Skip to main content

ट्रेन WiFi: रेल ऑपरेटरों और यात्रियों के लिए संपूर्ण मार्गदर्शिका

यह आधिकारिक मार्गदर्शिका ट्रेनों में यात्री WiFi की वास्तुकला, परिनियोजन चुनौतियों और व्यावसायिक अवसरों का विश्लेषण करती है। वरिष्ठ IT और संचालन प्रमुखों के लिए डिज़ाइन की गई, यह बैकहॉल एकत्रीकरण, नेटवर्क विभाजन और अनुपालन दायित्व को कार्रवाई योग्य यात्री विश्लेषण में कैसे बदला जाए, इसे कवर करती है।

📖 4 मिनट का पठन📝 810 शब्द🔧 2 उदाहरण3 प्रश्न📚 8 मुख्य शब्द

🎧 इस गाइड को सुनें

ट्रांसक्रिप्ट देखें
TRAIN WIFI: THE COMPLETE GUIDE FOR RAIL OPERATORS AND PASSENGERS A Purple WiFi Intelligence Podcast Runtime: Approximately 10 minutes --- [INTRODUCTION & CONTEXT — 1 minute] Welcome to the Purple WiFi Intelligence podcast. I'm your host, and today we're tackling one of the most technically complex and commercially significant connectivity challenges in the transport sector: passenger WiFi on trains. If you're a rail operator, a network architect working with a train operating company, or an IT director responsible for rolling stock connectivity, this episode is built for you. We're going to cover the full picture — from the physical architecture of how WiFi actually gets onto a moving train, through to the security risks your passengers face, the compliance obligations you carry, and the analytics opportunity that most operators are leaving on the table. Let's start with a number that sets the scene. According to Ookla's Speedtest Intelligence data from Q2 2025, the gap between Europe's best and worst train WiFi is staggering. Sweden delivers a median download speed of 64.58 megabits per second on its rail network. The United Kingdom, by contrast, delivers just 1.09 megabits per second. That's a 59-fold difference — on the same continent, in the same year. That gap isn't primarily a technology problem. It's a policy and investment problem. And understanding why is the first step to fixing it. --- [TECHNICAL DEEP-DIVE — 5 minutes] Let's get into the architecture. A modern passenger WiFi deployment on a train has three distinct layers, and most operators underinvest in the wrong one. The first layer is the WAN backhaul — the connection between the train and the outside world. This is where your data actually comes from. Historically, this was a single LTE modem with a roof-mounted antenna. Modern deployments aggregate multiple uplinks simultaneously: two or more LTE or 5G modems from different mobile network operators, trackside WiFi in stations and depots, and increasingly, low-Earth-orbit satellite connectivity from providers like Starlink. The aggregation logic — deciding which uplink to use, how to bond them, and how to fail over gracefully — runs on a WAN gateway device mounted in the train's equipment bay. This is the layer that determines your ceiling. You can have the most sophisticated onboard WiFi infrastructure imaginable, but if your backhaul is a single congested LTE connection in a rural cutting, your passengers will notice. Ookla's data confirms this: countries with modern WiFi hardware but poor backhaul infrastructure — like Spain and Italy — still underperform on real-world speeds. Backhaul is the dominant bottleneck. The second layer is the onboard network itself. This is where the WAN gateway connects to an onboard router and, typically, a rail server. The router handles VLAN segmentation — and this is critically important from a security perspective. Your passenger WiFi must run on a completely isolated VLAN, with no routing path to the operational network that carries your CCTV feeds, your Passenger Information System, your automatic ticketing systems, or — most critically — your European Train Control System signalling data. In 2024, a cyberattack on a UK passenger WiFi network demonstrated exactly what happens when this segmentation is inadequate. The attack propagated from the public-facing WiFi into systems it should never have been able to reach. IEEE 802.1X port-based authentication and strict inter-VLAN firewall rules are non-negotiable here. The rail server layer adds containerised application hosting — think local content caching, onboard entertainment portals, real-time journey information displays, and captive portal services. Running these locally means passengers get a responsive experience even when backhaul connectivity degrades in tunnels or rural sections. The third layer is the passenger-facing WiFi itself. This is where your access points live — typically ceiling-mounted throughout each carriage, operating on 802.11ac WiFi 5 or, in newer deployments, 802.11ax WiFi 6. Here's a critical finding from the Ookla data: in Germany, switching from WiFi 4 to WiFi 5 delivers a 241% speed improvement for passengers. Switching from the 2.4 gigahertz band to 5 gigahertz delivers a 328% improvement. Yet across Europe, nearly 40% of train WiFi connections still run on WiFi 4, and the UK has over half of all connections on that legacy standard. The cabin hardware upgrade cycle is overdue. Now, there's one physical challenge that's unique to trains and genuinely difficult to solve: RF attenuation through modern rolling stock windows. Contemporary train windows often incorporate metallic coatings for thermal insulation and UV filtering. These coatings can attenuate mobile signals by 20 to 30 decibels — more than a layer of reinforced concrete. This is why roof-mounted antennas feeding internal repeaters are essential, rather than relying on passengers' devices to connect directly to trackside infrastructure. Some operators are now pursuing RF-permeable window retrofits, but this is a significant capital programme. On the backhaul evolution front, the most exciting development right now is LEO satellite integration. Starlink's maritime and mobility product has demonstrated sustained throughputs of 100 to 200 megabits per second on moving