Go to Main Contents

:: Identity and access rights

Distinguishing of staff, visitors and foreign associations before designing access controls in the park

A uniform authentication does not mean that everyone has the same rights.

• Suitable to the target

Which projects do this program fit?

Even if the scene is the same, it will be necessary to judge the current network conditions and project responsibilities.

  • Business parks with wire and wireless access requiring uniform management
  • Organizations that need to distinguish between staff, visitors, foreign workers and equipment
  • Project to prepare for docking AD, LDAP or UIS

• Four preliminary questions

Common network issues and priorities

The right construction routes can be determined more quickly, starting with network control points, identification sources, interfaces and operational objectives.

01

Where do I get my identity?

Are the employee accounts, visitor registrations, foreign staff and terminal equipment coming from the same identification system?

02

Where's the control point?

Can existing AC, gateway or exchange networks be externally certified and released for word control?

03

How do you divide the rights?

Which network areas do different identities require access, and by whom are the time limits and anomalies managed?

04

What do you need to test?

Are there limits to the number of terminals, identification of private connections, or are they monitoring unusual outreach and cross-border access leads?

:: Establishment conditions

Conditions required for the programme to land

Pre-checking of networks, interfaces and operating conditions helps to reduce duplication in implementation.

  • Checkable sources of staff, visitors and FSA status
  • Visible and controlled authentication links or network exports
  • Clear network areas, competencies and life-cycle rules
  • Third-party identity interface documents, permissions and interface windows

04. NatShell What to do

Platform, gateways and supporting capacities work in tandem

The product mix is determined according to project objectives and current network conditions, and the synergies between third-party systems, network equipment and implementation services are identified.

V7 Unified Authentication & Billing Platform

Unifiedly manage accounts, identity properties, permission strategy, online sessions and visitor processes.

Conditions of application: no replacement for the business competency system or all zero confidence capabilities.

NATHHELL_AUTH_GATEWAY

Accept the certification jump, release after authentication and implementation of the park network side strategy.

Conditions for application: Whether to add is dependent on the capacity of existing ACs, gateways and control points.

Identity and business interface

Connect AD, LDAP, unified identity or visitor operations system on condition.

Conditions for application: Fields, permissions, versions and abnormal processes need to be linked to each item.

NATHHEL_ANTI_SHARING AND TRAIL SURING

Assist in identifying private connections, account sharing and unusual outreach leads.

Conditions of application: Dependence on traffic visibility, deployment location, rules and field validation.

05 Product combinations

Select the right product mix by current network size

Select the right product mix based on current network equipment, network size, interface conditions and construction objectives.

Staff and visitors access to the common entrance

  • V7 Platform
  • Existing AC/ Gateway collaboration or NATSHEL_AUTH_GATEWAY
  • Visitors Accreditation Process

A park suitable for identity sources and well-defined network zoning.

Third-party identity coordination

  • V7 Platform
  • NATHHELL_AUTH_GATEWAY
  • AD / LDAP / Unified Identity Interface

Interface fields, access and life cycle must be identified first.

Access security and abnormal detection

  • Accreditation platform
  • Visible Control Points
  • NATSHEL_ANTI_SHARING/ Log / NATSHEL_CROSS_BORDER_TRAFFIC group as required

The subjects are different and do not combine multiple capabilities into an absolute commitment.

Programme information and practice

Keeping up with the project of this scene.

(c) To improve understanding of the modalities of project landing through relevant programmes, implementation cases and technical knowledge.

View All Relevant Contents

• Conditions for implementation

Key issues to be identified before the project lands

Pre-defined networks, equipment, interfaces and conditions of service would help to develop an implementable and verifiable construction programme.

Basis of implementation

The final programme is based on field-based pings, equipment models, interface documents and joint testing.

Uniform certification does not amount to uniform business privileges.+

The project research phase will identify the scope of implementation, co-responsibility and certification modalities in relation to conditions on the ground.

The same third-party identity agreement does not mean that direct access is possible.+

The project research phase will identify the scope of implementation, co-responsibility and certification modalities in relation to conditions on the ground.

NATSHEL_CROSS_BORDER_TRAFFIC requires mirror traffic to block the connection of dependent routers or security equipment.+

The project research phase will identify the scope of implementation, co-responsibility and certification modalities in relation to conditions on the ground.

AC, AP, switchboard is only configured if the current network does not meet the conditions or needs new coverage.+

The project research phase will identify the scope of implementation, co-responsibility and certification modalities in relation to conditions on the ground.

• Frequent problems

The question of whether the project is viable will be answered first.

Can the existing wireless network continue?+

Check the AC/AP model, external authentication capability, control points and release links first. No default replacement is required when conditions are met.

Can access AD or LDAP allow for unified access?+

The interface addresses only identity or attribute sources, and network privileges, business privileges and unusual processes still need to be designed separately.

Quick consultation

Tell us about your scene and get a targeted program.

Submission of network size, current network equipment, key requirements and contact calls will assist in collating product portfolios and implementation pathways.

Associate Programme Adviser

Information on the Wireless Certification and Visitors Programme

Medical institution WiFi authentication application

Wireless access for hospital staff, patients, escorts and visitors includes Portal certification, SMS registration, MAC Seamless Authentication, terminal quantity control, set management and typical network plowing.

Hospital WiFi Certification Program Network
WRD Technical Program

Hospital WiFi Certification Program

View the full program of Wireless Coverage of Medical Institutions, NATSHEL_AUTH_GATEWAY, a unified accreditation platform, employee and visitor certification and self-help registration.

Download Project Document ⁇

Backstage maintenance ongoing

Relevant programme information

The identification, permission, interface conditions and practices are organized according to the enterprise’s campus project, which helps you to determine further access routes.

Access Program I'll be right back. Telephone counselling