Simple Plug and Play Secure Wireless?

I am trying to setup a simple way to have wireless users on our network be able to connect to our access points, authenticate to our ACS Server (Cisco Hardware ACS applicance) but without having to go through special configurations on the client. This needs to be secure too and not easily broken. We are using Cisco 1200 and 1300 802.11G AP's and the clients vary from having integrated wireless NIC's to running Cisco Wireless cards, to running other branded cards. We are currently using PEAP, but it is time consuming to configure and sometimes confusing to the users. I was thinking of switching to open authentication on a isolated subnet and using a Cisco BBSM (Building Broadband Service Manager) to securely connect to our network, but Cisco just made this device end of sale, end of life, so I'm hesitant to go this route. WPA/WPA2 or some of the other PEAP/EAP/LEAP are configuration intensive too. Any suggestions? Does cisco have anything to replace the BBSM? What about PPOE? Would this be an alternative? Can I use a router or firewall to terminate these connections or would I need a specialized server or other device? I really need a simple way to securly connect end users to our wireless network without any undue configuration on their end.

Probably the easiest would be to keep the wireless communications open, and use a VPN concentrator running to an SSL VPN client on the laptops/pcs.
All they'd have to do is aim their browser that the VPN gateway, and allow the SSL client to be downstreamed to their computer.
Beyond that, use your BBSM proxy or provide user auth at the VPN concentrator.
Leave the SSID in broadcast mode ("guest").
With this system, most clients can find the wireless system (SSID broadcast), the encryption via the SSL VPN is very strong, and there'd be no real configuration for the clients. Just aim the browesr at the VPN gateway/concentrator and enter the username and password.
Also, make sure you enable "Public Secure Packet Forwarding" (PSPF) to prevent one client from attacking other clients on te wireless LAN.
Users that use the system on a regular basis could get / use certificates for authentication. If they're on the system a lot, then the minor grief of setup would be worth it.
The SSL client uses Java, I believe, so it should be fairly universal (i.e., not platform specific). I haven't tried te SSL client n any system other than MS Windows so I can't really comment on *nix or Mac.
The SSL gate ( 3000 series) that we use for our Lab access seems to work pretty well.
Good Luck
Scott

Similar Messages

  • What ever happened to plug and play, or simple english to explain the tech stuff.

    What ever happened to plug and play, or simple english to explain the tech stuff.

    plug and play. well that is a windows term.. Apple decided they didn't need uPnP on the Time Capsule because that is just so windows.. so they use there own system.. called NAT-PMP.. (port mapping protocol). Just to make sure that things like playstation, xbox, etc could not open ports properly. And windows machines of course should be excluded from playing.
    http://en.wikipedia.org/wiki/NAT_Port_Mapping_Protocol
    "simple english".. unfortunately networking requires the use of a fair number of terms people are just unfamiliar with.
    The big lie was computers and networking are easy. Computers in isolation might be fine.. but as soon as you link things in networks.. it gets much harder.. and people who do study for a couple of years just to diploma level in networking haven't done it because they are dumb and could have read the simple english manual overnight. But because it is complex.
    I try and explain it this way.. if your washing machine goes bung, do you start pulling it to pieces and trying to find the fault.. or do you call the washing machine repairman.. who has trained to fix washing machines.
    If your computer or networking goes bad.. then "who are you going to call?" The manufacturer and complain about how hard it is to setup a $100 piece of equipment and expect them to give two hours of hand holding for free on the phone. People would never call a computer support technician.. no this is easy.. it is in simple english somewhere.. and you only need to spend an hour and all will be fine. Even though you have as much training in networking as in washing machine repairs. Would you call the washing machine manufacturer and expect 2 hours of free phone support for you to strip down their washing machine.. after all it cost 6x times what the router cost?? Or has some strange lie grabbed hold of you that this is simple. 

  • I need a wifi bridge that is Ethernet and plug and play.