vehicles, with latency in the 20 to 40 millisecond range — genuinely usable for video conferencing. Several European operators are in active trials. The economics are improving rapidly, and for rural and cross-border routes where terrestrial mobile coverage is patchy, LEO satellite is increasingly the pragmatic solution. Let's talk about the captive portal and data layer, because this is where the commercial opportunity sits — and where most operators are leaving significant value on the table. When a passenger connects to your WiFi, the captive portal is your primary touchpoint. Done well, it captures a verified email address or social login, presents your terms of service and privacy notice in a GDPR-compliant format, and begins building a first-party data profile of that passenger's journey behaviour. Done badly, it's a friction-heavy obstacle that passengers abandon, or worse, a compliance liability. Under GDPR, you need a lawful basis for processing passenger data — typically consent, obtained at the point of connection. That consent must be freely given, specific, informed, and unambiguous. Pre-ticked boxes don't count. You need a clear record of when consent was given, what was consented to, and the ability to honour subject access requests and deletion requests. Platforms like Purple's Guest WiFi solution handle this compliance layer natively, with audit-ready consent logs and automated data retention policies. The analytics that flow from compliant data collection are genuinely valuable. Journey frequency, peak connection times, carriage occupancy patterns, dwell time at stations — this is operational intelligence that feeds into capacity planning, service design, and targeted communications. It's the same data model that retailers and hospitality operators have been using for years, now available to rail operators through the WiFi access layer. --- [IMPLEMENTATION RECOMMENDATIONS & PITFALLS — 2 minutes] Let me give you the three decisions that will make or break your deployment. First: invest in backhaul before you invest in cabin hardware. A state-of-the-art WiFi 6 access point network fed by a single congested LTE modem will disappoint passengers. Audit your route coverage first. Identify the black spots — tunnels, rural cuttings, cross-border sections. Design your uplink aggregation strategy around those gaps. Consider multi-operator SIM bonding as a minimum, and evaluate LEO satellite for routes where terrestrial coverage is genuinely inadequate. Second: treat network segmentation as a safety-critical requirement, not an IT best practice. Your passenger WiFi and your operational network must be on separate VLANs with explicit deny-all inter-VLAN firewall rules. Penetration test the boundary annually. The 2024 UK incident should be a wake-up call for every operator that hasn't done this audit. Third: don't deploy a captive portal without a data strategy. If you're going to ask passengers to register, give them a reason to do so — faster speeds, journey updates, loyalty points — and have a clear plan for what you'll do with the data you collect. A captive portal that collects data with no downstream use is a compliance risk with no commercial upside. The pitfalls to avoid: Don't underestimate the coupling scenario. When multiple train units are joined, your network topology changes dynamically. Your onboard routing must handle inter-unit connectivity without creating bridging loops or VLAN mismatches. Test this explicitly in your acceptance testing. And don't neglect remote management. Every onboard router needs out-of-band management access — typically via a dedicated management VLAN and VPN — so your NOC can diagnose and remediate issues without sending an engineer to the depot. --- [RAPID-FIRE Q&A — 1 minute] Quick fire. Should I deploy WiFi 6 or stick with WiFi 5? If you're specifying new rolling stock, WiFi 6 — the per-device efficiency gains in crowded carriages are significant. For existing fleets, WiFi 5 upgrades deliver strong ROI. Is Starlink ready for production rail deployments? For rural and cross-border routes, yes. For urban commuter services with frequent tunnel sections, it's a complement to cellular, not a replacement. What's the minimum viable captive portal for GDPR compliance? A clear privacy notice, explicit opt-in consent for marketing, a record of that consent, and a documented data retention policy. Anything less is a regulatory exposure. Should passengers use a VPN on train WiFi? Yes, if they're handling sensitive business data. The network is shared and the operator's security posture is unknown to the passenger. --- [SUMMARY & NEXT STEPS — 1 minute] To wrap up: train WiFi is a multi-layer engineering challenge where backhaul quality is the dominant performance variable, security segmentation is a safety-critical requirement, and the captive portal is an underutilised commercial asset. The operators winning on passenger satisfaction — LNER in the UK, the Swedish national network, SBB in Switzerland — have treated connectivity as core infrastructure, not an afterthought. They've invested in trackside coverage, modern onboard hardware, and compliant data platforms. If you're planning a deployment or an upgrade cycle, start with a backhaul audit, design your VLAN architecture with security as the primary constraint, and choose a guest WiFi platform that handles compliance natively and turns connection data into actionable analytics. Purple's platform is built for exactly this use case — from the captive portal and consent management layer through to the WiFi analytics dashboard that gives your operations team visibility into passenger behaviour across your entire fleet. You can find out more at purple.ai, or explore the transport industry section directly. Thanks for listening. Until next time. --- END OF SCRIPT

