CTS Wireless Service Quarterly Customer Meeting April 23, 2015.

Slides:



Advertisements
Similar presentations
RiT PatchView Solution
Advertisements

CTS Wireless Pilot Status Quarterly Customer Meeting January 22, 2013.
Application Guide For Mesh AP – MAP-3120
1 © 2005 Cisco Systems, Inc. All rights reserved. CONFIDENTIAL AND PROPRIETARY INFORMATION Cisco Wireless Strategy Extending and Securing the Network Bill.
5.1 Overview of Network Access Protection What is Network Access Protection NAP Scenarios NAP Enforcement Methods NAP Platform Architecture NAP Architecture.
Standards Certification Education & Training Publishing Conferences & Exhibits Using Outbound IP Connections for Remote Access EXPO 2005 Chicago, IL.
Eduroam – Roam In a Day Louis Twomey, HEAnet Limited HEAnet Conference th November, 2006.
Secure Computing Network
Prepared: October, Ann Garrett, State Chief Information Security Officer Statewide Security Update October 25, 2005 Information Technology Advisory.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco ConfidentialPresentation_ID 1 Cisco NAC Guest Server Guest Access - Simplified Tim Wellborn SE Sangeeta.
Terri Lahey LCLS Facility Advisory Committee 20 April 2006 LCLS Network Security Terri Lahey.
By: Alena Newcomb.  What is a WI-FI hotspot?  Wireless Local Area Network location that provides broadband Internet access.  Use of laptops, PDA, or.
Wireless LANs A Case Study of Baylor University’s Wireless Network Copyright Bob Hartland 2002 This work is the intellectual property of the author. Permission.
Using RADIUS Within the Framework of the School Environment Charles Bolen Systems Engineer December 6, 2011.
1 © 2001, Cisco Systems, Inc. All rights reserved. Session Number Presentation_ID Cisco Easy VPN Solutions Applications and Implementation with Cisco IOS.
1 Managed Security. 2 Managed Security provides a comprehensive suite of security services to manage and protect your network assets –Managed Firewall.
High Performance, Easy to Deploy Wireless. Agenda Foundry Key Differentiators Business Value Product Overview Questions.
1 October 20-24, 2014 Georgian Technical University PhD Zaza Tsiramua Head of computer network management center of GTU South-Caucasus Grid.
1 Week #7 Network Access Protection Overview of Network Access Protection How NAP Works Configuring NAP Monitoring and Troubleshooting NAP.
IT Infrastructure Transformation – VPN Services 0 Enterprise VPN Don Kendrick, VITA Senior Manager, Security Operations August 25, 2009.
©Kwan Sai Kit, All Rights Reserved Windows Small Business Server 2003 Features.
Current Job Components Information Technology Department Network Systems Administration Telecommunications Database Design and Administration.
Altai Certification Training Backend Network Planning
Implementing Network Access Protection
Review of NWS IT Consolidation Efforts For HIC Meeting July 2006 Tom Schwein Team Leader of Desktop Management Tiger Team SOD CRH.
U.S. Department of Agriculture eGovernment Program August 14, 2003 eAuthentication Agency Application Pre-Design Meeting eGovernment Program.
A Practical Guide for Joining EduRoam EuroCAMP Torino A Practical Guide for Joining EduRoam 4 March 2005 Version 1.6.
© 2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Confidential. For Channel Partners only. Do not distribute. C
Module 8: Configuring Network Access Protection
© 2006 Cisco Systems, Inc. All rights reserved. Optimizing Converged Cisco Networks (ONT) Module 6: Implement Wireless Scalability.
1 Second ATLAS-South Caucasus Software / Computing Workshop & Tutorial October 24, 2012 Georgian Technical University PhD Zaza Tsiramua Head of computer.
U.S. Department of Agriculture eGovernment Program July 15, 2003 eAuthentication Initiative Pre-Implementation Status eGovernment Program.
IT Staff Survey Overview Over 1,300 responses were received. Staff across all faculties and support services were represented. 50 % of respondents.
U.S. Department of Agriculture eGovernment Program eGovernment Working Group Meeting February 11, 2004.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco Public 1 Version 4.0 Introducing Network Design Concepts Designing and Supporting Computer Networks.
Scott Butson District Technology Manager. Provide professional to all district staff Professional development has been provided on a regular basis to.
U.S. Department of Agriculture eGovernment Program July 9, 2003 eAuthentication Initiative Update for the eGovernment Working Group eGovernment Program.
Welcome Windows Server 2008 安全功能 -NAP. Network Access Protection in Windows Server 2008.
Configuring Network Access Protection
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 Introducing Network Design Concepts Designing and Supporting Computer Networks.
Campus Network upgrade and Wi-Fi Rollout REVIEW AND PHASE 3 PROJECT MANAGER TASKS.
Implementing Microsoft Exchange Online with Microsoft Office 365
7.4 Update - ISE Session.
RMM / MDM Cloud Partner Training Series September 2015.
MANAGED LAN SERVICES How will you benefit? Managed LAN service  Full LAN service (hardware, operation, other services)  Per-port pricing  International.
Simon Prasad. Introduction  Smartphone and other mobile devices have made it so easy to stay connected.  But this easy availability may lead to personal.
Planning for CCSAS: IT Infrastructure October 4, 2006.
ORNL Site Report ESCC July 15, 2013 Susan Hicks David Wantland.
Quarterly Customer Meeting Office 365 License Activation and Office 365 Cloud Services Assessment Status April 2014.
Secure Access and Mobility Jason Kunst, Technical Marketing Engineer March 2016 Location Based Services with Mobility Services Engine ISE Location Services.
© 2006 Cisco Systems, Inc. All rights reserved.Cisco PublicITE I Chapter 6 1 Creating the Network Design Designing and Supporting Computer Networks – Chapter.
City of Hyattsville City Council IT Briefing October 19, 2015 dataprise.com | #ITinRealLife.
CAMPUS LAN DESIGN GUIDE Design Considerations for the High-Performance Campus LAN.
© 2010 Cisco and/or its affiliates. All rights reserved.
WISECURE Exam CCNP Wireless WISECURE Exam
Phase 4: Manage Deployment
Don Kendrick, VITA Senior Manager, Security Operations
Wireless IP products: GWN series
Implementing Network Access Protection
Securing the Network Perimeter with ISA 2004
CenturyLink® Business Wi-Fi
Enterprise Launch Cloud Networking Connected Experience
Your Business Opportunity
CUNY City College Kickoff Meeting November 2nd, 2017
Tailor slide to customer industry/pain points
Cloud Security for Endpoints
1 Stadium Company Network. The Stadium Company Project Is a sports facility management company that manages a stadium. Stadium Company needs to upgrade.
Latest Practice Test Dumps
Project Certification Planning Phase August 27, 2014
Presentation transcript:

CTS Wireless Service Quarterly Customer Meeting April 23, 2015

Wireless Service Overview CTS Wireless is a statewide service which offers greater mobility and productivity via one secure, centrally-managed and supported common infrastructure by providing: – No up-front or recurring equipment costs – Easy-to-acquire subscription pricing – Full integration to state government networks – Full compliance with state security standards and policies – Easy, secure roaming to your agency’s network resources – Professional network design – Highly reliable state-of-the-art equipment – Local agency control and administration – A consistent mobile experience – Expert-level centralized support

Current Service Footprint The new CTS Wireless Service already has access points in locations across the state and is growing. Current customers = 8 Current sites = 26 Sites underway = 17+

CTS Wireless Networks Wireless NetworksUsersAccess toAuthentication EmployeesAgency resources Joined to Active Directory & User Certificate RoamingEmployees Your Agency resources while visiting another agency Joined to Active Directory & User Certificate Sponsored GuestGuestsInternetAssigned Username & Password GuestGuestsInternetPre-Shared Key Laptops Mobile Devices

Access CTS DatacenterAgency Internet DOR VRF DOR Employee ISE CTS WLC AP CAPWAP Tunnels 802.1x Authentication via ISE Connects to “DOR” SSID Placed on Agency VLAN Query AD: User Belongs to Agency Group Other Agency VRFs

Roaming Access CTS DatacenterAgency A DSHS VRF Internet DOR VRF Roaming DSHS Employee ISE CTS WLC AP CAPWAP Tunnels (from other agencies) 802.1x Authentication via ISE Placed on Agency B VLAN Query AD: User Belongs to Roaming Agency B Group Connects to “Roaming” SSID

Guest Access ( Guest and/or Sponsored Guest) Internet CTS DatacenterAgency Other Agency VRF Agency VRF ISE CTS WLC AP CAPWAP Tunnels Guest Connects to “Guest” or “Sponsored Guest” SSID Sponsored Guest SSID: 802.1X Authentication using ISE guest account Guest Users placed on Internet VLAN Guest SSID: Pre-shared key

High Level Architecture Not for Distribution. Internal Use Only. The CTS Wireless Service removes the worry for agencies considering wireless solutions. The CTS Wireless Service complies with OCIO Security Standards.

Phase 1 – Customer Interest & Kick-Off Customer expresses interest in CTS Wireless Service and completes the Interest Form. A kick-off meeting is held to provide details about the service and learn more about the Customer’s technical environment and wireless needs. Customer completes a Site Survey Questionnaire and provides a floor plan. Phase 2 – Site Design CTS conducts a predictive site survey, provides Customer with a budgetary estimate for Wireless Service and a quote for an on-site survey, depending on requirements. CTS conducts an on-site survey and provides Customer with a CTS Wireless Service quote. Phase 3 – Provisioning & Installation Customer acquires infrastructure, CTS orders and configures access points, training, provision activities are completed and Customer installs access points. Phase 4 – Service Turn-up Wireless service turn-up, testing, post-deployment verification survey, and acceptance. Then billing begins. Phased Approach

Readiness Checklist The Readiness Checklist tracks progress during implementation.

