Captive portal for Ruijie: set it up with Purple guest WiFi
How Purple's cloud guest WiFi sits on top of Ruijie RG Series access points using web authentication and RADIUS, configured from the command line, and where to find the exact setup steps.
Listen to this guide
View podcast transcript
📚 Part of our core series: Captive Portal Guide →
Ruijie RG Series access points run the radio side of your network. Purple adds the guest layer on top: the captive portal your visitors see, the sign-in journey, and the first-party data you collect. It does not replace any of your Ruijie kit.
How Ruijie works with Purple guest WiFi
Purple is a cloud overlay. Your Ruijie access points keep running the WiFi; Purple runs the guest experience through Ruijie's web authentication. RG Series access points are configured from the command line, over Telnet or SSH, or through Ruijie Cloud, rather than a web interface.
- External web authentication. A web authentication template on the access point redirects a new device to your Purple splash page instead of granting access straight away. The visitor signs in, and control passes back to the access point.
- RADIUS. Ruijie checks each sign-in against Purple's RADIUS service on the standard ports, 1812 for authentication and 1813 for accounting, defined as a RADIUS server group with a primary and secondary server. The accounting data is what powers your visitor analytics.
A walled garden, set on the access point as free-to-reach addresses a device can use before it signs in, lets the splash page load and any payment or social-login steps complete.
That is the whole model: Ruijie moves the packets, Purple owns the sign-in and the data. Because it runs on standard web authentication and RADIUS, it works the same way across Cisco Meraki, HPE Aruba, Ruckus, Juniper Mist, Ubiquiti UniFi, Cambium, Extreme and Fortinet. Purple is hardware-agnostic by design.
What you need
- Ruijie RG Series access points, with command-line access over Telnet, SSH or Ruijie Cloud.
- A Purple venue with your splash page and sign-in journey set up.
- Your Purple RADIUS details and walled garden addresses, from your Purple dashboard.
Set it up with Purple
The exact configuration, the RADIUS server group, the web authentication settings, the web authentication template, the free-to-reach addresses and the SSID binding, is provided as a command-line script in Purple's support guide, with the precise values to enter.
Ruijie RG Series AP setup guide
Follow that guide for the configuration. This page explains how the pieces fit together, so you know what each step is doing.
What you get
Once guests sign in through Purple, every visit becomes verified, conscious-choice opt-in first-party data: who visited, how often, and how to reach them with permission. That is the difference between WiFi that connects people and WiFi that builds a marketing audience you own. Purple is GDPR-aligned and ISO 27001 certified, with 99.999% uptime across more than 80,000 live venues.
Key Definitions
External web authentication
A standard where the access point redirects a new device to an external splash page to sign in, instead of granting access itself. Purple hosts that splash page.
RADIUS
The protocol the hardware uses to check each sign-in and log session data with Purple, on the standard ports 1812 for authentication and 1813 for accounting.
Walled garden
A short allow-list of addresses a device can reach before it signs in, so the splash page and any payment or social-login steps can load.
Web authentication template
The Ruijie setting that ties a wireless network to the external splash page and RADIUS. Purple is configured here.
Command-line configuration
RG Series access points are set up over Telnet, SSH or Ruijie Cloud rather than a web page. Purple supplies the script to paste in.
Continue reading in this series
Designing B2B Captive Portals: Collecting Registered Name and Company Data
This guide provides IT managers and venue operators with a vendor-neutral technical framework for designing B2B captive portals. It details how to structure registration fields to capture registered name and company data, ensuring high completion rates while maintaining GDPR compliance and building account-level intelligence.
Captive Portal Architecture: Security, Redirection, and Best Practices
A definitive technical reference on enterprise captive portal architecture. This guide unpacks network isolation, DNS redirection, RADIUS authentication, and security compliance for IT leaders deploying secure, data-rich guest WiFi networks.
Optimising B2B Captive Portals: Capturing Company Names and Professional Data
This guide explains how IT managers, network architects, and venue operations directors can configure B2B captive portals to capture professional data - company names, job titles, and business email addresses - at the point of WiFi login. It covers the full technical architecture from VLAN isolation and RADIUS authentication through to CRM integration with Salesforce and HubSpot, with GDPR and CCPA compliance built in. Venues that deploy this correctly turn their guest WiFi network into a first-party data engine and automated lead generation system.
Got questions about your specific setup?
Our team works with venue operators, IT managers, and network engineers across 80,000 venues. Book a 20-minute call and we will show you how others like you solved it.