Philippe Hanset ANYROAM LLC

Slides:



Advertisements
Similar presentations
Joining eduroam Wireless Roaming for Education and Research.
Advertisements

Licia Florio EUNIS05, Manchester 1 Eduroam EUNIS Conference, June Licia Florio.
TF Mobility Group 22nd September A comparison of each national solution was made against Del C – “requirements”, the following solutions were assessed.
Module 5: Configuring Access for Remote Clients and Networks.
Wireless Networking TGIF, April 18th, 2003 Alvin Chew Kent Reuber
Eduroam – Roam In a Day Louis Twomey, HEAnet Limited HEAnet Conference th November, 2006.
Connect communicate collaborate RADIUS and WLAN Infrastructure Monitoring Jovana Palibrk, AMRES NA3 T2, Sofia,
High-quality Internet for higher education and research Federated network access with Klaas Wierenga SURFnet Ljubljana, April.
Simple ways to secure Wireless Computers Jay Ferron, ADMT, CISM, CISSP, MCSE, MCSBA, MCT, NSA-IAM, TCI.
EduRoam: movilidad por Europa... y España Toledo, 29 de octubre de 2004
CN1260 Client Operating System Kemtis Kunanuraksapong MSIS with Distinction MCT, MCITP, MCTS, MCDST, MCP, A+
Wireless Security without a VPN! Stirling Goetz, Microsoft Consulting Services.
Swansea: When eduroam doesn't fit By Gareth Ayres Gregynog Colloquium Conf 2011.
11 WIRELESS SECURITY by Prof. Russell Jones. WIRELESS COMMUNICATION ISSUES  Wireless connections are becoming popular.  Network data is transmitted.
Top-Down Network Design Chapter Eight Developing Network Security Strategies Copyright 2010 Cisco Press & Priscilla Oppenheimer.
Wireless Security with 802.1X Copyright 2005 Michael Griego This work is the intellectual property of the author. Permission is granted for this material.
802.1X in Windows Tom Rixom Alfa & Ariss. Overview 802.1X/EAP 802.1X in Windows Tunneled Authentication Certificates in Windows WIFI Client in Windows.
Wireless Security and Accounting with 802.1X. Introduction Background Why 802.1X? What is 802.1X? Implementing 802.1X at UTD The future of 802.1X and.
Virtual Private Network (VPN) © N. Ganesan, Ph.D..
Cisco Confidential © 2010 Cisco and/or its affiliates. All rights reserved. 1 MSE MSAP Functional Specifications Presenter Name: Patrick Nicholson.
Using InCommon Client Certs for eduroam Jeff Hagley and Ryan Martin October 3 rd, 2011 Internet2 Fall Member Meeting.
PKI Network Authentication Dartmouth Applications Robert Brentrup Educause/Dartmouth PKI Summit July 27, 2005.
CSC – Tieteen tietotekniikan keskus Oy CSC – IT Center for Science Ltd. WLAN Infrastructure Monitoring and Supplicants Workshop on Wireless Belgrade -
Lecture 12: WLAN Roaming Communities EDUROAM TM. eduroam TM eduroam (education roaming) is the secure, world-wide roaming access service developed for.
What about 802.1X? An overview of possibilities for safe access to fixed and wireless networks Amsterdam, October Erik Dobbelsteijn.
Windows 2003 and 802.1x Secure Wireless Deployments.
MCTS Guide to Microsoft Windows Server 2008 Network Infrastructure Configuration Chapter 9 Network Policy and Access Services in Windows Server 2008.
Virtual Private Networks (Tunnels). When Are VPN Tunnels Used? VPN with PPTP tunnel Used if: All routers support VPN tunnels You are using MS-CHAP or.
Connecting To A Remote Computer Via ‘Remote Desktop Web Connection’ Compatible With ‘Most Any’ Computer.
SWITCHaai Team Federated Identity Management.
AARNet Copyright 2010 Network Operations The eduroam project group
Computer Networks.  The OSI model is a framework containing seven layers that defines the protocols and devices used at each stage of the process when.
Altai Certification Training Backend Network Planning
Eduroam Louis Twomey HEAnet Library Services Day 20 th November 2014.
Education roaming Secure Wireless Service for Research and Education.
Wireless Network Authentication Regnauld / Büttrich, Edit: Sept 2011 Wireless Network Authentication Regnauld / Büttrich, Edit: Sept 2011.
4N TELECOMMUNICATION. The solutions on offer are already being used by:  Vodafone New Zealand  Vodafone Portugal  Vodafone Spain  Telefónica and Orange.
High-quality Internet for higher education and research Paul Dekkers April 4th, Turkey.
Michal Procházka, Jan Oppolzer CESNET.
Module 9: Configuring IPsec. Module Overview Overview of IPsec Configuring Connection Security Rules Configuring IPsec NAP Enforcement.
A Practical Guide for Joining EduRoam EuroCAMP Torino A Practical Guide for Joining EduRoam 4 March 2005 Version 1.6.
Environment => Office, Campus, Home  Impact How, not Whether A Checklist for Wireless Access Points.
© Aastra – 2012 SIP-DECT 4.0 RFP 43 WLAN June 2012.
1 C-DAC/Kolkata C-DAC All Rights Reserved Computer Security.
Module 9: Designing Network Access Protection. Scenarios for Implementing NAP Verifying the health of: Roaming laptops Desktop computers Visiting laptops.
Wireless Authentication & 802.1X By Gareth Ayres.
WISER: Remote access to databases and datasets This session will help you to set up access to Oxford online resources from your home computer. The session.
Eduroam.us Operational Experiment Kevin Miller Duke University Andy Rosenzweig Merit Network ESCC/Internet2 Joint.
Workshop roaming services: eduroam / govroam
Connect. Communicate. Collaborate Deploying Authorization Mechanisms for Federated Services in the eduroam architecture (DAMe)* Antonio F. Gómez-Skarmeta.
Govroam Belnet – 19/11/2015 Els Lemmens, Belnet Federation Manager Nicolas Loriau, Belnet Technical Advisor.
Authentication has three means of authentication Verifies user has permission to access network 1.Open authentication : Each WLAN client can be.
Cisco Discovery Home and Small Business Networking Chapter 7 – Wireless Networking Jeopardy Review v1.1 Darren Shaver Kubasaki High School – Okinawa,
Panasonic UC Pro - UC Pro Web Service Basic setup -
Federated Wireless Network Authentication Kevin Miller Duke University Internet2 Joint Techs Salt Lake City February, 2005.
CSC 116 Nov Administrative Required 2 nd exam will be next week on Wed  Nov 18th It will be short (10 questions) It will only cover chapters.
Using InCommon Client Certs for eduroam Jeff Hagley and Ryan Martin October 3 rd, 2011 Internet2 Fall Member Meeting.
Simon Prasad. Introduction  Smartphone and other mobile devices have made it so easy to stay connected.  But this easy availability may lead to personal.
Windows 7 Manual for Wireless connectivity at Libraries Table of Contents Windows 7 Connectivity a) Installing the Secure W2 EAP Suite b) Selection.
Easy 802.1X Onboarding with EAPConfig files and Supplicant Configuration Automatic Discovery (SCAD) Gareth Ayres (Speaker) Stefan.
INTRODUCTION TO IDENTITY FEDERATIONS Heather Flanagan, NSRC.
Maryknoll Wireless Network Access Steps for Windows 7 As of Aug 20, 2012.
LINCWorks Mesh Networking User Guide. This user guide will give a brief overview of mesh networking followed by step by step instructions for configuring.
Networks and Security Great Demo
WPA Configuration Example WebUI
Network Access on Apple iOS
How to Set Up and Use Your Filimin Long Distance Touch Lamp
How To Set Up A Wireless Network
Security of a Local Area Network
Cloud Connect Seamlessly
Presentation transcript:

Philippe Hanset ANYROAM LLC phanset@anyroam.net 8/23/13 Great Plains Network

eduroam is a NET+ Service www.internet2.edu/netplus/eduroam/ www.eduroam.us This work has received support from 8/23/13 Great Plains Network

eduroam is provided by 8/23/13 Great Plains Network

eduroam is The ease of use of cellular for Wi-Fi (even internationally, users are not charged) A bungee cord for WPA-2 enterprise An automatic guest-access provisioning tool 8/23/13 Great Plains Network

eduroam is not A replacement for your existing guest access It is a complement to what you already have to make your infrastructure compatible with others Your users can join eduroam when traveling You can welcome eduroam users on your campus A VPN to your home institution 8/23/13 Great Plains Network

Technology Overview eduroam is EAP insensitive (but requires a tunneled EAP-method like PEAP or EAP-TTLS Encryption Initial authentication between device and home RADIUS traffic between device and WLAN Great service for Identity Based Networking Reminder: WPA-2 enterprise (AKA 802.1X) is a Layer 2 protocol 8/23/13 Great Plains Network

eduroam in the US 8/23/13 Great Plains Network

Let’s not forget 8/23/13 Great Plains Network

Growth in one year 8/23/13 Great Plains Network

eduroam Worldwide 8/23/13 Great Plains Network

Time consuming ? Connect your RADIUS to the eduroam federation Shared Secret and IP address exchange Create RADIUS rules Exchange test credentials Check Firewall(s) Create an SSID and assign a network (even your existing guest network) Inform your community about eduroam Very little load on Help Desk 8/23/13 Great Plains Network

How to join? www.eduroam.us, click on “Join eduroam-US” (left side bar) Welcome message a more formal NET+ agreement is in the works Peering Process (to VA and to KS) 8/23/13 Great Plains Network

Policies No Web portal between authentication and Internet Users always contact Home Helpdesk first 6 Months RADIUS logs retention Handling of abuse Block users (MAC, REALM, CUI) DMCA complaints 8/23/13 Great Plains Network

Business Model Included in Membership fee for Internet2 members $500 initial setup coming soon (when NSF funding dries out) Yearly fee for non-members ~10 cents per student per year Large entities (school systems) model being discussed 8/23/13 Great Plains Network

Free eduroam tools eduroam companion for iOS and Android eduroam CAT (802.1X installer) http://cat.eduroam.org Coming up: As part of InCommon Certificate Service: InCert (www.internet2.edu/incert) 8/23/13 Great Plains Network

eduroam Companion 8/23/13 Great Plains Network

eduroam Companion (cont.) 8/23/13 Great Plains Network

eduroam only (native) … Less Network Name (SSID) confusion VLAN assignment done based on REALM (e.g. @local.edu ≠ @remote.edu) CAT tool for all of campus Saves on Help Desk Saves on existing installer cost Branding ? 802.11u will make SSIDs irrelevant in a few years 8/23/13 Great Plains Network

Resources Administrator Guide at eduroam.us and also eduroam.org Internet2 discussion list for eduroam administrators: https://lists.internet2.edu/sympa/info/netplus-eduroam-admins TF-MNM (a TERENA resource) Our team will help you from A to Z 8/23/13 Great Plains Network

Contact us… support@anyroam.net 8/23/13 Great Plains Network