    I am looking for a wireless bridge that I can install to an existing network through an Ethernet Jack. I do not have admin password so making any changes to the network is out of the question. The network does allow an Internet connection as I have used both my laptop and my ps3 with no issues.
    What I need is a cheap portable bridge to get me 3 feet of wifi coverage and will plug and play. Would be nice to be able to have security on it but again with out access to the admin functions this might not be possible. I know some systems have a bind style security like aoss I think it is called. I have posted a link to bridges and would greatly appreciate any input on the subject.
    I think the connection provider is comcast if it matters. Thank you to anyone that responds.
    http://www.newegg.com/Store/SubCategory.aspx?SubCategory=335&name=Wireless-AP-Br idges

    First a little background for those worried about security I have talked to the IT guys about the set up here. The people who installed the camera computers and the office computers did not physically connect the two networks. Hilarious, they also used free software to set up the camera computers and are running it on windows xp again I laugh as not a very reliable set up. Next apparently this network has Internet access but they are running no virus protection at all. The four computers running 16 cameras are not even sharing a single database each computer stores 4 cameras worth of slideshow style jpegs and if you want data from the other cameras it gathers it from the other computer and imports it not the most elegant solution. As for security issues I am a concierge at a condo, the data that a hacker would get access to is useless just jpegs of cameras doing what they do which is recording old people mostly. No access to the office network is probably why they really do not care about this network and the only reason it even has internet access is for off site IT guys to log in and troubleshoot any problems which they rarely do as the system seems very problematic since day one. I have been asked on many occasions to troubleshoot problems here and I am a trusted employee as for legal problems yeah right it is a condo they go after themselves like wolverines but as for employees they just hope they do not get sued for anything as it seems they just roll over and settle.
    All of that being said the issue is the wireless in the lobby belongs to the residents and it is a finite source which they pay for out of maintenance fees so I want to get off of that network. My sling box set up is probably hogging some speed I would imagine, not to mention airplay and orb. I read that lots of these bridges have web based set up that is only needed the first time you set it up after that it is plug and play. So I use my laptop to set up security on the bridge and away we go.
    Thanks guys for your input. It was helpful.

  • Plug and play speakers not working properly after upgrading to Windows 8.1

    After upgrading to Windows 8.1, my plug and play speakers do not work properly.  I have uninstalled and reinstalled them, and restarted.  When I try to play music, nothing comes out.  If I turn them off and back on, music will play for approximately 30 seconds, only from one speaker, then it turns off and fades to no sound.  They worked fine until I upgraded to Windows 8.1.  The manufacturer has not been able to successfully assist me.  Has anyone else reported a similar issue after upgrading OS software?  Any suggestions?  These are fairly new speakers, less than 2 years old, and not used very much.  I do have them installed via a K-V switch, and all other devices linked to the K-V switch are functioning properly (monitor and wireless keyboard).  Any suggestions would be greatly appreciated.

    @sisboldt ,
    Hello and thank you for posting on the HP support forums.
    So that I can better help you with your sound issue.  Please post back with your full model and product number.  Use this link to help you find the information.
    HP Notebook PCs - How Do I Find My Model Number or Product Number?
    Here is another link you may find useful.  Please give it a read before posting back with your system information.
    Advice for asking the "Very Best Question"
    Thank you again for posting and have a great day.
    Please click the "Thumbs Up" on the bottom right of this post to say thank you if you appreciate the support I provide!
    Also be sure to mark my post as “Accept as Solution" if you feel my post solved your issue, it will help others who face the same challenge find the same solution.
    D5GR
    I work on behalf of HP

  • How do I set MacBook to an external display when the plug and play doesn't recognize it?  I am trying to set my Samsung 530 LCD as a monitor but HDMI and VGA cords (and the adaptor for them) doesn't seem to work.