header_image.png

कार्यकारी सारांश

रेल ऑपरेटरों के लिए, उच्च-गुणवत्ता वाली ट्रेन WiFi एक यात्री सुविधा से हटकर आवश्यक परिचालन अवसंरचना बन गई है। सर्वश्रेष्ठ और पुरानी परिनियोजन के बीच का अंतर स्पष्ट है: Ookla के Q2 2025 के आंकड़ों से पता चलता है कि स्वीडन में औसत डाउनलोड गति 64.58 Mbps है, जबकि यूके 1.09 Mbps पर संघर्ष कर रहा है [1]। यह 59 गुना अंतर मुख्य रूप से एक प्रौद्योगिकी समस्या नहीं है; यह वास्तुकला और निवेश रणनीति की विफलता है।

यह मार्गदर्शिका IT निदेशकों, नेटवर्क आर्किटेक्ट्स और स्थल संचालन प्रमुखों के लिए एक विक्रेता-तटस्थ खाका प्रदान करती है। हम लचीली ऑनबोर्ड कनेक्टिविटी के लिए आवश्यक तीन-परत वास्तुकला का विश्लेषण करते हैं, नेटवर्क विभाजन की महत्वपूर्ण सुरक्षा आवश्यकता का पता लगाते हैं, और प्रदर्शित करते हैं कि Guest WiFi जैसे प्लेटफॉर्म कच्चे कनेक्शन डेटा को कार्रवाई योग्य व्यावसायिक बुद्धिमत्ता में कैसे बदलते हैं। चाहे आप एक हाई-स्पीड इंटरसिटी मार्ग या एक क्षेत्रीय कम्यूटर सेवा का प्रबंधन कर रहे हों, बैकहॉल एकत्रीकरण और GDPR-अनुरूप डेटा कैप्चर के सिद्धांत समान रहते हैं।

तकनीकी गहन-विश्लेषण: तीन-परत वास्तुकला

एक आधुनिक ट्रेन WiFi परिनियोजन Retail या Hospitality में पाए जाने वाले स्थिर स्थल परिनियोजन से मौलिक रूप से भिन्न है। नेटवर्क को 300 किमी/घंटा की गति से चलते हुए, ट्रैकसाइड सेल के बीच हैंडऑफ़ करते हुए, और भारी इन्सुलेटेड रोलिंग स्टॉक में प्रवेश करते हुए सत्र की निरंतरता बनाए रखनी चाहिए।

architecture_overview.png

परत 1: WAN बैकहॉल और एकत्रीकरण

आपके यात्री अनुभव की सीमा पूरी तरह से आपकी बैकहॉल क्षमता द्वारा निर्धारित होती है। छत पर लगे एंटीना के साथ एक सिंगल LTE मॉडेम अब व्यवहार्य नहीं है। आधुनिक वास्तुकला कई अपलिंक को एकत्रित करने के लिए एक WAN गेटवे का उपयोग करती है:

