Re: [Ubnt_users] Authentication for SMs

2016-08-04 Thread Nigel Newallo-Singh
Guys,

Anyone ever heard of Mangaquest or ever worked with them.
http://www.magnaquest.com/

Company is moving in the direction of using them as Billing/CRM, would
appreciate any feedback.

On Tue, Jul 19, 2016 at 9:34 AM, Joey Craig  wrote:

> We had a couple storms, put a delay on the process. But hopefully today we
> will be setting up our customers on the first tower site.
>
> On Mon, Jul 18, 2016 at 8:30 PM, Nigel Newallo-Singh  greendotgroup.co> wrote:
>
>> Hi Joey, How's VISP working for you so far wrt authentication for SMs. Do
>> they do radius?
>> On Jun 22, 2016 12:29 PM, "Joey Craig"  wrote:
>> >
>> > After much searching over the past to years, we decided to go with
>> VISP. We just finished the testing stage. Will start the network setup in
>> about 2 weeks.
>> >
>> > On Jun 22, 2016 11:26 AM, "Nigel Newallo-Singh" > greendotgroup.co> wrote:
>> >>
>> >> Hi All,
>> >>
>> >> I want to implement some form of authentication for my Customer SMs
>> (beside of course the wireless pre-shared key).
>> >>
>> >> Can anyone give some good advice on what works to do this (Radius,
>> etc).
>> >>
>> >> --
>> >> Warm Regards,
>> >> Nigel Newallo-Singh
>> >>
>> >> http://www.gd.tt/
>> >>
>> >> ___
>> >> Ubnt_users mailing list
>> >> Ubnt_users@wispa.org
>> >> http://lists.wispa.org/mailman/listinfo/ubnt_users
>> >>
>> >
>> > ___
>> > Ubnt_users mailing list
>> > Ubnt_users@wispa.org
>> > http://lists.wispa.org/mailman/listinfo/ubnt_users
>> >
>>
>> ___
>> Ubnt_users mailing list
>> Ubnt_users@wispa.org
>> http://lists.wispa.org/mailman/listinfo/ubnt_users
>>
>>
>
>
> --
> Joey Craig
> *Network/RF Engineer*
> *Firenet1.Com *
> *Phone:  (662) 510-0764*
> *Mobile: (662) 404-1118*
>
>
> ___
> Ubnt_users mailing list
> Ubnt_users@wispa.org
> http://lists.wispa.org/mailman/listinfo/ubnt_users
>
>


-- 
Warm Regards,
Nigel Newallo-Singh

http://www.gd.tt/
___
Ubnt_users mailing list
Ubnt_users@wispa.org
http://lists.wispa.org/mailman/listinfo/ubnt_users


Re: [Ubnt_users] Authentication for SMs

2016-07-19 Thread Joey Craig
We had a couple storms, put a delay on the process. But hopefully today we
will be setting up our customers on the first tower site.

On Mon, Jul 18, 2016 at 8:30 PM, Nigel Newallo-Singh <
nigel.newallosi...@greendotgroup.co> wrote:

> Hi Joey, How's VISP working for you so far wrt authentication for SMs. Do
> they do radius?
> On Jun 22, 2016 12:29 PM, "Joey Craig"  wrote:
> >
> > After much searching over the past to years, we decided to go with VISP.
> We just finished the testing stage. Will start the network setup in about 2
> weeks.
> >
> > On Jun 22, 2016 11:26 AM, "Nigel Newallo-Singh" <
> nigel.newallosi...@greendotgroup.co> wrote:
> >>
> >> Hi All,
> >>
> >> I want to implement some form of authentication for my Customer SMs
> (beside of course the wireless pre-shared key).
> >>
> >> Can anyone give some good advice on what works to do this (Radius,
> etc).
> >>
> >> --
> >> Warm Regards,
> >> Nigel Newallo-Singh
> >>
> >> http://www.gd.tt/
> >>
> >> ___
> >> Ubnt_users mailing list
> >> Ubnt_users@wispa.org
> >> http://lists.wispa.org/mailman/listinfo/ubnt_users
> >>
> >
> > ___
> > Ubnt_users mailing list
> > Ubnt_users@wispa.org
> > http://lists.wispa.org/mailman/listinfo/ubnt_users
> >
>
> ___
> Ubnt_users mailing list
> Ubnt_users@wispa.org
> http://lists.wispa.org/mailman/listinfo/ubnt_users
>
>


