-
Posts
1,977 -
Joined
Reputation
2,553 ExcellentAbout FragglePete

Personal Information
-
Occupation
ICT Network Manager
-
Location
Wiltshire
-
Homepage
http://www.commonweal.co.uk
Employer (optional)
-
Company Represented
The Commonweal School
Recent Profile Visitors
The recent visitors block is disabled and is not being shown to other users.
-
That's something I'm trying to understand right now. The configuration obviously goes down from the controller to the APs themselves, so for PSK it'll work. I'm wondering what will happen in the case of WPA3 Radius? Is it the controller doing the authenticating with our on-side NPS Server or are the APs with the configuration doing to direct talking to the NPS server and authenticating users? So, if the controller does go pop over night, will RADIUS authentication still work? Pete
-
So, do we start panicking yet ? Downloading what I can, but the only thing I can export from cnMaestro is the Wi-Fi Profiles Config. Seems to be no way for an end user to 'backup' their cnMaestro Cloud set up. Pete
-
Interesting article, and it makes some good points on the Cambium Stuff. It's good hardware. It works, and it works really well. Since having it installed over three years ago, we have had zero problems with it. No issues. No one has complained about Wi-Fi performace or any dead spots around our site, the only issues we've had has been down to the NPS server onsite with RADIUS authentication after a dubious Windows Security Update. Upgrading the firmware on the APs has always worked with no fuss. Just updated all 94 APs we have to their latest firmware over night, and I've come in this morning with all APs up and running. Interestingly, I'm getting a new notice in cnMaestro about an update to 6.3.0 happening on Wednesday. Automated? Or is someone still plugging away at it. Hope it gets rescued in some form or other. Pete
-
Hmmmm..... Not happy. I've shouted about how great Cambium is/was for years - let's hope something gets sorted. From what I can gather, to convert from Cloud to On Prem, you need to get your database exported by Cambium Support to then import into your On Prem device. What are the chances of support actually still there at the moment? I'm still looking. Also, the download for OnPrem is for 6.0.0, whereas the cloud version is 6.2.0. Ours was installed during the Summer of 2023 - disappointing if we have to find something else - Governors are going to hate me. Pete
-
Guilty as charged! Fell off ladder cutting one rouge branch off a hedge at home - only a few rungs up. Snapped Achilles Tendon on landing resulting in operation to repair and twelve weeks on crutches..... then four years later an infection from the internal stiches results in what was described as 'limb reconstruction' by the plastic surgeon, 15 nights in hospital! Still plays up from time to time some tens years on. Get a tower; do it properly. Pete
-
Should be a alluminium tower and you'll also need to get your PASMA certification that certifies you to build and climb it. Without that, your breaking all sorts of Health & Safety Regulations. PASMA should only be day out in a classroom with the afternoon actually building the tower, most builders merchants run the courses and has be renewed every five years I believe. Pete
-
Raised a call, and 'Vizzy' told me it's being passed to a human - since then, I've heard nothing... zilch. Na-da. Very disappointing. Pete
-
Same here, just 802.1X authentication. The captive portal is in place for users accessing the Guest Wi-Fi and we generate printed tokens handed out to visitors primarily. Agreed that Chrome/Android devices are a pain to get enrolled on WPA3, so I give a rare hat tip to Apple for making their implementation really easy. Password lock outs can be problematic - we lock out accounts after 3 incorrect passwords and if users don't update the password on their device then their account is continously locked. We get a notification from our DCs when a lock out occurs so we can usually deal with it quickly if need be. Users are becoming more educated about it and we make a point of telling them when we do a password reset they need to update their mobile devices as well. We monitor usage on Cambium to see if we have multiple devices assigned to one particular user, and can tell if they have devices logged in at multiple places across the site which would indicate password sharing has occurred. We allow our Sixth Formers BYOD access and they have been known to share passwords to the lower school, who then shares it to their friends, etc, etc. In these cases, BYOD access is revoked permanently.... no excuses. Pete
-
Also RADIUS auth via NPS server (which requires a certificate to be installed). Only downside is the logs are not great unless you pay for the cnMaestro X license which also opens up better authentication methods I believe. You also need that for Azure SSO authentication. Ours was configured by Lee at Redway Networks. Pete
-
We have Cambium that was supplied and configured by Redway Networks a couple of years back. Superb kit for the price point, we've essentially had zero wi-fi issues since having it installed. I would like a bit more reporting and proper access to logs but this does involve buying the cnMaestro Pro licenses to get this (and more), but the free version works well enough for us. Pete
-
Net2ADSyncServer - Inventry to Paxton to AD to Papercut?
FragglePete replied to AlphamaleZed's topic in How do you do....it?
We've been using Net2ADSyncServer for several years now. Does the job for us quite nicely. The process for us is that a user (be it staff or student) is given their badge which they have to register on a MFD (running PaperCut) using the AD account. This creates the Card ID number in PaperCut. I have a script that runs automatically every 30 mins of so that dumps a userlist with their card ID number and this is copied into the Fax number of their AD account. The Net2ADSyncServer system then generates the necessary user account in Net2 based on their User Groupings in AD. However.... Net2ADSyncServer has recently been acquired by another company and are moving over to a subscription based version of the software to support the newer version of Net2 (2.7 I believe?) and claim their current version won't necessarily work on the newer Net2 installs. Before that it was just a perpertual license with free updates.... remember those days? I'm looking to rethink this now in the future, as we use Locker and I know we should be able to use this to create accounts in Net2 which will mean that we will have to manually register the cards against the user - just something I won't enjoy doing for the influx of Sixth Form students each year. Pete -
Which suppliers in the UK have these in at the moment? I usually use Broadband Buyer and/or 4Gon as we have accounts with them and the pricing has always been good with those guys, but they don't have them listed yet. I can buy them directly from the EU Store with Ubiquiti but that may prove difficult with a school credit card, etc. Pete
-
I'd be interested to see if someone testing these can try this for me: Spray some deoderant in the vacinity of these and does this cause an alarm? We tried a Vape Guardian sensor a while back and this could be triggered by an aerosol deoderant which caused all sorts of embarassement and hassle with a parent who we accused their daughter of vaping. SMT spray a deoderant near the sensor and that caused an alert - the system was pretty much deemed useless from that point forward. Vapeguardian claimed they could tweak the settings but by that point, the damage was done and no matter of tweaks made any difference. If this Unifi solution is as good as it claims, I can see the likes of Vapeguardian not existing for much longer. Pete
-
yep, thanks - that worked. Did see that elsewhere but it just seems a messy solution to muck about with registry tweaks with GPOs. Still, it's in and it works - thanks. Pete
