Solution Highlights:
Solution type and market place
Multilevel service area deployment with enterprise capabilities.
- Airports
- Large buildings with public areas
- Parks, recreation outdoors, ski resorts
- Marinas, harbors
Main advantages and features of Colubris based solution
- Full scale secure WLAN solution
- Ability to create a number of user groups (profiles) with different privileges and traffic delimitation both on wireless and wired parts of the network
- Different levels of security with support of authentication protocols up to WPA2-enterprise
- Multiple authentication methods
- Supports several QoS standards to ensure VoIP quality
- Simplified management and installation of distributed Access Points
- Mobility: L2, (L3 mobility and L2 fast authentication are optional)
- WLAN scalability
- Controller, Firewall, Router, SNMP management, and real time monitoring integrated together inside of MSC5500 (Multi Service Controller)
- Access Points available for indoor and outdoor installations
- Indoor and outdoor units can be easily combined under a single controller AP management
- Platform has optional WiFi (indoor and outdoor) clients to serveremote customers beyond standard WiFi card operating range
- Standard 802.3af POE is supported over the entire platform
Solution diagram

Typical operation scenario
- ColubrisMSC5500 Controller allows the whole wireless LAN to be configured and controlled from one device.
- Access Points can be assigned to different groups with a varietysettings for each
- Setting of Virtual Service Communities (VSCs) will split both LAN and WLAN users to various segments with particular security and QoS properties for each.
- Any or all VSCs can be encapsulated to a dedicated VLAN for demarcation of the traffic on Layer 2.
- Authentication of users can be set to MAC based, Local users database, or a RADIUS server. It allows proper VSCs for the range of devices connected to WLAN.
- The wireless security settings can include WEP, WPA, WPA2 methods of handshake with AES encryption.
- Routing, NAT, and Firewall capabilities allow connection to the Internet without overloading the core router for certain groups of users.
- Dual radio MAP 330 access points are able to extend WLAN either over wired switched LAN or via WDS connectivity. These helpful features give us freedom and flexibility of intended coverage.
Virtual Service Community (VSC) examples
“Guest”access
- VSC 1
- SSID “Guest”
- Designed for guest accessing Internet (access to enterprise LAN is prohibited)
- Traffic isolated within VSC1 (VLAN if necessary), access control, and best effort priority
|
Authentication flow Guest Device MAP 320/330 AP MSC 5200 Controller | |

|
|
IP flow Guest Device MAP 320/330 AP MSC 5200 Controller Internet | |
Virtual Service Community (VSC) examples
Wired “Guest” access
- VSC 2
- VLAN xx
- Designed for guest accessing Internet (access to enterprise LAN is prohibited)
- Traffic isolated within VSC2 (VLAN), access control, and best effort priority
|
Authentication flow Guest Device MSC 5200 Controller | |
 |
|
IP flow Guest Device MSC 5200 Controller Internet | |
Virtual Service Community (VSC) examples
VoIP device access
- VSC 3
- SSID “Voice”
- Designed for VoIP devices connection
- Traffic isolated within VSC, high priority QoS, and bandwidth control
|
Authentication flow WiFi VoIP Phone MAP 320/330 AP MSC 5200 Controller | |
 |
|
IP flow WiFi VoIP Phone MAP 320/330 AP MSC 5200 Controller Internet VoIP Registrar | |
Virtual Service Community (VSC) examples
Video surveillance device access
- VSC 4
- SSID “Video”
- Designed for video device connection
- Traffic isolated within VSC, high priority QoS, and bandwidth control
|
Authentication flow Camera WCB 200 Client MAP 320/330 AP MSC 5200 Controller | |
 |
|
IP flow Camera WCB 200 Client MAP 320/330 AP MSC 5200 Controller Internet | |
Virtual Service Community (VSC) examples
Enterprise wireless network users (company staff)
- VSC 5
- SSID “Employee”
- Designed for employee PCs and PDA connections
- WPA2 enterprise security, traffic isolated within VSC (VLAN if necessary) , and bandwidth control
|
Authentication flow User PC MAP 320/330 AP MSC 5200 Controller RADIUS Server | |
 |
|
IP flow User PC MAP 320/330 AP MSC 5200 Controller LAN Core router Internet | |
Virtual Service Community (VSC) examples
Enterprise wired network users (company staff)
- VSC 6
- VLAN
- Designed for additional security control of employee PCs connections
- Traffic isolated within VSC (VLAN), bandwidth control
|
Authentication flow User PC MSC 5200 Controller RADIUS Server | |
 |
|
IP flow User PC MSC 5200 Controller LAN Core router Internet | |
Multi ISP support
- Internet access availability for subscribers of different ISPs on the same WLAN (distributed Hot-Spot)
- Authentication based on “Realm” ( prefix or suffix ) specified in the username (login)
- Session history available for subscribers of all ISPs
- Operation of different providers (ISPs) through the same physical Colubris infrastructure extends sales opportunities for the infrastructure owner
- RADIUS server required

Solution components and block diagrams

Required equipment list
- Colubris MSC 5500 Controller
- Colubris MAP330/320 Access Points
- Colubris Power Injectors (1, 6, 12 ports option)*
- Colubris 5 VDC Power Supply**
- Communication Networking Equipment and RADIUS/WEB/Accounting servers are not included
* for POE power supply for MAP320/330
** for on-site power supply for MAP320/330
Recommended services
Software Maintenance Service: Technical Support: Same-business-day response during the customer's principal period of maintenance (PPM) * PPM is defined as Monday - Friday, 8 am - 5 pm, customer local time. Software Support: Bug fixes, software maintenance releases and feature releases Hardware Support: Software Maintenance Service does not provide any form of hardware support
Basic Servic: Technical Support: Same-business-day response during the customer's principal period of maintenance (PPM) * PPM is defined as Monday - Friday, 8 am - 5 pm, customer local time. Software Support: On-demand bug fixes and support of the as-built software revision the product originally shipped with. Hardware Support: Factory repair & return support with a 30 calendar day turnaround from the date of Colubris' receipt. Important Notes: Basic Service must be purchased while the original term product warranty is still in effect. Basic Service commences after the original term, 1 year product warranty expires.
Gold Support: Technical Support: Same-day response during the customer's contracted period of maintenance (CPM) * CPM is defined as 24 hours per day, 365 days per year. Software Support: Bug fixes, software maintenance releases and feature releases Hardware Support: Next-business-day shipment of an advanced replacement unit
Solution capabilities, scalability, and robustness
- Coverage – up to 300 meters for open space areas per Access Point. Up to 200 controlled APs per controller
- Capacity – up to 2000 Access Users
- Authentication – RADIUS based WPA2 enterprise authentication (local based Web interface authentication optional)
- Extensive client management features available through customer WEB/Authentication server.
Technical documentation and supporting materials
Colubris MSC 5xxx series Controllers - http://www.winncom.com/pdf/DS_MSC_5000.pdf
Colubris MAP 3xx series Access Points - http://www.winncom.com/pdf/ds_map.pdf
Additional Colubris Products and Services - http://winncom.com/products/manuf/805100/list.html
* Users Guides are available via Partners Portal