Skip to content
Hardware

Access points that support an external captive portal

An external captive portal is the difference between a WiFi password and a guest list. It needs more from your network than a login page does: a controller that redirects guests to an outside address, and a way for that address to tell the controller to let them through.

Which access points support an external captive portal with VoqadoWiFi?
Two families: TP-Link Omada EAP access points managed by an OC200, OC300, Software or Cloud-Based Controller, and Ubiquiti UniFi access points managed by a UniFi OS console, a Cloud Key or a self hosted Network Server. The controller does the work, so the access point model matters far less than having one of these.

What an external captive portal actually is

Every guest WiFi login works the same way at the start. A phone joins an open network and quietly checks whether it has internet. The network intercepts that check and sends the phone to a login page instead. The phone opens its small login window and shows it.

With a built in portal, that login page lives on the controller. It can show terms, take a password or a voucher, and let the device through. What it cannot do is keep a guest record you can use, because the controller is network equipment, not a guest database.

With an external portal, the controller redirects the phone to an address you choose and attaches details about the device: its MAC address, the access point it is on, the SSID. The guest signs in there. Then the portal service tells the controller to authorize that device. The page design, the consent record, the email address and everything after the visit live with the portal service.

What the hardware has to support

  • A redirect to an outside address, with the device and access point identifiers attached, not just a local splash page.
  • A pre-authentication allow list, so an unauthorized phone can load the portal and nothing else. See the walled garden list.
  • An authorization interface the portal service can call once the guest has signed in. This is the part most consumer equipment lacks entirely.
  • A controller that answers that call, which means it is reachable from wherever the portal service runs.

How Omada and UniFi do the hand off

The two supported vendors, side by side
TP-Link OmadaUbiquiti UniFi
Where guests are sentThe portal URL you paste, e.g. /portal/your-venue-slugThe host you enter; UniFi adds /guest/s/<site>/ itself
What identifies the deviceclientMac, apMac, ssidName, radioIdid (device MAC), ap, ssid
How authorization is provenA one time token from the redirect is handed backA stored local admin login on the controller
Where the authorization goesThe controller, or TP-Link’s cloud API for the cloud controllerThe Network application on your console or server
Needs an inbound pathOnly for OC200, OC300 and software controllersYes, unless the controller is on a VPS already
Setup guideOmada setupUniFi setup

Supported controllers

TP-Link Omada

Ubiquiti UniFi

If your access points are managed by one of these, you already own everything the hardware side needs. No extra license and no extra box.

If your hardware is something else

Plenty of other network equipment offers some form of external portal, and many dedicated portal services support a much longer hardware list than VoqadoWiFi does. That is a real limitation, not a roadmap item. VoqadoWiFi works with exactly two vendors, and says so before you hand over an email address.

Your realistic options are to replace the access points at the venue with Omada or UniFi equipment, or to choose a portal service that supports what you have. The hardware compatibility checker tells you which side of that line you are on.

Choosing between the two

For a single venue starting from nothing, the deciding questions are practical: who will manage the network, whether you want a controller box on site or a hosted one, and whether more venues are coming. The portal works the same on both. The Omada vs UniFi comparison goes through it.

Questions

What is an external captive portal?
A login page hosted outside your network equipment. The controller redirects unauthenticated guests to it, the guest signs in there, and the portal tells the controller to let that device online. The page, the data and the follow up live with the portal service, not in the access point.
Which access points work with VoqadoWiFi?
TP-Link Omada EAP access points managed by an Omada controller, and Ubiquiti UniFi access points managed by a UniFi controller. No other hardware is supported.
Can I use an access point without a controller?
Not with VoqadoWiFi. The authorization call goes to the controller in every case, so a standalone access point with no controller has nothing to receive it.
Will the router my internet provider gave me work?
No. Provider routers do not offer an external portal hand off to an outside service. You would need Omada or UniFi access points behind it.
Does the access point model matter?
Much less than the controller. The portal setting, the address the authorization goes to and the failure modes all live at the controller, which is why the setup guides on this site are per controller rather than per model.

Keep reading

Hardware compatibility checkerOmada setup hubUniFi setup hubExternal captive portal, definedCaptive portal troubleshooting

Checked against the integration code on 7 October 2026. TP-Link and Omada are trademarks of TP-Link Technologies; Ubiquiti and UniFi are trademarks of Ubiquiti Inc. VoqadoWiFi is not affiliated with either.

Running Omada or UniFi? Start free

Point your controller at a branded portal that keeps the guest email. One location and 25 guest logins a month, no card.

Free forever plan. No credit card and no sales call.