Guest WiFi vouchers, a captive portal that is yours instead of the vendor's, and Cisco Umbrella block pages that tell people something useful. Sold separately, run together, built for the MSP who has to support all of it.
Block pages ยท Cisco Umbrella
Umbrella's redirect hands a custom page nothing โ no domain, no category, no reason. So most branded block pages are a wall with a logo on it.
We use Umbrella's four redirect contexts to carry the reason in the URL itself. A gambling block and a malware block become genuinely different pages, because they are different pages.
This site isn't available on this network
It falls into a category your organization has chosen not to allow here.
Same page, four Umbrella contexts ยท /b/acme-hq/content
GuestPass ยท the staff door
The front desk creates access and hands it over. No controller login, no training, no one asking which of eleven UniFi screens makes a code.
An 80mm receipt, as the guest gets it
Simple Portals ยท the guest door
Replace the vendor splash page with one that carries the property's name, takes the payment, and works on the mini-browser a phone opens for a captive portal.
Colorado Landing
Welcome โ get online
Enter the code from your receipt.
What the guest sees on their phone
Small things, chosen because somebody was going to have to answer the phone otherwise.
"Stop taking the shared password on the 31st โ or sooner, once nobody has used it for a week." A date is a guess; a condition is a measurement.
A code can die on a real calendar date instead of when the guest first uses it, so the receipt can promise something true.
TVs and streaming boxes can never see a captive portal. Issue RADIUS credentials for them from the same screen.
PPSK: every guest gets their own passphrase on the same SSID, and it dies with their voucher.
Every customer is billed, branded and entitled separately. Sell one property Portal Pro and the next nothing at all.
Every write takes an idempotency key, so a till that times out mid-sale cannot issue two vouchers on one payment.
Because a campground that wants a portal does not want block pages, and an office that wants block pages has no guests. Per customer, per month.
Remote
$9/mo
Everything in Local, plus use it from anywhere. Adds RADIUS and client management.
StartProfessional
$59/mo
White-label it as your own, plus unlimited PPSK, multi-printer, data export and API access.
StartPortal
$19/mo
A real guest sign-in page instead of UniFi's. Voucher codes and free/accept-terms access, carrying GuestPass branding.
StartPortal Plus
$49/mo
Your branding, and guests pay for their own access. Scheduled packages and data capture.
StartCustom
Let's talk
Built around how your property actually works โ custom sign-in flows, integrations with the systems you already run, and a monthly price to match.
Book a demoBlock Pages
$15/mo
A real block page instead of Cisco's, on your own URL, with a support number and a reference code on every block.
StartBlock Pages Plus
$39/mo
Your logo, your colours, any of the six layouts, and a page per network or VLAN. Staff can request access to a blocked site from the page itself.
StartBlock Pages Pro
$79/mo
Everything, plus reporting: what is being blocked, on which network, from which devices โ matched back to Cisco's own records.
StartManaged service providers are priced separately โ wholesale rates across every customer you manage, with your own branding on the guest-facing screens. Book a demo.
A custom Umbrella block page arrives with no domain, no category and no user. Almost everyone accepts that. You do not have to.
2026-09-21Every guest network eventually outgrows the password on the whiteboard. The migration is the hard part, and a date on a calendar is the wrong tool.
2026-09-21A till times out mid-sale and the cashier presses the button again. What happens next is the whole integration.
No. Creating and printing vouchers works against your existing UniFi setup โ cloud or through a small local agent. The captive portal is the only piece that needs a controller setting changed, and that is one field.
Existing authorisations normally survive it, because they live in the controller's own guest table. We still tell you to prove it on one test device before doing it to a property โ and there is a runbook for the case where it does not.
The visitor sees a certificate warning first. That is true of every custom block page from every vendor, because you are redirecting a domain you do not own a certificate for. Managed endpoints carrying Umbrella's root CA are the way around it, and we would rather say so up front than let you find out on a Tuesday.
No. Every customer is a separate company with its own users, sites, branding, plan and entitlements, and the API keys an integration uses can be pinned to a single site.
The local bridge agent keeps talking to the controller on the LAN. Vouchers created while the link is down reconcile when it returns.
Products ยท Pricing ยท Blog ยท Sign in
Built by Simple Technologies ยท simple-technologies.com