Captive portal sign-in, from click-through and OTP to vouchers, plus xPSK, Passpoint and 802.1X with a range of EAP methods.
Our RADIUS servers run in the cloud or on your premises.
Authenticate users against the user databases you already have.

Use one method or combine several, depending on who's connecting and from which device.
A branded sign-in page for guests, with click-through, OTP, vouchers, payment and more.
Passwordless, automatic and secure connections through a profile installed on the device.
Individual credentials or certificates for every user, with the EAP method that fits your devices.
Guests accept your terms and get online with a single click.
Guests confirm their email address with a one-time code.
Guests confirm their phone number with a one-time code sent by SMS.
Hand out voucher codes that guests enter to get online.
Charge guests for Wi-Fi access before they connect.
Ask for the details you need, such as name, email or phone number, with a custom form.
Give all your guests one common Wi-Fi password.
Individual accounts for each user, such as members, staff or residents.
The most common EAP methods, and others when you need them. Choose what fits your users, devices and security requirements.
Certificate-based authentication on both the client and the server. The strongest option, with no passwords to steal.
Username and password sent inside an encrypted TLS tunnel. Widely supported and easy to roll out.
Username and password inside a TLS tunnel, with flexible inner authentication methods for different directories.
Need something else? We can work with other EAP methods your devices or network require.
Our RADIUS servers run in the cloud or on your premises, whichever suits your network.
Integrate with your existing user databases, such as SQL databases, Google Workspace, LDAP, Active Directory, Microsoft Entra ID and other identity providers.
Let users sign in to WPA-Enterprise Wi-Fi with their Google Workspace accounts. See how with FreeRADIUS and Secure LDAP
Add multi-factor authentication for stronger protection of network access. See our RADIUS/AAA services
Different people connect in different ways. We'll help you match each group with the method that fits.
A captive portal for quick, branded sign-in, or Passpoint for returning visitors and loyalty app users.
802.1X with individual credentials or certificates, or Passpoint profiles pushed through your MDM.
xPSK gives every resident, student or device its own password, including devices that don't support 802.1X.
Companies all over the world are using our products and services
Common questions about Wi-Fi user authentication.
Captive portal sign-in, xPSK, Passpoint (Hotspot 2.0) and 802.1X (WPA-Enterprise) with a range of EAP methods, all backed by our cloud or on-premises RADIUS servers.
Click-through, email and SMS verification with a one-time code (OTP), vouchers, payment, form submission, a shared password, and username and password.
It depends on who's connecting. A captive portal suits guests, Passpoint suits returning visitors and managed devices, xPSK suits residents and devices without 802.1X support, and 802.1X suits employees. We'll help you choose.
Yes. Many networks combine methods, for example a captive portal for guests, 802.1X for staff and xPSK for devices.
We support EAP-TLS for certificate-based authentication, plus PEAP and EAP-TTLS for username and password logins inside an encrypted tunnel. We can also work with other EAP methods your devices or network require.
Either. Cloud RADIUS suits networks spread across many locations, while on-premises RADIUS keeps authentication and user data inside your own network.
Yes. We integrate with SQL databases, Google Workspace, LDAP, Active Directory and Microsoft Entra ID, among others. If your directory isn't listed, get in touch.
Yes. You can require a second verification factor on top of the password for stronger protection of network access.