Campus Wireless Network kitenet Koji OKAMURA Research Institute for Information Technology, Kyushu University.

Slides:



Advertisements
Similar presentations
Designing for Pervasive Network Security. Designing for Security Our aim in this section will be to concentrate on how campus Networks can be designed.
Advertisements

Encrypting Wireless Data with VPN Techniques
Application Guide For Mesh AP – MAP-3120
5.1 Overview of Network Access Protection What is Network Access Protection NAP Scenarios NAP Enforcement Methods NAP Platform Architecture NAP Architecture.
Southampton Open Wireless Network The Topology Talk.
WAN Connectivity The VMO Wide Area Network will extend between all stores, offices, and Lyon, France We have designed a highly redundant network with.
70-293: MCSE Guide to Planning a Microsoft Windows Server 2003 Network, Enhanced Chapter 11: Planning Network Access.
Northern Arizona University Wi-Fi 2005 Flagstaff Campus Wireless Plan 4/11/2005.
1 Version 3.0 Module 8 Virtual LANs. 2 Version 3.0.
Group Presentation Design and Implementation of a company- wide networking & communication technologies strategy 9 th December 2003 Prepared By: …………
WIRELESS SECURITY DEFENSE T-BONE & TONIC: ALY BOGHANI JOAN OLIVER MIKE PATRICK AMOL POTDAR May 30, /30/2009.
Chapter 8: Configuring Network Connectivity. Installing Network Adapters Network adapter cards connect a computer to a network. Installation –Plug and.
Mesh Network Technical Guide for the Mesh AP Topic 2 Installation Knowledge / Network Design Copyright © PLANET Technology.
Networking Components
 All of you should be able to describe how a network works.  Most of you will be able to identify the main devices necessary for a network.  Some of.
WAN Technology Overview Lecture 3: Introduction to WAN.
ITGS Networks Based on the textbook “Information Technology in a Global Society for the IB Diploma” by Stuart Gray.
70-291: MCSE Guide to Managing a Microsoft Windows Server 2003 Network Chapter 10: Remote Access.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 9 Network Policy and Access Services in Windows Server 2008.
NETWORKING COMPONENTS Zach Avis. Hub A hub is a low cost way to connect two computers. A hub can also act as a repeater. When a signal comes from one.
Campus Firewalling Dearbhla O’Reilly Network Manager Dublin Institute of Technology.
Configuring Routing and Remote Access(RRAS) and Wireless Networking
The Operator Neutral Access At KistaIP. KistaIP ? Is a student dorm with 144 apartments.
LTEC 4560 Summer 2012 Justin Kappel Networking Components.
Sarkis Mkoyan *Yerevan Physics Institute. 2 Alikhanyan Brothers St., YerPhI Network Overview.
Dartmouth’s Wireless Network May 16, 2005 David W. Bourque.
1 October 20-24, 2014 Georgian Technical University PhD Zaza Tsiramua Head of computer network management center of GTU South-Caucasus Grid.
1 Week #7 Network Access Protection Overview of Network Access Protection How NAP Works Configuring NAP Monitoring and Troubleshooting NAP.
Module 9: Planning Network Access. Overview Introducing Network Access Selecting Network Access Connection Methods Selecting a Remote Access Policy Strategy.
Chapter Overview Network Communications.
CSD 2006 / TEAM 12 Final presentation 29 th May 2006.
1/28/2010 Network Plus Network Device Review. Physical Layer Devices Repeater –Repeats all signals or bits from one port to the other –Can be used extend.
Module 11: Remote Access Fundamentals
Module 8: Configuring Network Access Protection
NETWORKING COMPONENTS AN OVERVIEW OF COMMONLY USED HARDWARE Christopher Johnson LTEC 4550.
1 Second ATLAS-South Caucasus Software / Computing Workshop & Tutorial October 24, 2012 Georgian Technical University PhD Zaza Tsiramua Head of computer.
Module 9: Designing Network Access Protection. Scenarios for Implementing NAP Verifying the health of: Roaming laptops Desktop computers Visiting laptops.
NuolSec VIspace Vientiane, Laos.
Update on Campus Networks December 2009 Bruce Campbell Director, Network Services Information Systems and Technology.
SECURE WIRELESS NETWORK IN IŞIK UNIVERSITY ŞİLE CAMPUS.
Networking Components Michelle Vega Network System Administrations LTEC /026 Mr. West.
Intro to Switching Lecture # 3 Hassan Shuja 03/14/2006.
Network & Core System Configurations for APAN SG Medical Session Koji OKAMURA Kyushu University.
Configuring Network Access Protection
A machine that acts as the central relay between computers on a network Low cost, low function machine usually operating at Layer 1 Ties together the.
NETWORKING COMPONENTS BY: TRAVIS MARSHALL. HUBS A hub is a device within a network that has multiple Ethernet ports that devices can plug into. The hub.
Module 10: Providing Secure Access to Remote Offices.
1 Interview Questions - What is the difference between TCP and UDP? - What is Nagle's Algorithm? - Describe the TCP handshaking process. - What is Slow.
Networking Components Assignment 3 Corbin Watkins.
.  Hubs send data from one computer to all other computers on the network. They are low-cost and low-function and typically operate at Layer 1 of the.
CSC 116 Nov Administrative Required 2 nd exam will be next week on Wed  Nov 18th It will be short (10 questions) It will only cover chapters.
Assignment # 3 Networking Components By: Jeff Long.
1 Welcome to Designing a Microsoft Windows 2000 Network Infrastructure.
© ExplorNet’s Centers for Quality Teaching and Learning 1 Select appropriate hardware for building networks. Objective Course Weight 2%
A wireless gateway is a computer networking device that routes packets from a wireless LAN to another network, typically a wired WAN. It is a device that.
Windows Vista Configuration MCTS : Advanced Networking.
KAPLAN SCHOOL OF INFORMATION SYSTEMS AND TECHNOLOGY IT375 Window Enterprise Administration Course Name – IT Introduction to Network Security Instructor.
Network Overview. Protocol Protocol (network protocols) - a special set of rules that define communication between two or more devices on a network.
WHAT’S A WIRELESS AP? AND WHY DO I NEED ONE? Network Components & How They Work.
Configuring Network Devices
Chapter 1 Introduction to Networking
Implementing Network Access Protection
Wireless Modes.
Institution Affiliated
Virtual Local Area Network
Securing your Colleague Network Environment
PPPoE Internet Point to Point Protocol over Ethernet
Network Virtualization
Networking Essentials
Read this to find out how the internet works!
Presentation transcript:

Campus Wireless Network kitenet Koji OKAMURA Research Institute for Information Technology, Kyushu University

Overview of Kyushu Univ. is located in Fukuoka City of Fukuoka Prefecture. – Population of Fukuoka City is 1.3M. – Population of Fukuoka Pref. is 5.0M. has – 20,000 students and 10,000 staffs (faculties and etc.). – and two main big campus (hakozaki and ito) and several satellite campus (hospital, chikushi and oohashi ). – every campus are connected 10G. uses – AS2508 and one Class B address ( /16).

Campus of Kyushu Univ. New Main Main Hospital Art Material, Energy etc 15km

Why Campus Wireless Network is necessary ? Everyone of Kyushu Univ. want to use Internet when they come to University. Everyone had bought and set-upped their own Wireless AP. – Only owner can use his Wireless AP even there are so many Wireless APs in campus. – Policies for Member of Kyushu Univ. and guests should be different. Computer Center had decide to introduce Campus wide wireless network in 2006.

The 1 st Version (2003~2007) Mobile IP based. – Non Standard. 228APs Special Driver (Software) is necessary. The product becomes “Dis-Continue”. No Windows Vista support.

The 2 nd Version (2006~ 802.1x Base 591 APs APs are installed with core network when the new building is build.

Infrastructure Campus Network of Kyushu Univ. (KITE) Campus Network of Kyushu Univ. (KITE) Commercial Network Ether Switch Authentication Server

Authentication Campus Network of Kyushu Univ. (KITE) Campus Network of Kyushu Univ. (KITE) Commercial Network Ether Switch Authentication Server

Connecting Dynamic VLAN Campus Network of Kyushu Univ. (KITE) Campus Network of Kyushu Univ. (KITE) Commercial Network Ether Switch Authentication Server

Campus Network of Kyushu Univ. (KITE) Campus Network of Kyushu Univ. (KITE) Commercial Network Ether Switch Authentication Server Policy for each user can be supported. Commercial ISP Kyoto Univ. Tohoku Univ / / /24

System Design Functions – Authentication 802.1x → Mandatory Web → Option – Dynamic VLAN Wired – AX (MAC VLAN) X – SW or Wireless AP which can pass EAP packets can be cascaded. Web Wireless – Allied Tetesis (Tagged VLAN) 802.1X Web(not supported) AX Wireless AP by Allied Telesis SW or Wireless AP which can pass EAP packets Port which is set of Authentication Radius Server Core SW Center Network User Network SW which can not pass EAP packets AT-TQ2403 AX-630x

Dynamic VLAN Wireless AP Wired SW Wireless AP Wired SW Wireless AP VID=xxx VID=yyy VID=zzz Radius

kitenet (IPv4) Wireless AP Wired SW Wireless AP Wired SW Wireless AP VID=xxx VID=yyy NAT Internet Kyush u Univ. ISP / /16

kitenet (IPv6) Wireless AP Wired SW Wireless AP Wired SW Wireless AP VID=xxx VID=yyy NAT Internet Kyush u Univ. ISP / /16 QGPOP IPv6 QGPOP IPv6 2001:200:905:15f1::/ :200:905:15f2::/64

The current situation every one can use Internet using Windows, Mac, iPhone, Windows Mobile…. even guests can use Internet when they come to Kyushu Univ. based on security policy of Kyushu Univ. – Conference at Kyushu Univ.

Future Works Big segment across whole campus management/authentication Kyushu University Guest

Future Works They should be segmented. IPv4 is used for each segment. – Virtual Router will support the routing. Authentication Management Kyushu Univ. Guest

Thank you very much!