Security and Rogue AP Detection


The university WLAN is secured through the use of a VPN overlay. This simple yet extremely secure solution provides robust 128-bit AES-based security and data integrity. Standardizing on two 3000 series Cisco VPN concentrators at different campus locations for redundancy, the WLAN requires users to install and use a repackaged Cisco VPN client, renamed "Vlink" by the university's IT departments.

Each university student and faculty member is automatically provided with network credentials as part of his normal day-to-day activity. These credentials are used extensively to authenticate the users for everything from basic network access on the wired LAN to Internet access for billing purposes. The WLAN leverages these preexisting credentials, and the VPN client and concentrators use them to validate user identity. By using the same credentials, ease of use is increased, and users are not expected to become familiar with a separate authentication framework.

Radio-based rogue AP detection is undertaken through the features of the Cisco WLSE. The WLSE provides the IT staff (and upcoming NOC) with visualization and alert-based notification of potential rogue APs.




The Business Case for Enterprise-Class Wireless Lans
The Business Case for Enterprise-Class Wireless LANs
ISBN: 1587201259
EAN: 2147483647
Year: 2004
Pages: 163

flylib.com © 2008-2017.
If you may any questions please contact us: flylib@qtcs.net