  • सेलुलर बॉन्डिंग: एकल-नेटवर्क कवरेज ब्लैक स्पॉट को कम करने के लिए कई मोबाइल नेटवर्क ऑपरेटरों (MNOs) से 4G/5G कनेक्शनों का संयोजन।
  • ट्रैकसाइड अवसंरचना: रेल गलियारे के साथ तैनात समर्पित 5 GHz या 60 GHz वायरलेस नेटवर्क।
  • LEO सैटेलाइट: निम्न-पृथ्वी-कक्षा नक्षत्र (जैसे, Starlink) ग्रामीण या सीमा-पार के उन खंडों में 100-200 Mbps थ्रूपुट प्रदान करते हैं जहाँ स्थलीय सेलुलर विफल हो जाता है [2]।

परत 2: ऑनबोर्ड नेटवर्क और विभाजन

WAN गेटवे एक ऑनबोर्ड राउटर और रेल सर्वर को फीड करता है। यह परत नेटवर्क विभाजन के महत्वपूर्ण कार्य को संभालती है।

> "यात्री WiFi को पूरी तरह से अलग VLAN पर चलना चाहिए, जिसमें CCTV फ़ीड, यात्री सूचना प्रणाली (PIS), या यूरोपीय ट्रेन नियंत्रण प्रणाली (ETCS) सिग्नलिंग डेटा ले जाने वाले परिचालन नेटवर्क के लिए कोई रूटिंग पथ न हो।"

यूके के एक यात्री WiFi नेटवर्क पर 2024 के साइबर हमले ने अपर्याप्त विभाजन के गंभीर जोखिमों को प्रदर्शित किया, जहाँ सार्वजनिक-सामना करने वाली कमजोरियों ने व्यापक टर्मिनल अवसंरचना को खतरे में डाल दिया [3]। IEEE 802.1X पोर्ट-आधारित प्रमाणीकरण और सख्त इंटर-VLAN फ़ायरवॉल नियमों को लागू करना एक गैर-परक्राम्य सुरक्षा आवश्यकता है। इसके अलावा, रेल सर्वर कंटेनरीकृत एप्लिकेशन होस्टिंग प्रदान करता है, जिससे स्थानीय सामग्री कैशिंग और Captive Portal सेवाएं तब भी कार्य कर पाती हैं जब बैकहॉल कनेक्टिविटी बाधित होती है।

परत 3: यात्री पहुंच और केबिन हार्डवेयर

अंतिम परत में डिब्बों में वितरित एक्सेस पॉइंट (APs) शामिल हैं। पुरानी हार्डवेयर प्रदर्शन पर एक महत्वपूर्ण बाधा है। जर्मनी में, WiFi 4 (802.11n) से WiFi 5 (802.11ac) में अपग्रेड करने से गति में 241% सुधार हुआ, जबकि 2.4 GHz बैंड से 5 GHz में ट्रैफिक स्थानांतरित करने से 328% की वृद्धि हुई [1]। फिर भी, लगभग 40% यूरोपीय रेल कनेक्शन अभी भी WiFi 4 पर निर्भर करते हैं।

comparison_chart.png

कार्यान्वयन मार्गदर्शिका: परिनियोजन और अनुपालन

ट्रेन WiFi को तैनात करना एक जटिल सिस्टम एकीकरण परियोजना है। निम्नलिखित चरण एक मजबूत परिनियोजन रणनीति की रूपरेखा प्रस्तुत करते हैं:

