Vernier Product
  • standalone box
    • 2-4 10/100 ports
    • authenticated filtering (OK, it's a firewall)
    • NAT supported, but optional
    • MAC-addr-based authorization
    • supports inter-box roaming via VPN forwarding (though we don't use this)
    • RADIUS/Kerberos authn off-the-shelf

  • Vernier added support for UW web SSO (pubcookie)
    • easy since embedded webserver is Apache
    • just another web-based app, hence certs and keys
    • triggers on off-campus web traffic
    • redirects to weblogin in usual way
    • 8-hour "session"

Workshop: Wireless Authentication
CSG, Sanibel Harbour, January 2002
RL "Bob" Morgan, rlmorgan@ washington.edu