Hotels Cafés & bars How it works Features Guest CRM Integrations Pricing Guides Support
Support

The Wi-Fi you already have almost certainly works.

40 makes and models, from a £60 router in a café to a controller running a resort. No box to buy from us, no approved shopping list, no rip-and-replace. Find yours below and read exactly what it does before you commit to anything.

Why so much of it works

We use a feature your equipment already has

Holding a guest at a sign-in page, and asking somebody else whether to let them in, is something Wi-Fi equipment has been able to do for twenty years. Airports, airlines and hotel chains have all been using it that whole time. We are the "somebody else" — which is why this works on equipment that was fitted long before we existed.

1

Your equipment holds the guest at a page

A phone joining your Wi-Fi is kept in a waiting room until somebody says otherwise. Instead of showing a page of its own, your equipment is told to show ours — carrying your logo, your colours and your welcome message.

2

It asks us whether to let them in

The guest signs in, and your equipment checks the answer with us before letting anybody onto the internet. The reply carries their speed, their time limit and how many devices they may bring, so those are enforced by the equipment rather than promised on a page.

3

It takes them off when you say so

This is the one that separates the list below into two halves. Some equipment can be told to end a session already in progress — which is what makes a checkout at eleven actually mean something. Some cannot, and on those, access ends at the guest's time limit instead.

Every make in the list does the first two. Each page says plainly whether it does the third, because that is a decision worth making before you buy rather than discovering afterwards.

What "supported" means here

A page for your installer, written for your site

Supported does not mean somebody once got it working. It means there is a page for that make, and your console fills it in with your property's own details.

Your values, already filled in

When you add a router or controller in your console, it produces the instructions for that exact device — your sign-in page address, your credentials, your settings. Nobody copies a value out of a manual, and nobody types a password twice.

Written for the person at the equipment

Short, ordered, in the words that appear on that make's screens — and a troubleshooting table of what a symptom usually means, because captive portals mostly fail in ways that do not name their cause.

Honest about the limits

Where a make cannot do something, the page says so in the place your installer will look, rather than leaving your front desk to find out from a complaint.

Or we do it for you

Setting the equipment up is a service we offer, on any make in this list. For a site with nobody technical, that is usually the right answer.

Nothing to buy from us

We do not sell hardware and we take nothing from anybody who does. The advice you get on equipment is the advice we would give a friend.

Not on the list?

Almost all Wi-Fi equipment speaks the same sign-in pattern, so adding a make is usually straightforward rather than a rebuild. Tell us what you have.

The list

Find your equipment

Two groups, split by the one thing that actually differs: whether a checkout can take a guest offline immediately. Everything in both groups gets your branded sign-in page, every way in you have switched on, and speed, time and device limits that are enforced.

Everything, including checkout cut-off

23 makes. A departure at the front desk takes that guest offline there and then.

EquipmentHow it reaches usWorth knowing
Alcatel-Lucent OmniAccess StellarPrivate linkFull feature set over a private link. UPAM has to be pointed at us rather than at its own guest list.
Arista Cognitive WiFi (formerly Mojo)Private linkFull feature set over a private link, for both management generations — newer cloud-hosted sites may qualify for a more direct connection.
Aruba Central (AOS-10)Direct, encryptedFull feature set, configured entirely in Central — and the strongest checkout story on this list, with no private link needed.
Aruba controller (ArubaOS 8)Direct, encryptedFull feature set, over the controller's own encrypted connection, which is present across the whole 8.x line.
Aruba Instant (IAP)Direct, encryptedFull feature set. Configure the cluster, not an individual access point.
Cambium cnPilotPrivate linkFull feature set over a private link — for a property that already has this hardware; it is not current for a new purchase.
Cisco Catalyst 9800Private linkFull feature set. The checks travel through a private link rather than the controller's own encryption.
Cisco Meraki MR access pointsYour vendor's cloud reaches usSet up in the Meraki dashboard. Full feature set, including checkout cut-off — with no private link needed at all.
Cisco WLC (AireOS)Private linkFull feature set over a private link — but the software line is frozen, so treat this as what an existing site already has, not what to buy.
ExtremeCloud IQ ControllerDirect, encryptedFull feature set, for the on-premises controller line specifically — see the note below if the property's equipment is older Aerohive gear.
Fortinet FortiGateDirect, encryptedFull feature set. Needs FortiOS 7.4 for the secure direct connection.
Juniper MistWe authorise each guestFull feature set, configured entirely in the Mist cloud — with no private link needed, because the Mist cloud is always reachable.
MikroTik (RouterOS)Direct, encryptedEverything, on inexpensive hardware. The usual answer for a site being built from scratch.
MikroTik hAP or cAP — one box for a small siteDirect, encryptedOne box does the lot. The cheapest way to get every feature into a site with no equipment cupboard.
Netgear WAC (standalone)Private linkThe one standalone access point that keeps checkout cut-off. Needs firmware 9.9.5.1, and it is a discontinued line — see below.
Nomadix EG gatewayPrivate linkFull feature set over a private link, for the current EG line. The older AG series is discontinued — see below.
OpenWrt with CoovaChilliPrivate linkFull feature set over a private link. Use the maker's own page where there is one.
OpenWrt with openNDSThe router checks in with usFull feature set, and the lightest setup on this list: nothing has to reach the router for a guest to get online. Lighter usage records than CoovaChilli.
Peplink and PepwavePrivate linkFull feature set over a private link. Put the sign-in page on the Balance where there is one.
Ruckus SmartZoneDirect, encryptedFull feature set. Needs SmartZone 5.1.2 for the secure direct connection.
Ruckus Unleashed and ZoneDirectorPrivate linkFull feature set over a private link. A property on SmartZone should use that instead.
Teltonika RUT and RUTXPrivate linkFull feature set over a private link. Common on mobile connections and temporary networks.
Ubiquiti UniFiWe authorise each guestFull feature set. We let each guest on by speaking to your controller directly, so we have to be able to reach it.

