Mobile Cloud Networking and Mobility Control 113
“zero configuration”: the controller is capable of substituting the
mobile terminal to provide particular properties. For example, the
controller can intercept a user’s electronic messages and send them
using its own SMTP, in the knowledge that the network to which
the mobile is connected does not accept the messages of the user who
is a guest of the company. Another example is the use of a printer
from a mobile phone. The controller can load a virtual driver and
enable the mobile to print locally. Finally, the controller can manage
solutions to enable the user to use passwords to connect to the
access point.
If we examine the authentication more specifically, the most
conventional method is a window in which the client enters his/her
username and password, using the IEEE 802.1x standard, for example.
Another solution is access by authentication on another site, such as
Google or Facebook, or on a payment server. Once the external
authentication has been performed, a specific protocol such as OAuth
can send the authentication back to the controller. One final solution
may be to ask the user to fill out an information page in order to gain
access.
It should be noted that in the last two scenarios, the client must be
able to connect to the network without authentication. Thus, the access
point must allow him/her to pass on a specific, provisional
authorization of the controller. This solution is often an option in
authentication systems. However, it is somewhat risky, because once
he/she is authenticated on an external server, the client can continue to
navigate without returning for a firm authentication on the local
controller.
Figure 5.9 presents the two solutions for application controllers:
the first is physical and the second virtual. The advantage of the
virtual controller is that it uses the resources which are necessary at
any given moment – i.e. a great deal of resources at peak times and
practically no resources during trough periods.
www.it-ebooks.info
“zero configuration”: the controller is capable of substituting the
mobile terminal to provide particular properties. For example, the
controller can intercept a user’s electronic messages and send them
using its own SMTP, in the knowledge that the network to which
the mobile is connected does not accept the messages of the user who
is a guest of the company. Another example is the use of a printer
from a mobile phone. The controller can load a virtual driver and
enable the mobile to print locally. Finally, the controller can manage
solutions to enable the user to use passwords to connect to the
access point.
If we examine the authentication more specifically, the most
conventional method is a window in which the client enters his/her
username and password, using the IEEE 802.1x standard, for example.
Another solution is access by authentication on another site, such as
Google or Facebook, or on a payment server. Once the external
authentication has been performed, a specific protocol such as OAuth
can send the authentication back to the controller. One final solution
may be to ask the user to fill out an information page in order to gain
access.
It should be noted that in the last two scenarios, the client must be
able to connect to the network without authentication. Thus, the access
point must allow him/her to pass on a specific, provisional
authorization of the controller. This solution is often an option in
authentication systems. However, it is somewhat risky, because once
he/she is authenticated on an external server, the client can continue to
navigate without returning for a firm authentication on the local
controller.
Figure 5.9 presents the two solutions for application controllers:
the first is physical and the second virtual. The advantage of the
virtual controller is that it uses the resources which are necessary at
any given moment – i.e. a great deal of resources at peak times and
practically no resources during trough periods.
www.it-ebooks.info
