- Purple
- Captive portals: a complete guide
- Grandstream GWN 与 访客 WiFi:配合 Purple 设置 Captive Portal
Grandstream GWN 与 访客 WiFi:配合 Purple 设置 Captive Portal
了解 Grandstream GWN 接入点如何与 Purple 访客 WiFi 协同工作:通过外部展示页面、RADIUS 和围墙花园,并附有指向 Purple 逐步设置指南的链接以进行精确配置。
Video overview
收听本指南
查看播客转录
核心系列的一部分:Captive Portal 指南 →
Grandstream GWN and Purple WiFi configuration generator
Generate exact external captive portal parameters, RADIUS authentication endpoints, and walled garden allowlists for Grandstream GWN access points integrated with Purple guest WiFi.
=== GRANDSTREAM GWN + PURPLE GUEST WIFI SPECIFICATION ===
Controller Architecture: GWN Cloud (Hosted)
Target Access Point Series: Grandstream GWN7664 (Wi-Fi 6 (802.11ax) 4x4:4 MU-MIMO)
Firmware Baseline: v1.0.21.15 or newer
Guest SSID VLAN: 50
Client Bandwidth Rate Limit: 15 Mbps Downstream
Session Re-Authentication Timeout: 4 Hours (240 Minutes)
--- 1. PORTAL & REDIRECTION CONFIGURATION ---
Portal Type: External Splash Page
Splash Page URL: https://login.purplewifi.net/
Redirect Method: HTTP/HTTPS GET 302 Redirection
Apple Captive Network Assistant (CNA) auto-pop: Expected (OS probe hosts kept out of the walled garden)
--- 2. RADIUS SERVER SETTINGS ---
Primary RADIUS Authentication Server:
Host / IP: radius.purplewifi.net
Port: 1812 (UDP)
Shared Secret: YourPurpleRadiusSecretKey
Secondary RADIUS Authentication Server:
Host / IP: radius-backup.purplewifi.net
Port: 1812 (UDP)
Shared Secret: YourPurpleRadiusSecretKey
Primary RADIUS Accounting Server:
Host / IP: radius.purplewifi.net
Port: 1813 (UDP)
Shared Secret: YourPurpleRadiusSecretKey
Interim Accounting Interval: 300 seconds
Secondary RADIUS Accounting Server:
Host / IP: radius-backup.purplewifi.net
Port: 1813 (UDP)
Shared Secret: YourPurpleRadiusSecretKey
--- 3. WALLED GARDEN DOMAINS (13 rules) ---
- *.purplewifi.net
- login.purplewifi.net
- *.purple.ai
- *.facebook.com
- *.fbcdn.net
- *.google.com
- accounts.google.com
- *.twitter.com
- *.x.com
- *.twimg.com
- *.linkedin.com
- *.licdn.com
- appleid.apple.com
Deploy Purple guest WiFi across Grandstream GWN in minutes
Whether you are managing a 5-AP hospitality venue or a 500-AP campus on GWN Cloud, Purple turns guest connectivity into first-party marketing data, automated compliance, and footfall intelligence.
Grandstream GWN 接入点通过 GWN Cloud 进行云端管理。Purple 在其上添加了访客层:包括访客看到的 Captive Portal、登录流程以及您收集的第一方数据。它不会替代您的任何 Grandstream 设备。
Grandstream GWN 如何与 Purple 访客 WiFi 协同工作
Purple 是一个云端覆盖网络。您的 GWN 接入点继续运行 WiFi;Purple 则通过 GWN Cloud 已经支持的功能来运行访客体验。
- 外部展示页面。 在 GWN Cloud 的 Captive Portal 策略中,您将展示页面设置为外部,并选择 Purple 作为平台。新设备将被重定向到您的 Purple 展示页面,访客登录后,控制权返回给 GWN。
- RADIUS。 GWN 通过标准端口(1812 用于认证,1813 用于计费)向 Purple 的 RADIUS 服务验证每次登录。计费数据正是为您提供访客分析支持的核心。
围墙花园(Walled Garden,即设备在登录前可以访问的简短允许地址列表,设置为预认证规则)允许加载展示页面并完成任何支付或社交登录步骤。
这就是整个模式:GWN 传输数据包,Purple 拥有登录和数据。因为它是基于标准的外部 Web 认证和 RADIUS 运行,所以其在 Cisco Meraki、HPE Aruba、Ruckus、Juniper Mist、Ubiquiti UniFi、Cambium、Extreme 和 Fortinet 上的工作方式完全相同。Purple 在设计上与硬件无关。
您需要准备什么
- 固件版本为 v1.0.7.12 或更高、通过 GWN Cloud 管理的 Grandstream GWN 接入点。
- 已设置好展示页面和登录流程的 Purple 场所。
- 来自您 Purple 控制面板的 Purple 展示服务器、RADIUS 详细信息和预认证域名。
配合 Purple 进行设置
具体的设置、Captive Portal 策略、外部展示服务器、RADIUS 认证和计费服务器以及预认证规则,均在 Purple 的支持指南中逐步提供,并附有要输入的精确数值。
请按照该指南进行配置。本页面旨在解释各部分如何协同工作,以便您了解每个步骤的作用。
您将获得什么
一旦访客通过 Purple 登录,每次访问都将变成经过验证、自觉选择同意的第一方数据:谁访问了、访问频率如何,以及如何在获得许可的情况下联系他们。这就是仅仅连接用户的 WiFi 与构建您拥有的营销受众群体的 WiFi 之间的区别。Purple 符合 GDPR 并通过了 ISO 27001 认证,在超过 80,000 个活跃场所中实现了 99.999% 的正常运行时间。
关键定义
Captive portal
访客在上网前看到的登录页面。Purple 托管并运行它;GWN 将设备重定向到该页面。
Purple 在您的 GWN WiFi 之上添加的访客体验层。
外部展示页面
一个 GWN Captive Portal 设置,可将未认证的设备发送到 Purple 外部托管的登录页面。
GWN Cloud 如何将访客引导至 Purple。
RADIUS
用于在端口 1812(认证)和 1813(计费)上检查登录并记录会话数据的标准协议。
GWN 如何针对 Purple 验证每个访客并提供分析数据。
围墙花园
一个简短的允许地址列表,设置为预认证规则,设备在登录前可以访问这些地址。
允许在预认证阶段加载展示页面、支付和社交登录。
GWN Cloud
Grandstream 的云端控制面板,用于管理 GWN 接入点,包括 Captive Portal 策略和 RADIUS 设置。
配置 Grandstream GWN 接入点的地方。
常见问题
How do Grandstream GWN access points integrate with Purple guest WiFi?
Grandstream GWN access points integrate with Purple as a cloud overlay using native GWN features. In GWN Cloud or GWN Manager, you configure an external captive portal policy pointing to Purple splash page URLs and authenticate connecting devices against Purple cloud RADIUS servers on UDP ports 1812 and 1813. The physical access points manage RF wireless connectivity, while Purple handles the guest onboarding experience, CRM consent capture, and footfall analytics without requiring local hardware changes.
What RADIUS configuration is required for Grandstream GWN and Purple?
Grandstream GWN requires a primary RADIUS authentication server at radius.purplewifi.net on port 1812 (UDP) and a primary RADIUS accounting server at radius.purplewifi.net on port 1813 (UDP), alongside a secondary backup server at radius-backup.purplewifi.net. You enter your unique shared secret provisioned in your Purple management portal and configure interim accounting updates (typically every 300 seconds) to ensure real-time visitor presence reporting.
Which domains must be added to the Grandstream GWN walled garden allowlist?
The Grandstream walled garden (pre-authentication allowlist) must include *.purplewifi.net, login.purplewifi.net, and *.purple.ai so guests can load the captive portal. If you enable social logins (Google, Facebook, LinkedIn, Apple ID) or paid tiers (Stripe, PayPal), their corresponding authentication API and CDN endpoints must also be allowed before authentication.
What firmware version is required on Grandstream GWN access points?
Grandstream GWN access points require firmware version 1.0.7.12 or above to support external splash page redirection and cloud RADIUS accounting. For current Wi-Fi 6 models such as the GWN7660, GWN7664, and GWN7664LR, firmware version 1.0.21.15 or newer is recommended for optimal captive network assistant (CNA) browser handling on modern iOS and Android devices.
Does Purple work with both GWN Cloud and on-premises GWN Manager?
Yes. Purple guest WiFi is fully compatible with GWN Cloud, GWN Manager (software controller running on Linux or VM), and embedded Master AP deployments. Because the captive portal policy and RADIUS settings use standard RFC-compliant network protocols, the configuration steps are identical across cloud-managed and locally-hosted Grandstream architectures.
继续阅读本系列
Allied Telesis TQ Series AP与访客WiFi:使用Purple进行Captive Portal设置
Allied Telesis TQ Series接入点如何与Purple访客WiFi协同工作:通过外部页面重定向、RADIUS和围墙花园(Walled Garden),并附有指向Purple分步设置指南的链接以获取具体配置。
DrayTek Vigor 与访客 WiFi:配合 Purple 设置 Captive Portal
DrayTek Vigor 路由器如何配合 Purple 访客 WiFi 工作:外部 captive portal、RADIUS 和 walled garden,并附带指向 Purple 逐步设置指南的链接以完成准确配置。
Juniper Mist 和访客 WiFi:使用 Purple 设置 Captive Portal
Juniper Mist 接入点如何通过外部门户和 Mist API secret 与 Purple 访客 WiFi 协同工作,包括由于 Mist 不使用 RADIUS 进行 Captive Portal 而导致的不同之处。
对您的具体配置有疑问吗?
我们的团队与 80,000 多个场所的运营方、IT 经理和网络工程师保持合作。预约 20 分钟的通话,我们将为您展示同行是如何解决类似问题的。