WIFI -- WPA2 switch from personal to enterprise ?

1. How can I setup so only JohnDoe's main
   laptop can connect to WIFI, preventing
   his tablet, phone, etc from connecting
   since these devices are NOT work related ?
     ** maybe do something via MAC address ?

2. Can I do the above on the UniFi devices
   I already have without needing a radius
   server ?

3. If not, what radius server do you recommend
   for my Windows 2012 server environment ?
finance_teacherAsked:
Who is Participating?

[Product update] Infrastructure Analysis Tool is now available with Business Accounts.Learn More

x
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

vikasjusCommented:
Hi
You can enable MAC address filtering on wifi router and add only laptop wifi mac address.
This way only allowed MAC address will have access to wifi network

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
Craig BeckCommented:
Use computer certificates and EAP-TLS.  That will only allow domain-joined machines which present a certificate to connect.  All other devices won't have a certificate and the RADIUS policy won't allow MSCHAPV2 logins.

MAC filtering is weak and shouldn't be considered as a security method nowadays.
finance_teacherAuthor Commented:
What radius server do you recommend for my Windows 2012 server environment ?
Check Out How Miercom Evaluates Wi-Fi Security!

It's not just about Wi-Fi connectivity anymore. A wireless security breach can cost your business large amounts of time, trouble, and expense. Plus, hear first-hand from Miercom on how WatchGuard's Wi-Fi security stacks up against the competition plus a LIVE demo!

Craig BeckCommented:
Windows has NPS.  Just install the role.
vikasjusCommented:
Why is MAC filtering is not good security, what should be done if one has devices like phone and tables and need wifi on those devices.
Craig BeckCommented:
Either PEAP-MSCHAPV2 (for ease of deployment) or EAP-TLS with X.509 certificates is the way to do it.

MAC filtering can be circumvented simply by spoofing a MAC address.
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Wireless Networking

From novice to tech pro — start learning today.