Re: [WIRELESS-LAN] My personal training recommendation for Devin Akin's wireless training classes

2019-10-28 Thread William Cummings
I second this as well. One of the best training sessions I have ever attended. On Fri, Oct 25, 2019 at 9:08 PM Stephen Belcher wrote: > Thanks Ryan. The suggestion is much appreciated! > > Sent from Nine > -- > *From:* "Turner, Ryan H" > *

RE: [WIRELESS-LAN] My personal training recommendation for Devin Akin's wireless training classes

2019-10-28 Thread Christopher Brizzell
How much does he charge per session? Thanks, Chris Brizzell Assistant Director of Network and Technical Services and Network Administrator Skidmore College cbriz...@skidmore.edu 518-580-5994 From: The EDUCAUSE Wireless Issues Community Group Listserv On Behalf

Aruba Wireless - IDS: Protect-SSID

2019-10-28 Thread Sidharth Nandury
All, We have been asked to look into rogue WAP detection and mitigation. We are an Aruba shop for wireless and are running v6.5.4.12. After doing some research and looking at Airheads posts, it lead to me a configuration called "Protect SSID" in the IDS profile. Though I have successfully tested t

RE: [WIRELESS-LAN] Aruba Wireless - IDS: Protect-SSID

2019-10-28 Thread Thomas Carter
The short answer is don’t do this. The longer answer is the FCC frowns on rogue mitigation: https://nakedsecurity.sophos.com/2015/08/19/fcc-fines-company-75-for-disabling-conference-hotspots/ Look at the notice from the FCC down about ½ the page. Thomas Carter Network & Operations Manager /

RE: [WIRELESS-LAN] Aruba Wireless - IDS: Protect-SSID

2019-10-28 Thread Enfield, Chuck
Most of the time if somebody is using one of your well-known SSID’s on campus it’s either out of ignorance or benign experimentation. Rouge mitigation of those devices is unlikely to attract the attention of the FCC, and even if it does, I doubt you’ll get in any trouble for it. The FCC has cr

Re: [WIRELESS-LAN] Aruba Wireless - IDS: Protect-SSID

2019-10-28 Thread Sidharth Nandury
Thank you for the response. Thomas, I'm definitely going to share the FCC announcement with my management and security officer to ensure that they are aware of this. That being said, we are not trying to prevent anyone from using a hotspot, but like Chuck mentioned are trying to protect our users

RE: [WIRELESS-LAN] Aruba Wireless - IDS: Protect-SSID

2019-10-28 Thread Enfield, Chuck
My main reason for worrying about people broadcasting our SSIDs is usability. The $64 question for security is whether or not the Aruba IDS would detect a well-executed evil twin attack. If the twin uses not just your ESSID but a valid BSSID from one of your APs in an area where the “spoofed” A

Re: Theater wifi - to have or not to have

2019-10-28 Thread Bull, Mary
Thanks everyone for the responses – they definitely contribute to our understanding of whether to pursue a high density wifi installment for the theaters and concert halls. Looks like we’ll work with the building folks to put as much as possible in during the construction phase. Mary Bull Netwo

RE: [WIRELESS-LAN] My personal training recommendation for Devin Akin's wireless training classes

2019-10-28 Thread Turner, Ryan H
You’re going to have to reach out directly. We use things called ‘ESUs’ that we get from Extreme every year with our maintenance. They are basically service units that can be used for professional services/training. I used them to get him as an outside trainer, and their value isn’t going to

Re: [WIRELESS-LAN] Aruba Wireless - IDS: Protect-SSID

2019-10-28 Thread Jake Snyder
Generally speaking there are 3 scenarios where you can safely use containment. On wire rogue: I own the network it's plugged in to. If you can prove that the AP is plugged into your network against policy you can contain, since the network they are connecting to is yours. However, this is not

Re: [WIRELESS-LAN] Aruba Wireless - IDS: Protect-SSID

2019-10-28 Thread Lee H Badman
Just adding to the discussion, having been at this for a while. Make sure that your “no rogue” enforcement- in whatever form that takes- is backed up by clearly articulated policy that is endorsed by your CIO or equivalent. Make sure that policy is well communicated, and that your entire distrib