Link to home
Start Free TrialLog in
Avatar of Shane McKeown
Shane McKeownFlag for Ireland

asked on

Web filtering options on wifi network

All

We have a client who has an existing wifi solution already in place and working - they are using Juniper based hardware

There is a WLC200 controller and about 50 AP's covering the school

They want to create a 2nd SSID for the students and then when students access that SSID they need to filter the sites the students can access

My question is related to the hardware we need to implement this - do we need something like these from Juniper -
http://www.networkscreen.com/SRX210.asp

Or can we use any UTM solution to make this work?

Or if I am looking at the wrong hardware what do I need to make this function properly can anyone give their input on?

Note the students will be using iPads only so no laptops or username/passwords required to authenticate at all...which is why the connection to the new SSID is the way they want it to work...

Any help appreciated
ASKER CERTIFIED SOLUTION
Avatar of Craig Beck
Craig Beck
Flag of United Kingdom of Great Britain and Northern Ireland image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of Joey Yung
Joey Yung

I prefer UTM firewall for URL filtering feature. The student is quite smart now a day, DNS based control I worry they can fixed by a week ^^
Avatar of Shane McKeown

ASKER

Thanks for the answers...

Craig - are you familiar with that controller? Never thought of OpenDNS but can't hurt to give it a try as its free...but my question is related to DHCP - when students connect to the separate SSID how do I hand out an IP with alternate DNS settings...that's where I am slightly lost...is this a function on the controller or how does this bit work?

Joey - so any UTM will do the job? Any recommendations or have you done this before?

Cheers...
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
You just need to create a new scope on the DHCP server for the guests and specify the OpenDNS servers instead of your internal ones.

The WLC should also be able to specify a DHCP server per WLAN, or interface that attaches to the WLAN.  That means you can point the WLAN to a different DHCP server too if you want.
Thanks folks...looks like there are other issues on the network(flat network with only a few managed switches) so have to upgrade those first to get vlan's working at all...but thanks for the options...