Forums

Resolved
0 votes
Hi i want to do a school setup, this is the scenario today.

Locations

* 2 buildings with 2 separate LANs/WANs. One has arround 700 students+staff, the other one has arroud 500.


Equipment

* Draytek Vigor 2925N Router (VLANs, Centralized AP Managment, Web Filter)
* Draytek VigorAP810 Access Points (single band, radius capable, managed centrally by router)
* HP switches (managed) and some legacy unmanaged switches that we are replacing as needed


Setup

* 2 VLANs per building. One for wired devices, one for wireless devices.
* We do bandwith control by MAC address in router
* We have 1 SSID with general password
* We manage APs centrally
* We dont have any kind of server.
* Testing Meraki as a MDM.


What we want to do is achieve 1:1 BYOD in short/medium term. For this and after some research i know what i need to do is:

1) Setup an Active Directory and sync every login to it (google apps, in house systems, booking resources, etc).
2) Put in place several SSIDs and tie them to different VLANs (students, teachers, staff, guests)
3) Setup a radius server synced to Active Directory (or google apps) for studens, teachers and staff logins. It should assign them to the proper VLAN and determine bandwith limits. Maybe even a limit on the ammount of devices (MAC addresses) per user than can be logged simultaneusly.
4) Setup a NAS for shared media and files, for every VLAN (teachers, staff, etc) so they cant see each other files
5) We dont have any network monitoring put in place. This is a must and one of the first things i want to setup to save us troubleshooting time.
6) Router is doing bandwith control and web filtering (buying a web content filter card anually provided by draytek) at the moment.

My question: is ClearOS the way to go to solve most of what i want to do from 1 through 5 and to migrate 6 to?

Any hints? Im not the network manager but im trying to sort out what are the tools i need to get the setup i want. Then hand to our sysadmin guys for setup.

Another question, assuming ClearOS got me covered on almost anything. What kind of server should i buy for each building (700/500 users, with radius, mediaservers, bandwith managment, network monitoring, etc).

Thank for reading and helping.

Sebastian
Sunday, August 07 2016, 05:52 PM
Share this post:
Responses (1)
  • Accepted Answer

    Tuesday, August 09 2016, 05:09 PM - #Permalink
    Resolved
    0 votes
    Can I suggest that with that size of system you may want a bit of commercial support and you may want to aim your question at the sales team? There is some information about tuning the proxy for larger numbers of users on this site but with AD, VLANs and so on, your configuration is getting advanced.

    About your Q2, that will probably depend on your WiFi hardware and switching hardware, if they can handle VLANs, or if you mean port based VLANs it may be OK with multiple NIC's or multi-port NICS in your server.
    The reply is currently minimized Show
Your Reply