Monday, July 15, 2019

Open guest WiFi and hidden SSID 802.1x/roaming?

We have an open guest SSID at our organisation that has no authentication is accessed via a captive portal. The service is provided by a 3rd party and we tunnel the traffic out to them via a VPN over our internet links. We are migrating our wireless to new hardware and are moving over the config and during the set up we noticed there is a duplicate of the open SSID that has same name with an additional letter at the end, is set to hidden and using WPA2-AES and appears to point to a RADIUS server that either doesn't exist or is outside of our network.

When I enquired with our account manager from the 3rd party they said this SSID is used as part of "802.1x centralised authentication and authentication handoff between access-points" for the open guest wireless. Looking at our existing wireless system I see no users or devices connecting to or authenticating to the hidden 802.1x secured SSID and can't see how it would in any way relate to the other open SSID or assist with roaming? Does any of this make any sense? Cheers.



No comments:

Post a Comment