public:faq
Differences
This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| public:faq [2021/01/18 08:32] – admin | public:faq [2024/08/02 10:02] (current) – [Q: We're a public sector organisation and would like to join Govroam, what are the next steps?] admin | ||
|---|---|---|---|
| Line 7: | Line 7: | ||
| A: Contact < | A: Contact < | ||
| - | The [[ https:// | + | The [[ https:// |
| - | Once we have properly completed forms then we'll sort out the appropriate payments, shared secrets for RADIUS servers, access to the CAT, the Govroam App, subscribe you to the support mailing lists and add your support details to our Support Matrix. | + | Once we have properly completed forms then we'll sort out the appropriate payments, |
| ===Q: We're a public sector organisation and would like to join Govroam as a Visited Only site, what are the next steps?=== | ===Q: We're a public sector organisation and would like to join Govroam as a Visited Only site, what are the next steps?=== | ||
| Line 31: | Line 31: | ||
| scan it to a PDF and upload it to the form. | scan it to a PDF and upload it to the form. | ||
| - | Submit the form back to us, and then we' | + | Submit the form back to us, and then we' |
| ===Q: We're a University/ | ===Q: We're a University/ | ||
| Line 37: | Line 37: | ||
| A: There are three things to do: | A: There are three things to do: | ||
| - | - If you've already got eduroam then take your existing configuration, | + | 1. If you've already got eduroam then take your existing configuration, |
| - | | + | |
| + | 2. Have your Director of IT (or someone suitably senior) write a brief letter of authorisation, | ||
| < | < | ||
| "Dear Sir/Madam, | "Dear Sir/Madam, | ||
| Line 44: | Line 45: | ||
| Re: Govroam | Re: Govroam | ||
| - | Please accept this letter as authority of behalf of <insert institution here> for the provision of the Govroam service over our network infrastructure as a Visited Only site. | + | Please accept this letter as authority of behalf of <insert institution/ |
| Your faithfully, | Your faithfully, | ||
| Line 52: | Line 53: | ||
| scan it to a PDF and upload it through the form below. | scan it to a PDF and upload it through the form below. | ||
| - | - Visit the [[ https:// | ||
| - | Then we'll send you the details (shared secrets | + | 3. Visit the [[ https:// |
| - | This documentation is related: | + | Then we'll send you an [[public:unpacking_.tar.gpg.zip_file|encrypted file with the shared secrets]] for our NRPS for you to configure in your RADIUS servers. We'll include a test account so that you can confirm that outgoing authentication requests work and we have a web page through which you can test incoming authentication requests. We'll sign you up to a technical mailing list and give you access to our Wiki of relevant information. |
| - | {{ :public:20171212_govroam_tech_spec_v2.docx |Tech Spec V2}} | + | An overview of how to deploy visited-only govroam alongside an existing eduroam service: |
| + | {{ : | ||
| + | (first presented November 2019) | ||
| + | |||
| + | Our technical requirements in detail: | ||
| + | {{ :public:2021_techspec_v3.pdf |Tech Spec V3}} | ||
| ====Technical==== | ====Technical==== | ||
| Line 100: | Line 105: | ||
| If you already have a RADIUS server then you may be able to configure it to act as an ORPS at no extra cost. If the software doesn' | If you already have a RADIUS server then you may be able to configure it to act as an ORPS at no extra cost. If the software doesn' | ||
| - | As for the software - any modern RADIUS server can handle Govroam. There are no odd requirements. Having said that through, there should be a preference for servers which can handle Server Status (for resilience), | + | As for the software - any modern RADIUS server can handle Govroam. There are no odd requirements. Having said that though, there should be a preference for servers which can handle Server Status (for resilience), |
| If you value the service then resilience should be considered. At least two RADIUS servers at each level are recommended and three is quite common. Many RADIUS servers (and wireless controllers) offer load balancing options so hardware load balancers shouldn' | If you value the service then resilience should be considered. At least two RADIUS servers at each level are recommended and three is quite common. Many RADIUS servers (and wireless controllers) offer load balancing options so hardware load balancers shouldn' | ||
| Line 171: | Line 176: | ||
| A: Follow these instructions: | A: Follow these instructions: | ||
| + | ===Q: Firewall is seeing fragmented packets from RADIUS servers?=== | ||
| + | |||
| + | A: If the RADIUS packets exceed the MTU size then they' | ||
public/faq.1610958759.txt.gz · Last modified: 2021/01/18 08:32 by admin
