You're done, right? Not so fast.
How are you managing (or are you?) the computing devices that connect to the WLAN? Are the operating systems locked down to only allow essential processes and applications to run? Can your users install any software they want on their laptops, desktops, etc.? Are you managing both the wired and wireless interfaces to ensure that only one can function at a time? And what happens when that computing asset, let's call it a laptop, leaves your "secure" WLAN environment, connects to an open wireless network (like the ones at airports or coffee shops) and then connects back to your "secure" WLAN? Is the laptop even the same one that left the week before? Would you know?
Below you will find a list of selected deployment aspects worth considering.
- Multi-factor authentication. Do you really think alphanumeric passwords cut it anymore? Did they really ever?
- Machine certificates. All the devices connected to your network are controlled by you? Really?