  1. बैकहॉल ऑडिट करें: केबिन APs निर्दिष्ट करने से पहले, सेलुलर कवरेज अंतराल के लिए अपने मार्ग का ऑडिट करें। इन ब्लैक स्पॉट के आसपास अपनी अपलिंक एकत्रीकरण रणनीति डिज़ाइन करें।
  2. RF-पारगम्य खिड़कियां निर्दिष्ट करें: आधुनिक ट्रेन की खिड़कियां थर्मल दक्षता के लिए धातुई कोटिंग्स का उपयोग करती हैं, जो सेलुलर संकेतों को 20-30 dB तक क्षीण कर सकती हैं। इसे दूर करने के लिए आंतरिक APs को फीड करने वाले छत पर लगे एंटीना अनिवार्य हैं।
  3. एक मजबूत Captive Portal लागू करें: Captive Portal यात्री और ऑपरेटर के बीच प्राथमिक इंटरफ़ेस है। इसे सेवा की शर्तों को प्रस्तुत करते हुए सत्यापित क्रेडेंशियल (ईमेल या सोशल लॉगिन) को सुरक्षित रूप से कैप्चर करना चाहिए।
  4. GDPR अनुपालन सुनिश्चित करें: ऑपरेटरों को यात्री डेटा को संसाधित करने के लिए एक वैध आधार स्थापित करना होगा। सहमति स्वतंत्र रूप से दी जानी चाहिए और स्पष्ट रूप से दर्ज की जानी चाहिए। मजबूत DNS और सुरक्षा के साथ अपने नेटवर्क को सुरक्षित रखें यहां एक महत्वपूर्ण विचार है।

ROI और व्यावसायिक प्रभाव: डेटा को बुद्धिमत्ता में बदलना

मुफ्त WiFi प्रदान करना एक महत्वपूर्ण परिचालन व्यय का प्रतिनिधित्व करता है। ROI उत्पन्न करने के लिए, ऑपरेटरों को प्रथम-पक्ष डेटा एकत्र करने के लिए कनेक्शन परत का लाभ उठाना चाहिए।

जब यात्री एक अनुरूप Captive Portal के माध्यम से प्रमाणित होते हैं, तो ऑपरेटर यात्रा व्यवहार के समृद्ध प्रोफाइल बना सकते हैं। यहीं पर WiFi Analytics परिवर्तनकारी हो जाता है। कनेक्शन आवृत्तियों, विशिष्ट स्टेशनों पर ठहरने के समय और कैरिज अधिभोग पैटर्न का विश्लेषण करके, ऑपरेटर परिचालन बुद्धिमत्ता प्राप्त करते हैं जो Transport हब और हवाई अड्डों में एकत्रित अंतर्दृष्टि को टक्कर देती है।

उदाहरण के लिए, यह समझना कि व्यावसायिक यात्रियों का एक विशिष्ट समूह लगातार 07:30 सेवा पर कनेक्ट होता है, लक्षित, उच्च-मूल्य वाले मार्केटिंग संचार या वफादारी कार्यक्रम एकीकरण की अनुमति देता है। यह डेटा-संचालित दृष्टिकोण WiFi नेटवर्क को fएक लागत केंद्र से राजस्व-सक्षम संपत्ति तक।

ब्रीफिंग सुनें

वास्तुकला और वाणिज्यिक रणनीति में गहन जानकारी के लिए, हमारी पूरी तकनीकी ब्रीफिंग सुनें:


संदर्भ: [1] ऊकला स्पीडटेस्ट इंटेलिजेंस, "तेज ट्रेनें, धीमी Wi-Fi: यूरोप और एशिया में ऑनबोर्ड कनेक्टिविटी की वास्तविकता", Q2 2025। [2] उद्योग परीक्षण, गतिशीलता के लिए LEO सैटेलाइट एकीकरण, 2024-2025। [3] रेलवे टेक्नोलॉजी, "यूके यात्री WiFi नेटवर्क हैक हुआ", सितंबर 2024।

मुख्य शब्द और परिभाषाएं

WAN Aggregation

The process of combining multiple Wide Area Network connections (e.g., two 5G connections and a satellite link) into a single logical connection to increase throughput and resilience.

Critical for trains moving through varying cellular coverage areas to prevent dropped connections.

Network Segmentation (VLAN)

Dividing a computer network into smaller, isolated sub-networks. Virtual Local Area Networks (VLANs) keep traffic separated logically even if it shares the same physical switches.

Essential for preventing a compromised passenger device from accessing critical train control systems.

Captive Portal

A web page that a user of a public-access network is obliged to view and interact with before access is granted.

Used to enforce terms of service, collect user data, and secure GDPR consent.

RF Attenuation

The reduction in signal strength as radio waves pass through a medium.

Modern train windows with metallic thermal coatings cause massive RF attenuation, requiring roof-mounted antennas.

LEO Satellite

Low Earth Orbit satellites that operate much closer to Earth than traditional geostationary satellites, offering lower latency and higher bandwidth.

