Jump to content

Recommended Posts

Posted

Currently sorting out our Meru WLAN and just wondering how many SSID`s people have configured on their network?

Currently have -

1. Main SSID for domain joined laptops

2. Guest SSID using Smart Connect - for guest access

3. Admin SSID - for us techs

 

Its up in the air at the moment but seem to be getting it sorted slowly, just need to setup a VLAN now and direct WLAN traffic through that via a transparent proxy

 

Cheers

Posted

When working in a school with a 6th form...6

 

Students year 7-9 (limited access with networking)

Students year 10-11 (less restricted access with networking)

Students year 12-13 (only porn, gambling, gaming, and other such unnecessary sites unblocked, with networking)

Teaching staff (near unrestricted Internet with networking)

Technical staff (unrestricted access)

Guest (limited access)

Posted
When working in a school with a 6th form...6

 

Students year 7-9 (limited access with networking)

Students year 10-11 (less restricted access with networking)

Students year 12-13 (only porn, gambling, gaming, and other such unnecessary sites unblocked, with networking)

Teaching staff (near unrestricted Internet with networking)

Technical staff (unrestricted access)

Guest (limited access)

 

Serious need of some kind of AD integration! :)

Posted

4

Main SSID (RADIUS)

BYOD SSID (RADIUS)

Guest SSID (Aruba internal db)

Mobile SSID (PSK, for school owned ipads and learnpads....probably don't need this anymore but initially had problems connecting learnpads via radius)

Posted

802.1x for laptops

802.1x for iPads

Captive Portal for devices that don't support 802.1x

Guest (guest passes generated, with limited lifespans)

Infrastructure (eg. devices that don't have "end users" but use the network wirelessly, such as printers).

 

When I get a chance, I'll be looking at combining the first 2 - just didn't fancy fiddling with existing settings and potentially breaking the existing SSID.

Posted

We have:

- Staff (for all school owned staff devices alongside any domain connected devices)

Passphrase in place no wireless specific authentication

- Students (All student iPads in yr 7-11)

RAIUS authenticated with the Passphrase pushed out via MDM

- Sixth Form (BYOD for the VI form)

RADIUS authenticated and locked down to a limited user group. Each user can only connect one device at a time. No passphrase. And no WiFi to WiFi traffic.

- Guest (Including all staff personal devices etc...)

RADIUS authenticated and locked down to a limited user group.

Posted

Students (seperate vlan) - radius

Staff (normal vlan) - radius

Biology (for the surface rts and testing if radius is the problem) - psk

Guest

Posted

1) Guests

2) School owned equipment

3) yr7,8,9,10,11,23-24, staff

 

The 3rd one is on one SSID but subdivided into 5 different vlans depending upon group membership.

  • 2 months later...
Posted (edited)

1. eduroam

2. internal 802.1x SSID

3. unencrypted SSID plus access to our VPN servers, only

4. different non-campuswide/local SSID+PSK for OU1 for professorships

5. different non-campuswide/local SSID+PSK for OU2 for professorships

6. reserved SSID+PSK for conference

7. reserved SSID+PSK for conference

8. reserved SSID+PSK for conference

 

Well my next Wifi devices have to support more concurrent SSIDs. Performance losses are negligible.

Edited by snoerre

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...