<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Just enough WLAN guest security or too little ? in ZoneDirector</title>
    <link>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11515#M2457</link>
    <description>“Three may keep a secret, if two of them are dead.” 
&lt;BR /&gt;
― Benjamin Franklin, Poor Richard's Almanack
&lt;BR /&gt;&lt;BR /&gt;
See - &lt;A href="http://theruckusroom.typepad.com/files/dynamic-psk-fs.pdf" rel="nofollow"&gt;http://theruckusroom.typepad.com/file...&lt;/A&gt;</description>
    <pubDate>Thu, 05 Sep 2013 20:00:06 GMT</pubDate>
    <dc:creator>keith_redfield</dc:creator>
    <dc:date>2013-09-05T20:00:06Z</dc:date>
    <item>
      <title>Just enough WLAN guest security or too little ?</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11514#M2456</link>
      <description>The following works for our guests but is it secure enough?
&lt;BR /&gt;&lt;BR /&gt;
1. Configure / Guest / Authentication &amp;gt;&amp;gt; No onboarding, No authentication, Yes &amp;gt;&amp;gt;&amp;gt; Show terms of use
&lt;BR /&gt;
2. Configure / WLAN / 
&lt;BR /&gt;
&amp;gt;&amp;gt;&amp;gt; WLAN Usages / Type = Guest Access
&lt;BR /&gt;
&amp;gt;&amp;gt;&amp;gt; Authentication Options / Method = Open
&lt;BR /&gt;
&amp;gt;&amp;gt;&amp;gt; Encryption Options / Method = WPA2
&lt;BR /&gt;
&amp;gt;&amp;gt;&amp;gt; Encryption Options / Algorithm = AES
&lt;BR /&gt;
&amp;gt;&amp;gt;&amp;gt; Encryption Options / Passphrase =  "123fake456"
&lt;BR /&gt;
&amp;gt;&amp;gt;&amp;gt; Options / Wireless Client Isolation = Full
&lt;BR /&gt;&lt;BR /&gt;
From their computing device my guests and employees find the appropriate WLAN (mentioned above) in the wireless network choices, attempt to connect, they enter the passphrase, they accept the TOU  and then they connect.
&lt;BR /&gt;&lt;BR /&gt;
This WLAN setup works for most of my users...should I be afraid?</description>
      <pubDate>Thu, 05 Sep 2013 18:05:09 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11514#M2456</guid>
      <dc:creator>dtsblake_588878</dc:creator>
      <dc:date>2013-09-05T18:05:09Z</dc:date>
    </item>
    <item>
      <title>Re: Just enough WLAN guest security or too little ?</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11515#M2457</link>
      <description>“Three may keep a secret, if two of them are dead.” 
&lt;BR /&gt;
― Benjamin Franklin, Poor Richard's Almanack
&lt;BR /&gt;&lt;BR /&gt;
See - &lt;A href="http://theruckusroom.typepad.com/files/dynamic-psk-fs.pdf" rel="nofollow"&gt;http://theruckusroom.typepad.com/file...&lt;/A&gt;</description>
      <pubDate>Thu, 05 Sep 2013 20:00:06 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11515#M2457</guid>
      <dc:creator>keith_redfield</dc:creator>
      <dc:date>2013-09-05T20:00:06Z</dc:date>
    </item>
    <item>
      <title>Re: Just enough WLAN guest security or too little ?</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11516#M2458</link>
      <description>Keith Redfield:
&lt;BR /&gt;&lt;BR /&gt;
Thanks for the document reference.  Can we add DPSK for guests?
&lt;BR /&gt;&lt;BR /&gt;
P.S.  I am a ruckus noob!!!</description>
      <pubDate>Fri, 06 Sep 2013 11:21:47 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11516#M2458</guid>
      <dc:creator>dtsblake_588878</dc:creator>
      <dc:date>2013-09-06T11:21:47Z</dc:date>
    </item>
    <item>
      <title>Re: Just enough WLAN guest security or too little ?</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11517#M2459</link>
      <description>Ah, I missed the guest requirement. For that you probably want to use Guest Passes - these are often set up in reception for example and handed to guests after they sign in. 
&lt;BR /&gt;&lt;BR /&gt;
&lt;A href="https://support.ruckuswireless.com/answers/000001566" rel="nofollow"&gt;https://support.ruckuswireless.com/an...&lt;/A&gt;</description>
      <pubDate>Fri, 06 Sep 2013 15:34:48 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11517#M2459</guid>
      <dc:creator>keith_redfield</dc:creator>
      <dc:date>2013-09-06T15:34:48Z</dc:date>
    </item>
    <item>
      <title>Re: Just enough WLAN guest security or too little ?</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11518#M2460</link>
      <description>Can more than one client log in a WLAN using the identical ZD local credentials?
