>From: Eric Morgenroth [mailto:[EMAIL PROTECTED] 
>This network will only be used by our IT staff, and the network 
>has access to all university resources, based on firewall rules. 

If that is your premise, I would start out with the Highest level of
security you can tolerate, but since most people cannot tolerate TLS
certificates,

I would recommend WPA2-Enterprise (Which is based on 802.1x) with AES
encryption.  You can control access based on the RADIUS server.

I am also a strong proponent of security in layers.  This means any
system that you access via wireless, should use secure access methods.
(example SSH, HTTPS)

I will also warn you, once you introduce wireless, it will grow, and
grow quickly.  It won't just be IT only in a short period of time.

**********
Participation and subscription information for this EDUCAUSE Constituent Group 
discussion list can be found at http://www.educause.edu/groups/.

Reply via email to