    I have tried everything I can find on line but they all claim that the plug and play works, and they don't for me.  I tried the mini dvi to HDMI and a HDMI cord and that was not recognized no matter which unit I rebooted first.  I found someone who said that my Macbook might be too old for the HDMI technology so I returned the cords and went to the VGA cord and adaptor.
    I tried this first with the HDMI setup:
    http://support-us.samsung.com/cyber/popup/iframe/pop_troubleshooting_fr.jsp?idx= 167919&modelname=LN40C650L1F&modelcode=&session_id=NDhJrD0DQT0Z8KRsm62yhxJxqnyPy SKhlhpB8vQ6h9Q7R2BZJGzj!-1089109758!1761676444!7501!-1!434477884!1761676348!7501 !-1!1292098185857
    Then I tried this with the VGA setup:
    http://support-us.samsung.com/cyber/popup/iframe/pop_troubleshooting_fr.jsp?idx= 167901&modelname=LN40C650L1F&modelcode=&session_id=NDhJrD0DQT0Z8KRsm62yhxJxqnyPy SKhlhpB8vQ6h9Q7R2BZJGzj!-1089109758!1761676444!7501!-1!434477884!1761676348!7501 !-1!1292098185857
    I contacted Samsung support and they said I needed to set the display settings to external display on the mac.  I went to the display settings and moved the icon to my status bar.  When I click on search for displays or whatever it says (I'm not at my Mac right now) it does nothing.
    What am I missing?

    I am using MAC OSx 10.5.8 (9L31a) as my operation system.  The TV says "No signal.  Check connected device's power, cable connection and source selection."  Seems to me that that goes in hand with what the Samsung tech said about the Mac needing to be forces to use the external display.  But how do I do that?

  • I have a new iPad Air. Can I use plug in USB camera reader to have a load of movies etc on an external hard drive and then plug and play so to speak. I'm off on holiday and haven't got the capacity to have everything on that I'd like for the kids

    Can I use a plug in USB camera reader to have a load of movies etc on an external hard drive and then plug and play so to speak? I'm off on holiday and haven't got the capacity on the iPad to have everything on that I'd like for the kids.
    So basically I want a hard drive with X amount of films etc on. Can I then watch them on my iPad?
    Hope this makes sense.

    External HDD won't work.
    You need something like this:
    http://www.seagate.com/goflexsatellite/

  • How can I configure and control a non-plug and play VXI card using the NI-controller (NI-VXI/NI-VISA software)?

    Defining the slot, logical address and sending data across the card bus are the main operations I would like to perform. The non plug&play card is a VXI send & receive slave card. Low-level programming is probably required. Has anyone tried this before? If so I would be so grateful if you could share your experiences or refer me to someone who has.
    Thank you for your time and help,
    Nandeesh

    VXI cards are, by specification, plug and play, so I'm not exactly sure what you mean by a "non plug&play card." I'm guessing that the card is effectively a VME card. In this case, you can just add the VME device in the proper configuration utility. Here is a link to a document on our website about configuring VME cards (http://ni.com/support/vxi/vmeinfo.pdf).
    You should easily be able set the slot, pseudo Logical Address and memory space. Once configured, you should be able to write to registers using NI-VISA commands (viIn, viOut, and viMove). These high level commands are included in the highreg.c example which shipped with your NI-VISA software (installed in vxipnp directory).
    I hope this helps.
    Trey Hamilton
    National Instruments
    Applications Enginee
    ring
    http://www.ni.com/support

  • Ever since I updated to the IOS 6, I no longer can play my music in the car!  It is plug and play!  It just sits there saying connecting and nothing happens.  A few of my friends have said the same thing.  Help please!  Any ideas?

    Ever since I updated to the IOS 6, I no longer can play my music in the car!  It is plug and play!  It just sits there saying connecting and nothing happens.  A couple of my friends have said the same thing.  Any ideas?  Help please!

    Hello ..do you have a history on the phone? did you get it wet? was it dropped? have you been using an authentic ORIGINAL apple charging cable?
    this problem occurs when there is a short circuit  in the phone... you  most likely got  it wet at some point and maybe didnt even realize it? The moisture in the phone hasb probablly  oxidized one or several capacitors, integrated chips thereby short circuiting the phone. that is why he phone  is acting erratic because these short circuits inadvertently "activates" other circuits.. eventually the phone will not turn on anymore- the heat will stress the citcuit board and you will have discontinuity along your main power lines and the phone will cease to function..i see this alllll the time in our shop
    the fact you upgraded to ios6 will even work the phone harder because its a more powerful operating system taking full advantage of the A4 chip..

  • Seagate Plug and Play from Macbook Pro to Macbook Air

    Recently bought a new Macbook Air to upgrade my 2010 Macbook Pro 13 inch.
    I had been using a Seagate Plug and Play external hardrive that needed no formatting on my Macbook Pro . However when I tried to use the same on my Macbook Air it did not allow me to drag files across the the hardrive.
    I can see it in the Finder but unable to drag files to it.
    I thought Plug and Play woudl across all Macs?

    OS X comes with the ability to read NTFS but not write it. Some Seagate drives come with software to enable writing NTFS on that drive. You probably installed it on your 2010 MBP when you got the drive, then forgot you had done so. Find the software installer if it is still on the drive and run it on your MBA. (You might have to locate a newer version online.)
    Alternatively, you can purchase a version that can run on any NTFS disk. I use Paragon NTFS for Mac. I initially got a limited version with a Seagate drive, then purchased the full version.

  • I have a Keyrig 49 m-audio and it is not recognize by OS 10.9.4 when it says that mavericks is plug and play. I would really like to do what I am able to do on earlier version of OS... Please help

    I have a Keyrig 49 m-audio and it is not recognize by OS 10.9.4 when it says that mavericks is plug and play. I would really like to do what I am able to do on earlier version of OS... Please help

    it the link it seem someone made it work. How can a new OS make things more difficult... it seem crazy too me.
      via: http://community.m-audio.com/m-audio/topics/m_audio_keystation_with_osx_maverick s_9_1_doesnt_work_via_plug_n_play
    pavery85   8 months ago
    **UPDATE*** All is working on Mavericks 10.9.1 for me!! Back in business!
    Drivers seem to working now!

  • How to create plug and play design pattern on a environment

    Hi All,
    Help me to get a best design for my problem statement.
    Problem Statement: I have to create a platform where I should be able to plug and play different components. explaining better with example
    Example:
    1. I have to create a platform for school
    2. In this school platform we have to plug in multiple components like "Student", "Teacher", "Subjects", "ClassPeriods" etc.,
    3. These components should be easily plug/unplug and play
    4. Like, the component "ClassPeriods" want to purchase from Vendor 1 and plug it to "School" platform it should work.
    5. Incase if we want to unplug the "ClassPeriod" component provided bfy Vendor 1 from "School" platform and want to plug the "ClassPeriod" from Vendor 2. then the Design should support without any extra effort.
    Suggest me the best design pattern for the problem
    This design pattern is for ASP.Net
    Thanks,
    S.Kannan

    Sounds like you're looking at 'Composition'. As a background, and possible solution, take a look at MEF;
    http://mef.codeplex.com/
    http://pauliom.wordpress.com

  • Plug and Play not showing up on desktop - camera, jump drive, etc.

    Hi all:
    On my Macbook Pro, none of the so-called "plug and play" devices show up on the desktop as they normally would on a Mac computer. I tried my ipod, camera, and usb jump drive. Is there a setting that I could have set on to make it like this??
    Any help is GREATLY appreciated.
    Thanks.

    Welcome to Apple Discussions!
    Go to Finder>Preferences>General, and you will find some boxes to check so that external devices will show up on the desktop. I'm not sure your camera would show up on the desktop--but it will appear in iPhoto if you want to put your pictures in iPhoto. Your iPod and jump drive will show up for sure.
    Good luck!

