Products built on a RADIUS core
Beyond the guest WiFi portal: enterprise network access, multi-factor authentication, corporate identity and legal logging.
802.1X Enterprise Network Access
Port-based wired and wireless network access control with username/password. Group-based VLAN, MAC-Bypass, account lockout.
ExploreVPN & RADIUS MFA
Second factor with SMS OTP and TOTP for FortiGate SSL-VPN and RADIUS-speaking systems. Works with your own VPN.
ExploreDirectory (AD/LDAP) Login
Employees sign in to the portal and the 802.1X network with a corporate domain account. LDAPS + your own CA certificate.
Explore5651 Log Server
Firewall syslog collection, IP-to-guest correlation, daily Ed25519 signature, 2-year retention.
ExploreFrequently Asked Questions
Which products are cloud-based, and which are on-premise?
VPN & RADIUS MFA runs in the cloud (SaaS); 802.1X, Directory (AD/LDAP), and the 5651 Log Server are deployed on-premise. The guest WiFi portal is available in both models.
Do the products work together?
Yes, they're all modules of a single Captivo platform, managed from one panel. In an on-premise deployment, guest WiFi, 802.1X, Directory, and the Log Server can run together; in the cloud, guest WiFi and VPN MFA can be used together.
Do I need to replace my existing hardware?
In most scenarios, no. We work with firewalls and access points that support RADIUS (pfSense, OPNsense, MikroTik, FortiGate, Cisco Meraki, Ruijie); UniFi devices connect via the Captivo Connector.
How do I get started?
For cloud products, sign up for free on the registration page; for on-premise deployment, see the setup guide on the On-Premise page and the 15-day free trial.
Try the right product for you — free
Start in minutes with the cloud edition, or run it on your own infrastructure with an on-premise deployment.