Security Basics mailing list archives

Re: Question about hotel security design


From: yankl <yankl () yankele com>
Date: Thu, 7 Apr 2005 22:39:51 -0400

On Wednesday 06 April 2005 12:42, nite wrote:

Im not sure exaclty how its configured, or what system/device is used
but some use a VPN style setup... and some of the time they work using
Layer 2 security. (ie.  your unique MAC addy)
To my knowledge at least. I'd be intrested in talking to someone who
works at a hotel and could explain the system they use....

If you have DNS/ICMP you can create a tunnel and use the internet just
fine. Checkout ptunnel:
http://www.cs.uit.no/~daniels/PingTunnel/index.html
You can also tunnel SSH/VoIP over DNS but its complicated.
Good luck,
  -Aaron Grattafiori

ricci wrote:
Hello All,

    Can someone tell me how to design and configure the hotel room security
control? As what I have experience before in a hotel, I will only be
permitted to access to the Internet after I pay using the credit card. But
I sometimes found that I have been assigned with IP addresses but cannot
access to any port. When I access to the web port, it will bring me to
the payment page before I can access to the web.

    Can someone tell me how that is configured? What mechanism is used and
what device is used?

    Thanks.

Ricci


--------------------------------------------------------------------------
- Earn your MS in Information Security ONLINE
Organizations worldwide are in need of highly qualified information
security professionals.  Norwich University is fulfilling this demand
with its MS in Information Security offered online.  Recognized by the
NSA as an academically excellent program, NU offers you the opportunity
to earn your degree without disrupting your home or work life.

http://www.msia.norwich.edu/secfocus_en
--------------------------------------------------------------------------
--

---------------------------------------------------------------------------
Earn your MS in Information Security ONLINE
Organizations worldwide are in need of highly qualified information
security professionals.  Norwich University is fulfilling this demand with
its MS in Information Security offered online.  Recognized by the NSA as an
academically excellent program, NU offers you the opportunity to earn your
degree without disrupting your home or work life.

http://www.msia.norwich.edu/secfocus_en
---------------------------------------------------------------------------
-

Hi All,

I work for a major hotel chain and have high speed internet connection in 
rooms. Have had several system installed in my hotel over several years. At 
some point in the past one of the companies went bankrupt on me so to make 
system work I needed to figure out how it's tics. 

Simplest explanation is as following:

Network: 

T1 connects to a server (Currently Nomadix at the time YesWare server). Server 
connects to a DSLAM (Currently Paradime at the time Elastic etherloop 100). 
DSLAM over cat3 to a individual DSL modem (now paradime, then ether loop).
You can skip DSLAM/DSL modem if you can bring cat5 to rooms. Use switches in 
this case. 

Process of authentication:
User must open the internet browser and access any web site. Server proxy 
request to authentication script. Script checks if MAC address of the node is 
in database. If MAC in the database script allowed connection to internet. If 
not get authentication and payment and writes MAC to database.

Server also acts as DHCP and DNS server in addition it can be connected to 
property management system to get charges assign to room.  IP address are 
NATed, however one must be carefull with VPN connection, since in some cases 
server/script must bypass routable (stick) IP address to the node. 


-- 
Yankl
Tiny IT guy.
100 % Micro$oft free.
Registered linux users 181086
URL: http://yankele.com
-----------------------
To mess up a Linux box, you need to work at it; to mess up your Windows
box, you just need to work on it.

---------------------------------------------------------------------------
Earn your MS in Information Security ONLINE
Organizations worldwide are in need of highly qualified information security 
professionals.  Norwich University is fulfilling this demand with its MS in 
Information Security offered online.  Recognized by the NSA as an 
academically excellent program, NU offers you the opportunity to earn your 
degree without disrupting your home or work life.

http://www.msia.norwich.edu/secfocus_en
----------------------------------------------------------------------------


Current thread: