The Next Generation Wireless Yuri Kolomiyets Network Services Information Systems and Technology.

Slides:



Advertisements
Similar presentations
Extended Service Set (ESS) Mesh Network Daniela Maniezzo.
Advertisements

Business Solutions Network Security Solutions Gateway Security
HetnetIP Ethernet BackHaul Configuration Automation Demo.
Agenda Product Overview Hardware Interfaces Software Features
1 © 2005 Cisco Systems, Inc. All rights reserved. CONFIDENTIAL AND PROPRIETARY INFORMATION Cisco Wireless Strategy Extending and Securing the Network Bill.
NextGen Wireless Steven Bourque (IST). Overview Introduction Current Wireless Issues Access Point (AP) Hardware Controller Hardware Campus Design Redundancy.
Is Your Network Ready for the iPad? George Bentinck MBCS MIET Sales Engineer, EMEA +44 (0) Twitter: meraki_se.
Wireless and Network Security Integration Defense by Hi-5 Marc Hogue Chris Jacobson Alexandra Korol Mark Ordonez Jinjia Xi.
Supporting A Laptop Environment Erick Engelke Faculty of Engineering University of Waterloo
Wireless and Switch Security NETS David Mitchell.
Wireless. Module Objectives By the end of this module participants will be able to: Explain the differences between thick and thin access points List.
Module 3 Windows Server 2008 Branch Office Scenario.
Highly Available Central Services An Intelligent Router Approach Thomas Finnern Thorsten Witt DESY/IT.
Northern Arizona University Wi-Fi 2005 Flagstaff Campus Wireless Plan 4/11/2005.
This work is supported by the National Science Foundation under Grant Number DUE Any opinions, findings and conclusions or recommendations expressed.
WIRELESS SECURITY DEFENSE T-BONE & TONIC: ALY BOGHANI JOAN OLIVER MIKE PATRICK AMOL POTDAR May 30, /30/2009.
Hands-On Microsoft Windows Server 2003 Networking Chapter 1 Windows Server 2003 Networking Overview.
Layer 2: Redundancy and High Availability Part 1: General Overview on Assignment 1.
Campus Networking Best Practices Session 2: Layer 3 Dale Smith University of Oregon & NSRC
Andrew Fuqua 3/4/2015 LTEC A network HUB is a device that is used to link multiple devices over a network. The HUB is not a great choice when shopping.
Microsoft Virtual Academy Module 4 Creating and Configuring Virtual Machine Networks.
PKI Network Authentication Dartmouth Applications Robert Brentrup Educause/Dartmouth PKI Summit July 27, 2005.
WLAN Architecture - Considerations Christoffer Jacobsson.
195Eg Ethernet Wired LAN 195Eg. Wireless Ethernet Setting IP Address Using Utility Programs Begin Programming Definition Selection Programming Modes of.
Basic Networking Components
Sepehr Firewalls Sepehr Sadra Tehran Co. Ltd. Ali Shayan December 2008.
VPN for Sales Nokia FireWall-1 Products Complete Integrated Solution including: –CheckPoint FireWall-1 enterprise security suite –Interfaces installed.
Internet Service Provisioning Phase - I August 29, 2003 TSPT Web:
Barracuda Load Balancer Server Availability and Scalability.
Configuring Routing and Remote Access(RRAS) and Wireless Networking
Dartmouth’s Wireless Network May 16, 2005 David W. Bourque.
1 October 20-24, 2014 Georgian Technical University PhD Zaza Tsiramua Head of computer network management center of GTU South-Caucasus Grid.
WiNG 5 Architecture Examples 2012 Michael Elin, CCIE#5360 MOTOROLA SOLUTIONS.
Altai Certification Training Backend Network Planning
Common Devices Used In Computer Networks
1 Chapter 12: VPN Connectivity in Remote Access Designs Designs That Include VPN Remote Access Essential VPN Remote Access Design Concepts Data Protection.
D-Link Business Wireless. Trends of Business Wireless solutions The market is looking for Cutting-edge Technology Unified Wired and Wireless Access System.
© 2006 Cisco Systems, Inc. All rights reserved. Optimizing Converged Cisco Networks (ONT) Module 6: Implement Wireless Scalability.
What’s New in Fireware v11.9.5
1 Second ATLAS-South Caucasus Software / Computing Workshop & Tutorial October 24, 2012 Georgian Technical University PhD Zaza Tsiramua Head of computer.
The University of Bolton School of Games Computing & Creative Technologies LCT2516 Network Architecture CCNA Exploration LAN Switching and Wireless Chapter.
Module 9: Designing Network Access Protection. Scenarios for Implementing NAP Verifying the health of: Roaming laptops Desktop computers Visiting laptops.
Module 11: Implementing ISA Server 2004 Enterprise Edition.
Update on Campus Networks December 2009 Bruce Campbell Director, Network Services Information Systems and Technology.
Bluesocket vWLAN Overview. Its ALL about n……
VolNet2 Bill White Network Services. September 20, 2004OIT Fall Staff Meeting Why Volnet2? Based on the Security Assessment findings Insecure protocols.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Introducing Network Design Concepts Designing and Supporting Computer Networks.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 1: Introduction to Scaling Networks Scaling Networks.
© 2008 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Chapter 1: Introduction to Scaling Networks Scaling Networks.
Resnet Enhancements and Directions Part 1, Bruce Campbell, Information Systems and Technology.
Net Optics Confidential and Proprietary 1 Bypass Switches Intelligent Access and Monitoring Architecture Solutions.
Supporting a Wireless Network By Gareth Ayres.
2.1 © 2004 Pearson Education, Inc. Exam Designing a Microsoft ® Windows ® Server 2003 Active Directory and Network Infrastructure Lesson 2: Examining.
A machine that acts as the central relay between computers on a network Low cost, low function machine usually operating at Layer 1 Ties together the.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 Introducing Network Design Concepts Designing and Supporting Computer Networks.
Network design Topic 2 Existing network infrastructure.
1 Chapter 8: DHCP in IP Configuration Designs Designs That Include DHCP Essential DHCP Design Concepts Configuration Protection in DHCP Designs DHCP Design.
Wireless Gateways for home and enterprise use Name: Amira Syahida binti Amir No matric: Class:3tsk2 Lecturer: Puan Siti hajar binti Zainal.
Managing Network Access Protection. Introduction to NAP Issues  Although corporate networks are highly secured, no control over the configuration of.
Model: DS-600 5x 10/100/1000Mbps Ethernet Port Centralized WLAN management and Access Point Discovery Manages up to 50 APs with access setting control.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 Creating the Network Design Designing and Supporting Computer Networks – Chapter.
Agenda Current Network Limitations New Network Requirements About Enterasys Security Branch Office Routers Overall Enterprise Requirements Proposed Solution.
Overlapping eduroam networks operated by different organizations
Barracuda Firewall The Next-Generation Firewall for Everyone
Wireless IP products: GWN series
Switch Setup Connectivity to Other locations Via MPLS/LL etc
Planning and Troubleshooting Routing and Switching
Take Advantage of the Perfect Storm
What’s New In WatchGuard Wi-Fi Cloud v8.6
Presentation transcript:

The Next Generation Wireless Yuri Kolomiyets Network Services Information Systems and Technology

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Current Wireless Network Complete indoor coverage of campus Hardware: Avaya Access Points (Fat) g everywhere with data rates up to 54Mbps Management: Airwave Management Platform Authentication: Network Authentication Appliance

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Access Point management Airwave Management Platform Allows to monitor, configure and manage access points Has rogue detection capabilities Collects statistics Supports multiple vendors/platforms

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Access Point management Problems with Airwave Not 100% support of all features Lots of false positives by Rogue Detection Poor distributed management capabilities

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Authentication Gateways Network Authentication Appliances (aka. NAAs) Developed by Bruce Campbell Gateways (routers) for wireless subnets 3 in IST, 1 in ARTS, 2 in ENG, 1 in ARC Run on FreeBSD Control authentication, security and traffic shaping Also used for wired access where required

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Authentication Gateways Custom functionality Captive portal authentication Client-only firewall rules TTTS (Toilet tank traffic shaping) MinUWet developed by Erick Engelke Windows XP SP2 only Failed health check results in access restrictions Printing capabilities (in ENG)

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Architecture Overview Core NAA Constituency switch/router Access points Clients AP management vlans Client vlans trunked to NAA Routed links Management Wireless

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Problems with physical infrastructure After initial survey no way to determine gaps in coverage No dynamic power/channel adjustment Poor load balancing No physical layer security (Open access)

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Problems with NAAs Need to be inline with client traffic  Currently can only be done with VLAN trunking  Very complicated (messy) design Not very scalable architecture No redundancy Inefficient use of IP address space No synchronization between NAAs No roaming Buggy

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Usage statistics

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Next generation RFP awarded to Aruba 3 rd generation Architecture (Thin APs + controller) Complete overall solution from a single vendor Except health check Built-in firewall Application aware Extensible

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless New Architecture Aruba Wireless Controller Aruba APs No need for trunking Wireless traffic tunnelled from AP to controller Wired traffic goes through tunneller (wired AP) NAA is replaced with Aruba

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Aruba is #UNO !!!1 More powerful access points Automatic channel/power adjustment Effective high density deployment Full roaming capabilities (L2 and L3) Rogue monitoring and mitigation Uniform use of IP space with Vlan Pooling NO BUGS !!!!

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Deployment Deployed 10 APs in MC 645 to go 3 controllers in N+1 redundant mode Authentication will be moved to Aruba Minimum change in appearance Routing will be moved to HP DHCP will move to NS1 and NS2 minUWet to be implemented by Erick TTTS to be implemented by Aruba or Erick

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Aruba Interface

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless Future Complete coverage in residences Wired control for ResNet moving to Aruba Outdoor coverage 802.1x authentication Guest provisioning Remote APs

WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless n Questions?? n Thank you.