Wireless Service Responsibilities CTS Responsibilities: Provide wireless Access Points (AP). Provide wireless site surveys and design. Provide IP addressing for wireless APs and users. Manage the infrastructure components: Prime Infrastructure (PI), Identity Services Engine (ISE), Mobility Services Engine (MSE), wireless controllers, and APs. Manage web filtering, firewall, IPS/IDS, and DHCP services for Guest access. Monitor, troubleshoot, and provide second- tier support. Customer Responsibilities: Provide wiring and install Access Points (APs). Provide AP connectivity, switching, and routing (layer 1-3) services for APs. Update LAN and firewall configurations to enable wireless service in their environment. Manage and maintain AD groups, GPOs, and DHCP services for wireless access to Local Agency and Roaming networks. Perform user administration and troubleshoot using PI. Use the Sponsor Portal to set up Guest Access (optional). Ensure current maps are loaded into PI. Provide first-tier end user support.

Wireless Service Requirements Basic Requirements for the CTS Wireless Service Local Agency Access Roaming Access Guest Access Connectivity to the State Government Network (SGN)Required Member of the CTS Enterprise Active Directory Forest (EAD)Required - Connectivity to the CTS MPLS Wide Area Network (Agency VRF)Required - The first step to becoming a CTS Wireless Customer is to confirm that the basic requirements are met: These requirements do not need to be met for customers only needing Guest access.

Wireless Site Surveys are used in the wireless design and verification processes. There are three types of surveys performed: Predictive Survey – Performed off-site with a software program to model the environment to see the RF propagation. Used as the foundation of the wireless design. AP count for the Budgetary Estimate. Pre-deployment – Performed on-site prior to installation to validate the predictive design and identify sources of interference, congested airspace, or neighboring networks that can negatively affect your wireless network. Final AP count for the Quote. Post-deployment – Performed on-site after installation to validate that the wireless network meets all of the requirements identified. Wireless Site Surveys

Service Cost Model Recurring Costs Monthly rate: $35 per Access Point (AP) for all networks (SSIDs) CTS provides the APs, enterprise infrastructure, service and support. One-Time Costs (NRCs) Site Surveys (depending on quote) AP installations (including wiring and power) are customer responsibility Each access point requires connectivity to an Ethernet network and cabling needs to be routed to all access point locations. CTS does not offer cabling as a service. Customers often use their facilities staff to install cabling or have a cabling contractor. Other possible costs for unique/rare situations Custom brackets, AP security, PoE switch or power injectors, antennae

Service Cost Deployment Scenarios Use Case #1 Small agency office desires one access point in a conference room: $40 Setup Fee Purchase AP Security (nominal one-time cost) $35 per month/AP Use Case #2 Mid-Large agency office desires full coverage with no coverage gaps for staff walking across the building: Pre-Deployment Site Survey Fee (per quote) Wiring/cabling installation costs $35 per month/AP Post-Implementation Site Survey Fee (per quote) CTS Wireless eliminates most procurement and upfront costs for agencies.

Post Implementation

Guest Pre-Shared Key

Sponsored Guest Portal

Sponsored Guest Account Creation

Guest Network(s) Use Cases Pre-Shared Key Multiple guests use one key that has been shared with all Use Case #1 – Post pre-shared key on the conference room wall Use Case #2 – Share pre-shared key on intranet page Use Case #3 – Handout pre-shared key to a select few Sponsored Guest One guest is given a username and password that is active for a pre- selected amount of time. Use Case #1 – Front desk creates account upon guest arrival Use Case #2 – IT Staff creates account to prepare for partner arrival Use Case #3 – Kiosk in lobby has designated account Example: To provide guests with internet access, some agencies set up LAN connections, AD accounts, perform background checks, configure routing to partner agencies, etc. CTS Wireless removes these steps.

Delegated Administration Customized monitoring dashboards Rogue access point detection Source of interference identification Application visibility and control Device connectivity troubleshooting Detailed device information Reporting and analytics

Other Resources Wireless User Group CTS hosts a customer meeting every month to answer questions, encourage discussion, and information sharing. Next Meeting: May 7 th, 2015 Recurring Administrator Training CTS offers training every other month. Next Training: May 14 th, IPMA Forum May 19 th 2:45 – 3:45 Mobility Solutions and the CTS Wireless Offering – Cisco May 20 th 9:45 – noon Anytime, Anywhere, Any Device: Strategies and Tools to Enable a Mobile Workforce – CTS, AirWatch, VMware, DSB

What’s Next? If you would like more information about CTS Wireless, please open a CTS Service Desk ticket and we will contact you to schedule an orientation session.