Everything except checkout cut-off

17 makes. At checkout we stop the guest signing in again, and the session they already hold runs to its time limit. Set sessions in hours rather than days — on a café, a bar or a restaurant this rarely matters at all.

EquipmentHow it reaches usWorth knowing
ANTlabs IG (formerly InnGate)Private linkA hospitality appliance, usually already linked to the front desk. The vendor does not document checkout cut-off, so it is tested with a real phone during setup.
Aruba Instant OnPrivate linkBranded sign-in and enforced limits. Checkout does not cut a session short.
Cisco Business Wireless (CBW)Private linkBranded sign-in and enforced limits. Checkout does not cut a session short.
Cisco Meraki MXYour vendor's cloud reaches usGood answer for wired guest access, including hotel room sockets. Checkout does not cut a session short, and usage is not recorded either.
D-Link NucliasPrivate linkBranded sign-in and enforced limits. Sold heavily into small hotels on price.
DrayTek VigorPrivate linkA reasonable one-box answer for a small site. Checkout does not cut a session short.
EnGenius CloudPrivate linkBranded sign-in and enforced limits. Checkout does not cut a session short. Does not cover the older EWS/ezMaster platform — see below.
Grandstream GWNPrivate linkBranded sign-in and enforced limits. Checkout does not cut a session short.
LANCOM Public SpotPrivate linkBranded sign-in and enforced limits. The Public Spot option has to be licensed, and checkout cut-off is tested with a real phone during setup.
pfSense and OPNsensePrivate linkBranded sign-in and enforced limits. Checkout does not cut a session short on either.
Ruijie ReyeePrivate linkNeeds an EG gateway in the path — access points alone cannot do it. Checkout cut-off is tested with a real phone during setup.
Tanaza (TanazaOS)Private linkBrings a cupboard of mixed access points onto one platform. Checkout does not cut a session short.
TP-Link EAP (standalone)Private linkFine for one or two access points. Above that, fit an Omada controller instead.
TP-Link OmadaPrivate linkBranded sign-in and enforced limits, configured once on the controller. Checkout cut-off is new on current controllers, so it is tested with a real phone during setup.
WatchGuard Cloud access pointsPrivate linkBranded sign-in and enforced limits, on WatchGuard's current cloud-managed access points specifically. Checkout does not cut a session short.
Zyxel NebulaPrivate linkBranded sign-in and enforced limits, on the Professional Pack licence tier. Checkout does not cut a session short.
Zyxel without Nebula (USG FLEX)Private linkThe firewall runs the sign-in page, not the access points. Checkout does not cut a session short.
Being straight with you

What does not work

A short list, and worth reading before you assume. If your equipment is here, the honest answer is one small box in front of it rather than a setting we have not found yet.

A "guest network" on a home router. A separate Wi-Fi name with its own password is not a sign-in page. There is nothing to redirect and nothing to ask, so there is nothing to connect to.
Equipment whose sign-in page cannot leave the box. Some makes will only ever show a page they host themselves. If the form cannot be ours, none of the rest follows.
Huawei and H3C controllers. Their sign-in system is a private conversation between controller and portal rather than the ordinary redirect everything else uses. Connecting one is a project, not a setup.
Sophos Firewall. It does the sign-in page, and it checks guests against an outside service — but it will not do both at once with the list of addresses guests need before signing in. That combination is precisely what we are.
A sign-in page upstream of a router. Anything that puts a router between your guests and the equipment running the page. Every guest then arrives looking identical, so one sign-in lets the whole room on and nobody can be told apart. Why this happens, and what to fit instead →

Send us a photo of your Wi-Fi box

Genuinely — that is usually all it takes. We will tell you which page above is yours, what it will and will not do at your property, and whether anything needs changing before you commit to anything.