Profile

CommunityPlatform_1350x900.jpg

Richard Letts

AVP /Executive Director, Networking and Communication Services,
University at Buffalo-SUNY

University at Buffalo-SUNY
Buffalo, NY
United States

Edit My Profile


My Content

1 to 20 of 30 total
Posted By Richard Letts 04-29-2024 11:30:13 AM
Found In Egroup: Wireless Local Area Networking
\ view thread
At another place we used Meraki Access points with a portal from Splash Access to configure Wireless Private networks for IoT in residences. Resnet is not the same as the campus network. iPSK is certainly easier to support and way less-fraught than mac address-based authentication. SpashAccess Integrates ...
Posted By Richard Letts 04-10-2024 01:02:26 PM
Found In Egroup: Wireless Local Area Networking
\ view thread
What Chuck said. In the past we have defined coverage as having a received signal of -65dBm or better, and that is what Heat maps from many wireless tools generate. This was okay when people only had one Wi-Fi device, and googling aswers in class was the biggest use. Even I have three Wi-Fi connected ...
Posted By Richard Letts 03-27-2024 12:42:59 PM
Found In Egroup: Communications Infrastructure and Applications
\ view thread
Can you provide a reference/URL to the order – when I search for 10-72A1 I do not get anything that would seem to apply for the general removal of POTS lines. We had a discussion with Verizon in our area and they didn't give us any indication the removal of POTS was imminent. The areas of concern ...
Posted By Richard Letts 02-20-2024 02:08:00 PM
Found In Egroup: Communications Infrastructure and Applications
\ view thread
This is a concern – personal contacts at other places have seen price increase in the order of 8x, 10x, and [sufficiently high I am suspecting hyperbole]. Mostly this is because the additional features now require higher license tiers. In terms of CUCM/ESXi being an approved combination: I'm going ...
Posted By Richard Letts 02-09-2024 11:13:27 AM
Found In Egroup: Network Management
\ view thread
Who is the covered entity? This will determine the scope of the problem. Is your institution engaging a third-party managed healthcare organization to operate a clinic on University premises? If so they are responsible for HIPPA compliance, and not the institution. If you are providing network services ...
Posted By Richard Letts 01-26-2024 01:00:36 PM
Found In Egroup: Network Management
\ view thread
If you have lots of include: directives in your SPF record, e.g. for brightspace, salesforce, outlook, google, servicenow, Zendesk, etc. then at any point your SPF record can be blown up by that included SPF record including more SPF domains than it did previously and you have no control over that. ...
Posted By Richard Letts 01-26-2024 07:28:33 AM
Found In Egroup: Network Management
\ view thread
What Hunter said, I'd strongly suggest putting them in their own /24 and creating the necessary ARIN registrations so when they perform security scans of the Internet sites they are scanning can determine that this is a recognized university research group rather than a student being overly inquisitive. ...
Posted By Richard Letts 01-18-2024 11:06:45 AM
Found In Egroup: Network Management
\ view thread
One item to consider if you are looking at large-scale NAT is providing IPv6 on the same networks (with suitable firewall rule blocking inbound traffic). Many services from cloud providers are IPv6 enabled; experience elsewhere showed that about 50% of the traffic (bps) from ResNet was IPv6, which ...
Posted By Richard Letts 01-03-2024 11:05:49 AM
Found In Egroup: Network Management
\ view thread
At the Educause '23 roundtable Eric Kenny (HUIT TPS) did a presentation on this topic – borrow (citing your sources) some for your strategy? [Perhaps someone can provide a reference for the presentation slides, because I was transitioning jobs at the time] Richard J. Letts Assistant Vice President ...
Posted By Richard Letts 11-14-2023 10:42:00 AM
Found In Egroup: Wireless Local Area Networking
\ view thread
Your access points are NOT the only 2.4/5GHz game in town, and need to consider people using their cellular devices as mobile hotspots, having wearables (Apple watch) that use 2.4 and 5GHz to communicate, or bluetooth headsets. These are on all of the time, syncing alerts and notifications, probably ...