-- 
Joey Craig
*Network/RF Engineer*
*Firenet1.Com *
*Phone:  (662) 510-0764*
*Mobile: (662) 404-1118*
___
Ubnt_users mailing list
Ubnt_users@wispa.org
http://lists.wispa.org/mailman/listinfo/ubnt_users


Re: [Ubnt_users] Authentication for SMs

2016-07-18 Thread Nigel Newallo-Singh
Hi Joey, How's VISP working for you so far wrt authentication for SMs. Do
they do radius?
On Jun 22, 2016 12:29 PM, "Joey Craig"  wrote:
>
> After much searching over the past to years, we decided to go with VISP.
We just finished the testing stage. Will start the network setup in about 2
weeks.
>
> On Jun 22, 2016 11:26 AM, "Nigel Newallo-Singh" <
nigel.newallosi...@greendotgroup.co> wrote:
>>
>> Hi All,
>>
>> I want to implement some form of authentication for my Customer SMs
(beside of course the wireless pre-shared key).
>>
>> Can anyone give some good advice on what works to do this (Radius, etc).
>>
>> --
>> Warm Regards,
>> Nigel Newallo-Singh
>>
>> http://www.gd.tt/
>>
>> ___
>> Ubnt_users mailing list
>> Ubnt_users@wispa.org
>> http://lists.wispa.org/mailman/listinfo/ubnt_users
>>
>
> ___
> Ubnt_users mailing list
> Ubnt_users@wispa.org
> http://lists.wispa.org/mailman/listinfo/ubnt_users
>
___
Ubnt_users mailing list
Ubnt_users@wispa.org
http://lists.wispa.org/mailman/listinfo/ubnt_users


Re: [Ubnt_users] Authentication for SMs

2016-06-22 Thread Jesse DuPont

  
  
One of our companies uses VISP and VISP requires that you use their
RADIUS servers.
The other company has on-premise RADIUS, but no billing system
integration. We just manage it manually (using the daloRADIUS
interface).


  
  
  
  
  
  
  
  
  
  
  
  
  
Jesse DuPont

  Network
  Architect
  email: jesse.dup...@celeritycorp.net
  Celerity Networks LLC
  Celerity
  Broadband LLC
Like us! facebook.com/celeritynetworksllc
  Like us! facebook.com/celeritybroadband
  

  

On 6/22/16 11:48 AM, Nigel
  Newallo-Singh wrote:


  Thanks for the responses everyone. 


So I figured RADIUS was inevitable, and I have no issues
  with this as I have good linux guys on staff. 


Bear with me here. Did you have to develop your own
  middleware to query your billing system or use a billing
  system provider (VISP, etc) that will send info to your RADIUS
  server?


If so how has been the experience so far (ie. developing
  software inhouse or using an external billing provider).
  
  
On Wed, Jun 22, 2016 at 12:43 PM, Jesse
  DuPont 
  wrote:
  
 RADIUS. We're using
  RADIUS for SM auth on UBNT M5 gear (which is mac:mac sent
  as a RADIUS "User Password"); also works the same on
  MikroTik for MAC authentication. On UBNT 5AC gear, we use
  WPA2-AES w/EAP, which also uses RADIUS. WPA2-AES w/EAP is
  more complicated to setup for two reasons - 1)
  certificates need installed on the RADIUS server (can be
  self-signed); and 2) the SM needs a user/pass configured
  (it is the EAP supplicant). You could use the same
  user/pass in all SM's, but then you can't disallow a
  single SM from connecting to the AP. For this, we chose to
  use a unique user/pass for each customer. This same
  user/pass is also the customer's PPPoE user/pass.
  
  

  Jesse DuPont
  
Network Architect
email: jesse.dup...@celeritycorp.net
Celerity Networks LLC
Celerity Broadband LLC
  Like us! facebook.com/celeritynetworksllc
Like us! facebook.com/celeritybroadband

  

  
  

  On 6/22/16 10:26 AM, Josh Luthman wrote:
  
  
Radius is I think the only other way?