&lt;BR /&gt;&lt;BR /&gt;
If so, are there limits as to how many clients can use the same credentials?</description>
      <pubDate>Fri, 06 Sep 2013 16:27:37 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11518#M2460</guid>
      <dc:creator>dtsblake_588878</dc:creator>
      <dc:date>2013-09-06T16:27:37Z</dc:date>
    </item>
    <item>
      <title>Re: Just enough WLAN guest security or too little ?</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11519#M2461</link>
      <description>You can do that, but for that case it's even easier to just keep using a shared secret. The problem with using persistent credentials of any kind that are shared among multiple users is that over time they are bound to leak to people you hadn't intended.</description>
      <pubDate>Fri, 06 Sep 2013 18:28:36 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11519#M2461</guid>
      <dc:creator>keith_redfield</dc:creator>
      <dc:date>2013-09-06T18:28:36Z</dc:date>
    </item>
    <item>
      <title>Re: Just enough WLAN guest security or too little ?</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11520#M2462</link>
      <description>Keith:
&lt;BR /&gt;&lt;BR /&gt;
Sorry to wear you down on this topic but you are the first RuckusWireless techie that I could understand most of the time.  &amp;lt; Insert rant here... I have opened over ten online cases so I do have ruck-tech-less case experience.**end rant&amp;gt;
&lt;BR /&gt;&lt;BR /&gt;
"...shared secret..."  I know what that means in the "Radius and VPN vernacular" but are you referring to the "&amp;gt;&amp;gt;&amp;gt; Encryption Options / Passphrase = "123fake456" statement from my original question?  Does "shared secret" equal "Passphrase" in the context of your previous response?
&lt;BR /&gt;&lt;BR /&gt;
Yes, I understand about your warning me about "unintended "leak" consequences" but generating temporary "guest passes" for impatient adult students with BYOD me-mentality at a graduate school is something I must weigh against maximum security.  I can isolate their encrypted access to controlled vlans which should meet all requirements on all our sides of this issue.
&lt;BR /&gt;&lt;BR /&gt;
Thanks much.</description>
      <pubDate>Fri, 06 Sep 2013 19:42:12 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11520#M2462</guid>
      <dc:creator>dtsblake_588878</dc:creator>
      <dc:date>2013-09-06T19:42:12Z</dc:date>
    </item>
    <item>
      <title>Re: Just enough WLAN guest security or too little ?</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11521#M2463</link>
      <description>lol - I am mostly going back to those same techs to get your answers - I had the managerial lobotomy many years ago. 
&lt;BR /&gt;&lt;BR /&gt;
Yes - shared secret==passphrase. If you are not concerned about un-approved access to the network then these are fine.</description>
      <pubDate>Fri, 06 Sep 2013 21:17:14 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11521#M2463</guid>
      <dc:creator>keith_redfield</dc:creator>
      <dc:date>2013-09-06T21:17:14Z</dc:date>
    </item>
    <item>
      <title>Re: Just enough WLAN guest security or too little ?</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11522#M2464</link>
      <description>Please define "un-approved access ."
&lt;BR /&gt;&lt;BR /&gt;
A "user" would need to know the passphrase to access the WLAN, would they not?
&lt;BR /&gt;&lt;BR /&gt;
I am running WPA2/AES so it is not like the "bad buy" can easily un-encrypt the passphrase and user transmissions, or am I missing something big?
&lt;BR /&gt;&lt;BR /&gt;
Thanks</description>
      <pubDate>Sat, 07 Sep 2013 12:51:24 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11522#M2464</guid>
      <dc:creator>dtsblake_588878</dc:creator>
      <dc:date>2013-09-07T12:51:24Z</dc:date>
    </item>
    <item>
      <title>Re: Just enough WLAN guest security or too little ?</title>
      <link>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11523#M2465</link>
      <description>Right - I'm not talking about hacking - just let's say Joe Student shares the passphrase...on Facebook.</description>
      <pubDate>Sat, 07 Sep 2013 16:26:45 GMT</pubDate>
      <guid>https://community.ruckuswireless.com/t5/ZoneDirector/Just-enough-WLAN-guest-security-or-too-little/m-p/11523#M2465</guid>
      <dc:creator>keith_redfield</dc:creator>
      <dc:date>2013-09-07T16:26:45Z</dc:date>
    </item>
  </channel>
</rss>

