Tuesday, August 14, 2018

Trying to implement a new infrastructure in a coworking space

This is the current work flow for and use case for the coworking space at both locations and this will dictate the use case for the new location. We are trying to mirror feature, form and functionality almost part and parcel with the current setup for ease of transition for all parties involved.

The use case is as such:

1) Member signs up with coworking space staff and is either given a private office with one or multiple ports, or they sign on as an open desk member.

1a) The members that take an office must provide us with an email address and some information so that we can go in the back end and make the configuration. Currently we are using the Medusa data appliance back end GUI software to make all of these changes.

We create a company name for them and than assign a specific room to that company. This creates a VLAN automatically for this company giving them their own personal subnet, furthermore after the VLAN is created we have the capability to enter a mobile devices MAC address and update the VLAN effectively bringing all of that mobile devices communication into the VLANs subnet.

1b) The members that do not take an office just use the WiFi APs and are all sending and receiving information on the open subnet. The way these members sign in is through WiFi credentials that must be created for them in the back end of Medusa data appliance.

We have the capability to assign a specific number of devices that these credentials can be used on as well as granular controls on when they expire. Once signed in the device does not need to sign back in until the expiration date is up in which that time the members usually send us a support ticket and we re validate the account.

2) We currently have a utility printer installed in both locations. This is set up so that all recipients on the network whether they be on their own VLAN or in the open desk subnet can be set up to print to it. This is currently hardwired in both locations and probably needs some special configuration or route to be able to communicate with all devices on the network.

3) The WiFi APs work in such a way that a member can go anywhere on location and have a seamless transition of network throughput from corridor/office/event space. This is very important because it is a co working space and people move around constantly with their mobile devices.

4) This location will have an outside area for seating and i am not sure as of yet but i think it may serve as an event space. If this turns out to be the case we have to have enough coverage in the building to handle 200+ mobile devices on the network at one given time plus the traffic being used for normal operations.~ TBD

5) The new location will have 110 drop ports in total. Some rooms will have more ports than others but each room will definitely need enough bandwidth to handle a VOIP connection as well. We should also determine if each of these ports was split up by an eight port switch how much connection loss would happen?

6) How would the switch be configured to handle all of these VLANs? What equipment and software would be needed to achieve this workflow?

Below is a list of equipment currently in use at the main location:

Wireless APs in use for both locations - Ruckus Wireless ZoneFlex R710 Unleashed Dual-Band 2.4 GHz and 5 GHz - 802.11ac Wave 2 Access Point (4x4:4 Streams, BeamFlex, Dual Ports, 802.3af PoE, US)

Equipment in telecoms closet 2 - 3 Cisco SG300-52P switches. 1 SF300P cisco switch, 2 proprietary pieces of equipment from Wun Systems. I believe this is medusabusiness equipment.

Equipment in telecommunications closet -2 Cisco SG300-52P switches. 1 proprietary security device, still need to determine functionality.<br>

Currently my company is in communication with Aerohive and to an extent Juniper. Has anyone achieved anything close to this use case without having to use a turnkey solution like medusabusiness? So far I have made the determination that a radius server may be needed.

So far after talking to aerohive they have a technology called private pre shared keys bye this only allows a key to be assigned and not a unique username. My main mission here is to have a new member join and have a room tied to their information and than this creates a private vlan subnet automatically. I am having the hardest time trying to figure out how this is being achieved already in coworking spaces. Has anyone had any experience with packetfence?

I will provide as much information about the configuration I am operating under currently if that will help.



No comments:

Post a Comment