WIRELESS COMMUNICATIONS POLICY

1.0 Purpose

This policy prohibits access to Georgia Highlands College networks via unsecured wireless communication mechanisms. Only wireless systems that meet the criteria of this policy or have been granted an exclusive waiver by the Information Technology Department are approved for connectivity to Georgia Highlands College's networks.

2.0 Scope

This policy covers all wireless data communication devices (e.g., personal computers, cellular phones, PDAs, etc.) connected to any of Georgia Highlands College's internal networks. This includes any form of wireless communication device capable of transmitting packet data. Wireless devices and/or networks without any connectivity to Georgia Highlands College’s networks do not fall under the purview of this policy.

3.0 Policy

3.1 Register Access Points and Cards

All wireless Access Points / Base Stations connected to the Georgia Highlands College network must be registered and approved by the Information Technology Department. These Access Points / Base Stations are subject to periodic penetration tests and audits. All wireless Network Interface Cards (i.e., PC cards) used in College laptop or desktop computers, PDA’s, or other electronic devices must be registered with the Information Technology Department

3.2 Approved Technology

All wireless LAN access must use College-approved vendor products and security configurations.

3.3 Account Creation

All faculty, staff and students that wish to use the Georgia Highlands College wireless network must request a RADIUS account in order to log into the wireless gateway. The wireless gateway acts as a proxy for all wireless traffic. All wireless authentications are logged by the RADIUS accounting server.

4.0 Enforcement

Any employee found to have violated this policy may be subject to disciplinary action, up to and including termination of employment.

5.0 Definitions

Terms Definitions

User Authentication A method by which the user of a wireless system can be verified as a legitimate user independent of the computer or operating system being used.

6.0 Revision History

09/16/03 Policy origination rl
12/08/04 Policy review jp
11/09/05 Policy review rl