Posted By Richard Letts 06-08-2023 07:12:48 AM
Found In Egroup: Communications Infrastructure and Applications
\ view thread
What Julian said. On one of our campuses I got given responsibility for fire alarm panels earlier this year. We moved the primary side to a [public safety] IP network, and the secondary side to a 4G cellular service and took them completely off POTS. The panels call home to the monitoring company on ...
Posted By Richard Letts 05-09-2023 07:01:36 AM
Found In Egroup: Communications Infrastructure and Applications
\ view thread
The Purdue System is about 70K students across three institutions. The main internet connectivity comes off the main campus Campus Internet: 20Gbps looking at moving to 100Gbps following the research network upgrade Resnet Internet: 20Gbps, about to be upgraded to 40Gbps each Research (Internet2): ...
Posted By Richard Letts 03-23-2023 10:25:05 AM
Found In Egroup: Communications Infrastructure and Applications
\ view thread
I am not a QSA/PCI Auditor, so below is my current understanding. You have to think about the call handling path rather than the technology in use. This is a good reference for folks; it has a lot of pictures in it that helps explain things clearer than lots of words. https://listings.pcisecurit ...
Posted By Richard Letts 03-01-2023 02:53:25 PM
Found In Egroup: Network Management
\ view thread
I hope to make the discussion: We have just been through a rapid deployment of Cisco/Meraki in our residences (from on-prem cisco/Catalyst or whatever they are calling it this year) (~3800 access points swapped in <2 months with the students around.) Campus we're sticking with on-prem controllers ...
Posted By Richard Letts 02-14-2023 04:38:50 PM
Found In Egroup: Network Management
\ view thread
+1 for Merkai (or any other cloud-managed solution, including Cradlepoint): having a cloud-management platform that the device calls-home to really helps with the remote support & takes care of the complexity of equipment configuration. Fortunately I've only had to deal with this on a state-wide basis, ...
Posted By Richard Letts 01-23-2023 01:06:40 PM
Found In Egroup: Communications Infrastructure and Applications
\ view thread
(Starting a new thread for this topic) Brent Korman asked: Any Universities undertaking the deployment of Teams for calling purposes – what terminology did you use for on-system "Teams Only" calling as opposed to PSTN-cable direct routing of calling to and from the Teams application? We have MS-Teams ...
Posted By Richard Letts 01-11-2023 04:24:28 PM
Found In Egroup: Wireless Local Area Networking
\ view thread
I'm assuming you're looked at the somewhat dated: https://www.cisco.com/c/en/us/td/docs/wireless/controller/technotes/8-7/b_wireless_high_client_density_design_guide.html Aruba has more polished: https://community.arubanetworks.com/browse/articles/blogviewer?blogkey=7bc8710b-bc01-4229-a170-41f8f5a5e6f8 ...
Posted By Richard Letts 12-19-2022 10:16:06 AM
Found In Egroup: Communications Infrastructure and Applications
\ view thread
We have finally started our Wifi4 to 6e upgrade for campus, and I'm now looking at the next pain point for users: Cell Service, especially in new buildings. Has anyone issued a RFI/RFP for providing 5G mini/micro cell service within academic buildings or residences that you might be willing to share? ...
Posted By Richard Letts 06-08-2022 11:50:09 AM
Found In Egroup: Network Management
\ view thread
a) Spreadsheets -- flexible and good reporting, if a pain to manage. b) Custom written application -- only good if your organization has a development team willing to own this c) Commercial software Inventory management module in ITSM tool -- ServiceNow has a fairly decent inventory management module, ...
Posted By Richard Letts 05-23-2022 04:18:05 PM
Found In Egroup: Network Management
\ view thread
My 2 cents -- make the hosts inside the data center on RFC1918/private IPv6 addresses and if they need to be publically reachable then front-end them with a load balancer like an F5/Nginx/etc. (pick your load balancer). That reduces your attack surface. Also, all of your certificates are now on the F5, ...