1065| External Services Interface AOS-W 6.5.3.x| User Guide
b. Health-Check Profile. Select the health-check ping from the drop-down list. This example uses
externalcp_ping.
3. Click Done when you are finished.
To apply the configuration (changes), you must click Apply in the External Services view on the WebUI. In this
example, you can wait until you finish configuring the servers and groups, or you can apply after each configuration
portion.
Configuring the ESI Servers
1. Click Add in the External Servers section.
2. Provide the following details:
a. Server Name.
b. Server Group. Use the drop-down list to assign this server to a group from the existing configured
groups.
c. Server Mode. Use the drop-down list to choose NAT mode.)
d. Trusted IP Address. For nat mode, enter the IP address of the trusted interface on the external captive
portal server.
e. NAT Destination Port. Enter the port number (to redirect a packet to a port other than the original
destination port in the packet).
3. Click Done when you are finished.
4. Repeat Step 1 through Step 3 for the remaining external captive portal servers.
5. Click Apply to apply the configuration changes.
Configuring the Redirection Filter
To redirect the required traffic to the server(s) using the WebUI, navigate to the Configuration > Access
Control > User Roles view on the WebUI (see 2).
1. Click the Policies tab.
2. Click Add in the Policies section of the Policies view on the WebUI.
3. Provide the following details:
a. Policy Name. (This example uses cp_redirect_acl.)
b. Policy Type. Select IPv4 Session from the drop-down list.
4. Click Add in the Rules section of the Policies view.
a. Source. Select user from the drop-down list.
b. Destination. Accept any.
c. Service. Select service from the drop-down list; select svc-http (tcp80) from the secondary drop-
down list.
d. Action. Select redirect to ESI group from the drop-down list; select external_cps from the secondary
drop-down list; click <-- to add that group.
e. Click Add.
5. Click Done when you are finished.
6. Click Apply to apply the configuration changes.
In the CLI
The CLI configuration process consists of these general tasks:
n Configuring captive portal (see Captive Portal Authentication on page 306).
n Configuring the health-check ping method.