1 / 17

The Next Generation Wireless

The Next Generation Wireless. Yuri Kolomiyets Network Services Information Systems and Technology. Current Wireless Network. Complete indoor coverage of campus Hardware: Avaya Access Points (Fat) 802.11g everywhere with data rates up to 54Mbps Management: Airwave Management Platform

cybil
Download Presentation

The Next Generation Wireless

An Image/Link below is provided (as is) to download presentation Download Policy: Content on the Website is provided to you AS IS for your information and personal use and may not be sold / licensed / shared on other websites without getting consent from its author. Content is provided to you AS IS for your information and personal use only. Download presentation by click this link. While downloading, if for some reason you are not able to download a presentation, the publisher may have deleted the file from their server. During download, if you can't get a presentation, the file might be deleted by the publisher.

E N D

Presentation Transcript


  1. The Next Generation Wireless Yuri Kolomiyets Network Services Information Systems and Technology

  2. Current Wireless Network • Complete indoor coverage of campus • Hardware: Avaya Access Points (Fat) • 802.11g everywhere with data rates up to 54Mbps • Management: Airwave Management Platform • Authentication: Network Authentication Appliance WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  3. Access Point management Airwave Management Platform • Allows to monitor, configure and manage access points • Has rogue detection capabilities • Collects statistics • Supports multiple vendors/platforms WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  4. Access Point management Problems with Airwave • Not 100% support of all features • Lots of false positives by Rogue Detection • Poor distributed management capabilities WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  5. Authentication Gateways Network Authentication Appliances (aka. NAAs) • Developed by Bruce Campbell <bruce@ist> • Gateways (routers) for wireless subnets • 3 in IST, 1 in ARTS, 2 in ENG, 1 in ARC • Run on FreeBSD • Control authentication, security and traffic shaping • Also used for wired access where required WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  6. Authentication Gateways Custom functionality • Captive portal authentication • Client-only firewall rules • TTTS (Toilet tank traffic shaping) • MinUWet • developed by Erick Engelke <erick@engmail> • Windows XP SP2 only • Failed health check results in access restrictions • Printing capabilities (in ENG) WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  7. Architecture Overview • Core • NAA • Constituency switch/router • Access points • Clients • AP management vlans • Client vlans trunked to NAA • Routed links • Management • Wireless WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  8. Problems with physical infrastructure • After initial survey no way to determine gaps in coverage • No dynamic power/channel adjustment • Poor load balancing • No physical layer security (Open access) WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  9. Problems with NAAs • Need to be inline with client traffic • Currently can only be done with VLAN trunking • Very complicated (messy) design • Not very scalable architecture • No redundancy • Inefficient use of IP address space • No synchronization between NAAs • No roaming • Buggy WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  10. Usage statistics WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  11. Next generation • RFP 07-53 awarded to Aruba • 3rd generation Architecture (Thin APs + controller) • Complete overall solution from a single vendor • Except health check • Built-in firewall • Application aware • Extensible WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  12. New Architecture • Aruba Wireless Controller • Aruba APs • No need for trunking • Wireless traffic tunnelled from AP to controller • Wired traffic goes through tunneller (wired AP) • NAA is replaced with Aruba WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  13. Aruba is #UNO !!!1 • More powerful access points • Automatic channel/power adjustment • Effective high density deployment • Full roaming capabilities (L2 and L3) • Rogue monitoring and mitigation • Uniform use of IP space with Vlan Pooling • NO BUGS !!!! WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  14. Deployment • Deployed 10 APs in MC • 645 to go • 3 controllers in N+1 redundant mode • Authentication will be moved to Aruba • Minimum change in appearance • Routing will be moved to HP • DHCP will move to NS1 and NS2 • minUWet to be implemented by Erick • TTTS to be implemented by Aruba or Erick WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  15. Aruba Interface WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  16. Future • Complete coverage in residences • Wired control for ResNet moving to Aruba • Outdoor coverage • 802.1x authentication • Guest provisioning • Remote APs WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

  17. Questions?? • Thank you. WatITis | Life After 50 | December 4, 2007 | The Next Generation Wireless

More Related