  

  


Josh Luthman
Office: 937-552-2340
Direct: 937-552-2343
1100 Wayne St
Suite 1337
Troy, OH 45373

  
  
  On Wed, Jun 22, 2016 at
12:25 PM, Nigel Newallo-Singh 
wrote:

  Hi All,


I want to implement some form of
  authentication for my Customer SMs (beside
  of course the wireless pre-shared key).


Can anyone give some good advice on
  what works to do this (Radius, etc). 
  
  
  -- 
  

  

  
Warm
Regards,
Nigel
Newallo-Singh
  

  http://www.gd.tt/

  

 

Re: [Ubnt_users] Authentication for SMs

2016-06-22 Thread Nigel Newallo-Singh
Thanks for the responses everyone.

So I figured RADIUS was inevitable, and I have no issues with this as I
have good linux guys on staff.

Bear with me here. Did you have to develop your own middleware to query
your billing system or use a billing system provider (VISP, etc) that will
send info to your RADIUS server?

If so how has been the experience so far (ie. developing software inhouse
or using an external billing provider).

On Wed, Jun 22, 2016 at 12:43 PM, Jesse DuPont <
jesse.dup...@celeritycorp.net> wrote:

> RADIUS. We're using RADIUS for SM auth on UBNT M5 gear (which is mac:mac
> sent as a RADIUS "User Password"); also works the same on MikroTik for MAC
> authentication. On UBNT 5AC gear, we use WPA2-AES w/EAP, which also uses
> RADIUS. WPA2-AES w/EAP is more complicated to setup for two reasons - 1)
> certificates need installed on the RADIUS server (can be self-signed); and
> 2) the SM needs a user/pass configured (it is the EAP supplicant). You
> could use the same user/pass in all SM's, but then you can't disallow a
> single SM from connecting to the AP. For this, we chose to use a unique
> user/pass for each customer. This same user/pass is also the customer's
> PPPoE user/pass.
>
> *Jesse DuPont*
>
> Network Architect
> email: jesse.dup...@celeritycorp.net
> Celerity Networks LLC
>
> Celerity Broadband LLC
> Like us! facebook.com/celeritynetworksllc
>
> Like us! facebook.com/celeritybroadband
> On 6/22/16 10:26 AM, Josh Luthman wrote:
>
> Radius is I think the only other way?
>
>
> Josh Luthman
> Office: 937-552-2340
> Direct: 937-552-2343
> 1100 Wayne St
> Suite 1337
> Troy, OH 45373
>
> On Wed, Jun 22, 2016 at 12:25 PM, Nigel Newallo-Singh <
> nigel.newallosi...@greendotgroup.co> wrote:
>
>> Hi All,
>>
>> I want to implement some form of authentication for my Customer SMs
>> (beside of course the wireless pre-shared key).
>>
>> Can anyone give some good advice on what works to do this (Radius, etc).
>>
>> --
>> Warm Regards,
>> Nigel Newallo-Singh
>>
>> http://www.gd.tt/
>>
>> ___
>> Ubnt_users mailing list
>> Ubnt_users@wispa.org
>> http://lists.wispa.org/mailman/listinfo/ubnt_users
>>
>>
>
>
> ___
> Ubnt_users mailing 
> listUbnt_users@wispa.orghttp://lists.wispa.org/mailman/listinfo/ubnt_users
>
>
>
> ___
> Ubnt_users mailing list
> Ubnt_users@wispa.org
> http://lists.wispa.org/mailman/listinfo/ubnt_users
>
>


-- 
Warm Regards,
Nigel Newallo-Singh

http://www.gd.tt/
___
Ubnt_users mailing list
Ubnt_users@wispa.org
http://lists.wispa.org/mailman/listinfo/ubnt_users


Re: [Ubnt_users] Authentication for SMs

2016-06-22 Thread Jesse DuPont

  
  
RADIUS. We're using RADIUS for SM auth on UBNT M5 gear (which is
mac:mac sent as a RADIUS "User Password"); also works the same on
MikroTik for MAC authentication. On UBNT 5AC gear, we use WPA2-AES
w/EAP, which also uses RADIUS. WPA2-AES w/EAP is more complicated to
setup for two reasons - 1) certificates need installed on the RADIUS
server (can be self-signed); and 2) the SM needs a user/pass
configured (it is the EAP supplicant). You could use the same
user/pass in all SM's, but then you can't disallow a single SM from
connecting to the AP. For this, we chose to use a unique user/pass
for each customer. This same user/pass is also the customer's PPPoE
user/pass.