Increasingly used as a backhaul solution for trains in rural or cross-border areas.

IEEE 802.1X

An IEEE Standard for port-based Network Access Control (PNAC), providing an authentication mechanism to devices wishing to attach to a LAN or WLAN.

Used to secure the operational network interfaces on the train from unauthorized access.

Rail Server

A ruggedized onboard computer designed to host containerized applications locally on the train.

Used to host local entertainment, caching, and captive portal services to reduce reliance on the WAN link.

First-Party Data

Information a company collects directly from its customers and owns.

The primary commercial output of a properly configured Guest WiFi network.

केस स्टडीज

A regional rail operator running 4-carriage commuter trains through a mix of dense urban areas and deep rural valleys is experiencing severe passenger complaints regarding WiFi dropouts. Their current setup uses a single 4G LTE modem per train. How should they redesign their architecture?

  1. Upgrade the WAN Backhaul: Replace the single LTE modem with a WAN Gateway capable of uplink aggregation. Install dual-SIM routers using two different Mobile Network Operators (MNOs) to provide failover in urban areas.
  2. Address Rural Gaps: For the deep valleys where cellular coverage is non-existent, integrate a LEO satellite terminal (e.g., Starlink Mobility) into the WAN Gateway as a secondary aggregated link.
  3. Local Caching: Deploy an onboard rail server to cache the captive portal and key journey information locally, ensuring the passenger UI remains responsive even during brief total connection losses in tunnels.
कार्यान्वयन नोट्स: This approach correctly identifies backhaul as the primary bottleneck. By aggregating multiple terrestrial links and adding a satellite failover, the operator ensures session persistence. The addition of local caching demonstrates an understanding of the passenger experience during unavoidable micro-outages.

An intercity rail franchise is upgrading its fleet and wants to use the new onboard WiFi to gather passenger analytics for marketing, similar to how [Retail](/industries/retail) venues operate. What compliance and technical steps must they take?

  1. Captive Portal Deployment: Implement a robust captive portal that requires users to authenticate via email or social login before accessing the internet.
  2. GDPR Compliance: Ensure the portal explicitly asks for opt-in consent for marketing communications. Pre-ticked boxes must not be used. The system must log the timestamp and version of the privacy policy consented to.
  3. Analytics Integration: Route the authenticated session data into a centralized WiFi Analytics platform to track journey frequency, dwell time, and cross-reference with ticketing data where permissible.
कार्यान्वयन नोट्स: This solution addresses both the technical mechanism (captive portal) and the critical legal requirement (GDPR explicit consent). It successfully bridges the gap between providing a service and extracting commercial value safely.

परिदृश्य विश्लेषण

Q1. Your CTO wants to upgrade all carriage access points to WiFi 6 to solve passenger complaints about slow internet speeds. Your current backhaul is a single 4G connection. What is the correct architectural response?

💡 संकेत:Consider where the actual bottleneck in the data flow is occurring.

अनुशंसित दृष्टिकोण दिखाएं

Advise the CTO to halt the AP upgrade and invest the budget in a WAN Gateway capable of uplink aggregation. Upgrading to WiFi 6 will improve local device-to-AP speeds within the carriage, but the total throughput to the internet remains choked by the single 4G connection. Fix the backhaul bottleneck first.

Q2. During a network design review, an engineer suggests routing the train's CCTV data through the same router interfaces as the passenger WiFi to save on cabling costs. How do you respond?

💡 संकेत:Consider the security implications of mixing public and operational traffic.

अनुशंसित दृष्टिकोण दिखाएं

Reject the proposal immediately. Passenger WiFi and operational systems like CCTV must be strictly segmented into isolated VLANs with deny-all firewall rules between them. Mixing this traffic creates a critical security vulnerability, potentially allowing a malicious actor on the public WiFi to access or disrupt train operations.

Q3. The marketing team wants to automatically subscribe all passengers who use the free WiFi to a weekly newsletter to boost engagement. What must you configure on the captive portal to ensure this is legal?

💡 संकेत:Review the requirements for lawful data processing under GDPR.

अनुशंसित दृष्टिकोण दिखाएं

You must configure the captive portal to include an explicit, unticked opt-in checkbox for marketing communications. Automatic subscription or pre-ticked boxes violate GDPR requirements for freely given, unambiguous consent. The system must also log the timestamp of this consent for audit purposes.