Vernier Product
- standalone box
- 2-4 10/100 ports
- authenticated filtering (OK, it's a firewall)
- NAT supported, but optional
- MAC-addr-based authorization
- supports inter-box roaming via VPN forwarding
(though we don't use this)
- RADIUS/Kerberos authn off-the-shelf
- Vernier added support for UW web SSO (pubcookie)
- easy since embedded webserver is Apache
- just another web-based app, hence certs and keys
- triggers on off-campus web traffic
- redirects to weblogin in usual way
- 8-hour "session"
|
|
|