal profile dropdown, choose New and enter the following details:

  1. Click OK to save.

RADIUS server configuration

To configure the RADIUS servers, follow the below steps.

  1. Click the Auth server 1 dropdown and choose New. Configure with the below details:

    • Type: RADIUS.

    • Name: guestwifi1.

    • IP address: 18.168.231.87.

    • Auth port: 1812.

    • Accounting port: 1813.

    • Shared key: Please contact Support.

      Retype key: Please contact Support.

      • โš ๏ธ Important: Ensure that there are no spaces before and after the RADIUS secret.

  2. Click OK to save.

  3. To configure the second RADIUS server, click the Auth server 2 dropdown and choose New. Configure with:

    • Type: RADIUS.

    • Name: guestwifi2.

    • IP address: 18.134.223.213.

    • Auth port: 1812.

    • Acct port: 1813.

    • Shared key: Please contact Support.

    • Retype key: Please contact Support.

      • โš ๏ธ Important: Ensure that there are no spaces before and after the RADIUS secret.

  4. Click OK to save.

  5. Configure the below settings as follows:

    • Reauth interval: 24 hrs.

    • Accounting: Enabled.

    • Accounting mode: Authentication.

    • Accounting interval: 3 min.

    • Blacklisting: Disabled.

  6. Click Next to progress to the Access menu.

Access rules configuration

  1. Set the Access Rules to Role-based.

  2. Under Roles click New and enter Preauth as the name.

  3. In the Access Rules for Preauth click New and add the following rules one by one for each of the walled garden domains. There may also be other relevant regional accounts if your venue is outside of the UK or US that you will need to add:

    1. Rule Type: Access control.

    2. Service: Network and select Any from the dropdown.

    3. Action: Allow.

    4. Destination: to a domain name.

    5. Domain name: e.g. *.wireless-social.com

  4. Once you have added all of the walled garden domains to the Preauth rule, enable the Assign pre-authentication role and select Preauth from the dropdown list.

  5. Click Finish to complete the set up.


Insights Plus RTLS configuration

To collect data for Insights Plus, you will need to configure the Real Time Locating System settings. Follow these steps:

  1. Click on More on the top right, and then Services.

  2. Click on the RTLS heading.

  3. Fill in the form that appears as below:

    • RTLS: Enabled/Ticked.

    • IP: 18.134.187.121.

    • Port: 4000.

    • Passphrase: Secret provided by Wireless Social support.

    • Update Every: 30.

    • Include Unassociated Stations: Enabled

    • Server Compatibility: enabled

  4. Click OK.

This will automatically deploy the settings to the Access Point or network if the Access Point is a controller.

Inform Support that configuration is complete.

Your login and Insights Plus presence data will appear in the Insights portal within 24 hours.

Did this answer your question?