RE: [WIRELESS-LAN] eduroam question(s)

2012-11-13 Thread Lee H Badman
On the metrics, is there any way of showing how many of the Eduroam clients are bona ride visitors versus your own clients on the Eduroam SSID? That's the real delta I'm curious about in general- how many true visitors using it. Thanks, Lee Lee H. Badman Network Architect/Wireless TME ITS,

RE: [WIRELESS-LAN] eduroam question(s)

2012-11-13 Thread James JJ Hooper
-Original Message- From: The EDUCAUSE Wireless Issues Constituent Group Listserv [mailto:WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU] On Behalf Of Hanset, Philippe C Sent: 13 November 2012 00:35 To: WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU Subject: Re: [WIRELESS-LAN] eduroam question(s) ... We

Re: [WIRELESS-LAN] Eduroam technical questions

2012-11-13 Thread Hanset, Philippe C
Lee, eduroam is EAP agnostic. All that the roaming does is pass the initial SSL/TLS tunnel to the home institution. Then in the tunnel, exchanges occur between your device and your home institution So, as long as your institution does a tunneled EAP, your are done. The visited institution has

Re: [WIRELESS-LAN] eduroam question(s)

2012-11-13 Thread Hanset, Philippe C
For sanity, we will only pass to you *.northwestern.edu or other domains that you own and would like to be resolved e.g northwestern-1.edu On Nov 13, 2012, at 9:24 AM, Julian Y Koh kohs...@northwestern.edu wrote: On Nov 12, 2012, at 18:34 , Hanset, Philippe C phan...@utk.edu wrote: To

RE: [WIRELESS-LAN] Eduroam technical questions

2012-11-13 Thread Colantuoni, Robert
OK - one more question - We currently handling security reports regarding abuse on our wireless network by looking up the IP/User and then pushing the user account into a deact group and filtering for that on the radius server. This cuts off the users network access without affecting their

RE: [WIRELESS-LAN] Eduroam technical questions

2012-11-13 Thread Lee H Badman
Thanks, Phillipe- I'm talking more from supplicant config side. So we use Xpressconnect to configure our supplicants to only use MS-CHAPv2 /PEAP while disabling the other EAP types, and in RADIUS only have this single EAP type enabled. So if our Eduraom SSID required this EAP type, and

Re: [WIRELESS-LAN] Eduroam technical questions

2012-11-13 Thread Hanset, Philippe C
Lee, Your campus only terminates EAP sessions for YOUR users. For visitors, you take the initial TLS negotiation (with the outer tunnel identity e.g. lhbad...@syr.edumailto:lhbad...@syr.edu, or anonym...@syr.edumailto:anonym...@syr.edu, or @syr.eduhttp://syr.edu ) and you pass it to the top

Re: [WIRELESS-LAN] eduroam question(s)

2012-11-13 Thread Johnson, Neil M
James, That's a cool graph. What tool(s) did you use to create it? Thanks. -Neil -- Neil Johnson Network Engineer The University of Iowa Phone: 319 384-0938 Fax: 319 335-2951 Mobile: 319 540-2081 E-Mail: neil-john...@uiowa.edu On 11/13/12 5:26 AM, James JJ Hooper

Re: [WIRELESS-LAN] eduroam question(s)

2012-11-13 Thread Fligor, Debbie
On Nov 12, 2012, at 20:55, Jeff Kell jeff-k...@utc.edu wrote: On 11/12/2012 9:41 PM, Lee H Badman wrote: Also... Does anyone get a bit turned off about having yet another SSID in the air, or debranding your own in favor of pushing Eduroam as your SSID? Again, just wondering. Let's task

Re: [WIRELESS-LAN] Report from Educause (the session was not streamed)

2012-11-13 Thread Mike King
Ekahau has GPS assisted survey http://www.ekahau.com/products/ekahau-site-survey/overview.html I've used it to map our outdoor Wifi deployment. You need a GPS, and you need to be a bit careful on how you collect your results. Driving 30MPH inside a car did not necessarily equate to walking

Re: [WIRELESS-LAN] Report from Educause (the session was not streamed)

2012-11-13 Thread Mike King
Here's a screen shot from one I did previous to our outdoor deployment http://www.mpking.com/file/CampusSurvey.png (Only one I can find right now) On Tue, Nov 13, 2012 at 1:43 PM, Mike King m...@mpking.com wrote: Ekahau has GPS assisted survey

RE: [WIRELESS-LAN] Report from Educause (the session was not streamed)

2012-11-13 Thread Brandon Abell
This free Mac app works pretty well without GPS and may be worth a try. Maybe not as good as the GPS-assisted solutions, but has worked well for my personal use: http://www.netspotapp.com/ Basically you just import an image from a satellite map or a scale drawing and then click two points on

Re: [WIRELESS-LAN] Eduroam technical questions

2012-11-13 Thread Hanset, Philippe C
Robert, You are, of course, allowed to deactivate users that are reported for abuse. This is your institution's network! Philippe On Nov 13, 2012, at 10:12 AM, Colantuoni, Robert r...@buffalo.edumailto:r...@buffalo.edu wrote: OK – one more question – We currently handling security reports

RE: [WIRELESS-LAN] Eduroam technical questions

2012-11-13 Thread Lee H Badman
Ah. You clever fella. Thanks for turning on the light. Lee H. Badman Network Architect/Wireless TME ITS, Syracuse University 315.443.3003 From: The EDUCAUSE Wireless Issues Constituent Group Listserv [WIRELESS-LAN@LISTSERV.EDUCAUSE.EDU] on behalf of Hanset,