Autoriser le portail (walled garden)
Sans ces règles, le téléphone sur le hotspot ne peut pas ouvrir le portail
https://wifi.eretupay.com avant de s’authentifier.
HTTPS — hostname + IP
En production HTTPS, il faut les deux : le nom de domaine et l’IP publique du serveur.
1. Hostname (onglet Walled Garden)
- IP → Hotspot → Walled Garden.
- Onglet Walled Garden → bouton +.
-
Dst. Host :
wifi.eretupay.com· Action :allow. - Optionnel : ajoutez aussi
*.eretupay.com.
2. IP publique (onglet IP)
- Même fenêtre → onglet IP → bouton +.
-
Dst. Address :
x.x.x.x/32(IP du serveur, avec/32) · Action :accept. -
Pour trouver l’IP :
dig +short wifi.eretupay.com A
Si « Dst. Address » est impossible à saisir
Champ grisé, refus de la valeur, ou Winbox bloqué — utilisez le Terminal.
- Winbox → New Terminal.
- Collez (adaptez l’IP) :
/ip hotspot walled-garden add dst-host="wifi.eretupay.com" action=allow comment="eretupay-wifi"
/ip hotspot walled-garden ip add action=accept dst-address=VOTRE_IP_PUBLIQUE/32 comment="eretupay-wifi"
/ip hotspot walled-garden ip print
Format obligatoire pour l’IP :
x.x.x.x/32 — sans https://, sans espace.
Vérifier
Sur un téléphone connecté au hotspot, sans login MikroTik.
- Ouvrez
https://wifi.eretupay.com/p/{slug}. - La page du portail doit s’afficher. Sinon, revérifiez le walled garden et le routage vers le serveur.