I. BACKGROUND OF THE PROJECT
As business information continues to evolve and the trend towards mobile officeing has led many enterprises to start adding more accessible, easy and mobile wireless access networks to meet their development needs, building on old cable connectivity. This allows both insiders and visitors to easily access enterprise local area networks and Internet sites through wireless networks at all times in offices and business parks, thus enabling them to handle various business processes.But traditional wireless access means users need to know their WiFi passwords or not to have them directly into the wireless network, and there are not only some risks to the company’s network security, but also a lack of stability in its operation and control over visitors. More importantly, in large businesses, it is not possible to establish a virtuous interaction with staff and visitors through WiFi that does not play its part, thereby reducing the effectiveness of WiFi.
II. NEEDS ANALYSIS
NATSHEL_BRAND to introduce a wireless certification solution suitable for enterprises in response to the current problems of businesses with their own wireless network construction and WiFi certification, which needs to meet the following requirements:1. Support for multiple authentication methods, including text messages and 2-D authentications for visitors, and static user name password certification for internal staff;
2. Certification may be carried out in conjunction with existing enterprise systems such as OA/CRM, and the employees of an enterprise can be certified online through existing accounts;
3. Allows high customization of the certification page, the certification successful page and supports multiple web design languages to achieve the need for free design of the certification page;
4. The enterprise wireless network can be divided into two SSIDs, one for employees and the other for visitors, with different SSIDs being able to send different certification pages;
5. To be easily managed, enabling control management of access time, upload-down speed and validity for users accessing wireless networks, with different user attributes adopting different de-access strategies;
6. The successful certification allows for mandatory roll-out to the Enterprise Officer Network or other designated websites, and effective branding and promotion;
7. Support secondary development, which will allow the future integration of existing enterprise systems such as OAs, CRMs and other systems to achieve authorization management for visitor access;
8- Easy deployment, simple maintenance and easy management of the overall equipment, with a convenient extension upgrade to increase coverage and number of users in the future.
III. PROJECT-DINATION PRINCIPLES
NATSHEL_BRAND, based on years of experience in product operations and a deep understanding of the operational needs of wireless certification networks, responds to the need for Wireless certification by enterprises and combines existing products“NATHHEL_BRAND Business Wireless Certification Solutions”From the perspective of building a manageable and operational wireless certification network, work is being done to build an efficient, reliable and low-cost business wireless certification network for clients, which will allow them to deploy easily, reliably and efficiently. Based on user needs and user network characteristics, NATSHEL_BRAND provides programme design based on the following principles:1. High reliability, reliable operation of wireless networks is a key guarantee for the proper functioning of access certification systems, selection of high reliability network products in network design and rational design of network architecture suitable for 7×24 uninterrupted operation;
2. Technological sophistication and utility, while ensuring that wireless access certification is met, should reflect the advanced nature of the system, taking into account the current state of application and future trends in the system and enabling easy extension of functionality;
3. Standard openness, support for network agreements of international common standards and the Portal protocol norms for mobile WLAN operations in China, which will help to ensure smooth connectivity with other networks and equipment and future expansion of networks;
Flexibility and scalability, allowing networks and equipment to be expanded and upgraded smoothly in line with future business growth and changes, and adjusting network structures and existing equipment to the maximum extent possible during expansion and upgrading;
5. Manageability, centralized monitoring and analysis of network conditions, with statistical analysis and management functions for access to users, equipment, networks, traffic etc.
IV.Programme narrative
NATSHEL_BRAND, combining the wide range of wireless certification market needs, introduces NatShell Portal Wireless Certification System and wireless network products such as AC, AP, to maximize the availability of wireless authentication markets. Through the NatShell Portal series, users can easily form a wireless certification network that enables us to perform various functions such as WEB certification, information transmission, user administration, etc.4.1Program Top-top

NATSHEL_BRAND wireless authentication systems consist mainly of mobile terminals (smart phones, tablets, notebooks, etc.), AC controllers, AP, NatShell Portal servers, NatShell Radius servers and text message gateways. The roles they play in the overall programme are as follows:
Mobile terminals: users connect to the WLAN wireless network at the mall using mobile terminal devices such as cell phones, tablets and so on;
2. AP: Wireless access points to achieve wireless signal coverage within a given area;
3. AC controller: central control over all AP equipment and establishment of a unified SSID, as required;
NatShell Portal server: dock with AC devices to achieve pop-up and wireless authentication processes for Portal certification pages, which support custom design in any web language;
Text message gateways: responsible for sending password-based text messages to cellular users so that they can be Wirelessly authenticated by entering a password;
NatShell Radius: can establish a suite and account that will enable authentication of the password information on the accounts of users connected to the Internet;
Enterprise AD domain server: Business employees are certified through AD domain accounts and require NATSHEL_BRAND to be able to real-time account information in the field server database.
4.2 Programme specialPoints
1) Wireless + Wireless Uniform Access CertificationAll access terminals are authenticated, and both cable and wireless are certified by PORTAL, which is redirected to Portal certification page when the user connects to the network when a request for access to http is launched;
2) Authentication Page Customisation
Both certification pages/accreditation success page can be customized to support any language of web design and achieve good page performance; the certificate page and the certification success page are free to design the hosting of corporate advocacy and notification messages;
3) based on the AC setting of two different SSIDs, corporate SSIDs are hidden and only employees can access the Internet by way of an AD domain account; visitors to SSID are open and business visitors can access the Internet through a text message or a key login certification;
4) achieves different certification pages for staff and visitors based on the different Portal authentication page URL parameters of AC for different SSIDs;
5) Page Jump
When visitors complete SMS certification or staff members complete certification, they automatically jump to the Enterprise Officer Network or other designated sites to promote and enhance branding;
6) Multiple ways of authentication
Besides SMS certification, AD domain authentication, NatShell Portal can also provide one key login, OpenID and micro-letter authentication to provide more options for Wireless Certification of a business;
7. Classification of Internet Access Strategies
Business visitors authenticate the Internet by texting on their cellular phones, and business employees authenticate the Internet by entering AD domain accounts. The two categories of users adopt different access strategies that can differentiate and limit the speed and length of access;
8) User management
A strong user management function that allows for the setting up of uploads, download speed and online duration of users who authenticate text messages on their cell phones, as well as the management of wireless access user speed, online user numbers, Internet access time, etc.;
9) Support for Visitors Scanning Certification
Assisting in scanning: the best way to authenticate visitors online
Visitors are authorized on a one-to-one basis, using a swathe between visitors and interviewees. This applies to temporary visitors from companies with high network security requirements. When visitors enter the cyberspace, they need to scan and authorize them before they can use the network.
Advantages of this authentication method:
1. One-on-one certification authority to strengthen enterprise audit retrospectives of visitors and interviewees;
2. Users are allowed to use only within the prescribed authorized time.
10) Support for Secondary Development
NATSHEL_BRAND Portal and Radius systems provide secondary development interfaces that allow easy access to existing systems and databases of the docking enterprises, thereby achieving additional business functions.