  
  
  
  
  
  
  
  
  
  
  
  
  
Jesse DuPont

  Network
  Architect
  email: jesse.dup...@celeritycorp.net
  Celerity Networks LLC
  Celerity
  Broadband LLC
Like us! facebook.com/celeritynetworksllc
  Like us! facebook.com/celeritybroadband
  

  

On 6/22/16 10:26 AM, Josh Luthman
  wrote:


  Radius is I think the only other way?
  

  

  
  
  Josh Luthman
  Office: 937-552-2340
  Direct: 937-552-2343
  1100 Wayne St
  Suite 1337
  Troy, OH 45373
  


On Wed, Jun 22, 2016 at 12:25 PM, Nigel
  Newallo-Singh 
  wrote:
  
Hi All,
  
  
  I want to implement some form of authentication for
my Customer SMs (beside of course the wireless
pre-shared key).
  
  
  Can anyone give some good advice on what works to do
this (Radius, etc). 


-- 

  

  

  Warm Regards,
  Nigel
  Newallo-Singh

  
http://www.gd.tt/
  

  

  

  

  


___
Ubnt_users mailing list
Ubnt_users@wispa.org
http://lists.wispa.org/mailman/listinfo/ubnt_users

  


  
  
  
  
  ___
Ubnt_users mailing list
Ubnt_users@wispa.org
http://lists.wispa.org/mailman/listinfo/ubnt_users



  

___
Ubnt_users mailing list
Ubnt_users@wispa.org
http://lists.wispa.org/mailman/listinfo/ubnt_users


Re: [Ubnt_users] Authentication for SMs

2016-06-22 Thread Joey Craig
After much searching over the past to years, we decided to go with VISP. We
just finished the testing stage. Will start the network setup in about 2
weeks.
On Jun 22, 2016 11:26 AM, "Nigel Newallo-Singh" <
nigel.newallosi...@greendotgroup.co> wrote:

> Hi All,
>
> I want to implement some form of authentication for my Customer SMs
> (beside of course the wireless pre-shared key).
>
> Can anyone give some good advice on what works to do this (Radius, etc).
>
> --
> Warm Regards,
> Nigel Newallo-Singh
>
> http://www.gd.tt/
>
> ___
> Ubnt_users mailing list
> Ubnt_users@wispa.org
> http://lists.wispa.org/mailman/listinfo/ubnt_users
>
>
___
Ubnt_users mailing list
Ubnt_users@wispa.org
http://lists.wispa.org/mailman/listinfo/ubnt_users


Re: [Ubnt_users] Authentication for SMs

2016-06-22 Thread Josh Luthman
Radius is I think the only other way?


Josh Luthman
Office: 937-552-2340
Direct: 937-552-2343
1100 Wayne St
Suite 1337
Troy, OH 45373

On Wed, Jun 22, 2016 at 12:25 PM, Nigel Newallo-Singh <
nigel.newallosi...@greendotgroup.co> wrote:

> Hi All,
>
> I want to implement some form of authentication for my Customer SMs
> (beside of course the wireless pre-shared key).
>
> Can anyone give some good advice on what works to do this (Radius, etc).
>
> --
> Warm Regards,
> Nigel Newallo-Singh
>
> http://www.gd.tt/
>
> ___
> Ubnt_users mailing list
> Ubnt_users@wispa.org
> http://lists.wispa.org/mailman/listinfo/ubnt_users
>
>
___
Ubnt_users mailing list
Ubnt_users@wispa.org
http://lists.wispa.org/mailman/listinfo/ubnt_users


[Ubnt_users] Authentication for SMs

2016-06-22 Thread Nigel Newallo-Singh
Hi All,

I want to implement some form of authentication for my Customer SMs (beside
of course the wireless pre-shared key).

Can anyone give some good advice on what works to do this (Radius, etc).

-- 
Warm Regards,
Nigel Newallo-Singh

http://www.gd.tt/
___
Ubnt_users mailing list
Ubnt_users@wispa.org
http://lists.wispa.org/mailman/listinfo/ubnt_users