  • My classics IPOD has died over the weekend and I plan to but an IPOD Touch -- but need to to 'work' and simply sync all my 'old' music on a plug and play basis -- or is that wishful thinking ? I need it urgently for a holiday so only time to buy it n run

    Any advice on :
    1. The Touch as a product
    2. The likely chances of plug and play resync to new device without hours of 'fiddling' / support calls
    or I can just use my Shuffle I guess ----

    There should be no problems, make sure to have all the needed software updates for Windows and the new iTunes 10.5 installed before connecting your iPod touch.
    You already know how the basic sync process is working, there are a few more features added like mail for example: iOS: Syncing with iTunes

  • Help file for the Plug and Play driver of Agilent Technologies E5071C

    I just download the Plug and Play driver of Agilent Technologies E5071C from the below link:
    http://sine.ni.com/apps/utf8/niid_web_display.model_page?p_model_id=5692
    I find that there is only some examples and not any help file with detail description for each input of those VIs. Although there is brief description for each VI when I press "Ctrl+H" on the VI,I still can't figure out how to use this driver. :-(
    Is there any help files with more detail description?
    Or any related examples for my reference? I hope to measure the S11 and S21 of the SMA cables

    The driver implements the commands defined by agilent.
    So look in the agilent programmers manual to find the meaning and how to handle the instrument.
    greetings from the Netherlands

  • Failed to plug and play with my Yamaha PSR-500. What do I need?

    I'm trying to connect my Yamaha PSR-500(A relative unknown keyboard even on the Yamaha site) and the plug and play function doesn't work. I did a internet investigation but al the things I found where useless...
    -The keyboard is old.
    -I use a MIDI-cable.
    -iMac doesn't recognize the keyboard.
    -Had the same problem with my ex-windows computer but then I found a good windows software...
    Greatings and have a great night,
    Nathan

    I'm sorry but the Yamaha website distinctly says that the PSR500 has NO USB Connector.
    It does have a midi interface in the form of IN and OUT jacks - 5-pin DIN type.
    (These seem to be labeled the wrong way round.  Either that, or my HOSA adaptor is labeled the wrong way round.)
    The only other connectors (all on the back) are Power Adaptor, Pedal and Earphones.
    NathanMac said that the Yamaha PSR500 is relative(ly) unknown, even on the Yamaha site.
    However, they do offer some advice on how to connect here:
    http://faq.yamaha.com/us/en/article/musical-instruments/keyboards/digitalkeyboar ds/portable_keyboards/psr500/656/1385/Interfacing_a_Yamaha_MIDI_Keyboard_with_a_ Laptop_Computer
    I hope this helps.

Maybe you are looking for

  • Confusing to EXP 2 databases

    Hi all, I am facing a big problem here. Currently I am using Oracle 10g and containing 2 databases "MYDBONE" and "MYDBTWO". Both databases were using same owner name as "MYADMIN". So every times before I patch any data, I will make a backup using the

  • Browsers difference

    Hi, www.ekongo.org I tested this page on ie 6.0 it looked fine, but when i turned to chrome, firefox and safari (last versions) the page is a real nightmare. More strange again is when i compare the situation with that of this other page http://www.e

  • Block sensitive table via Table browser

    Hello We have implemented HCM on out existing R/3 and now we have all the sensitive data in the production. In my production system there are some users who has SE16(data browser) and thet can dump those sensitive data from the production system. I w

  • Key photo does not sync

    I have a Mac Mini.  My photos are stored on an external hard drive.  I import them into iPhoto.  When I sync to my iPad the key photo does not show anymore.  This has only just started.

  • Please Help! My girlfriend is mad.

    I was cleaning up my girlfriend's iTunes folder and hit the button that says "do not ask me again." about whether I want to delete the song. My girlfriend wants her Mac to ask her again. She is very afraid of accidentally deleting her songs without n