April 10, 2025
Groups
Our brand-new Groups feature makes it easy to manage multiple use cases by clearly defining user personas. Now, you can:
- Differentiate User Categories: Assign unique Internet Plans, VLANs, and policies to specific user groups like Guests or Employees.
- Bulk Update Internet Plans: Quickly update the plan and policy for every user in a group, overcoming previous limitations.
- Gain Enhanced Reporting: Filter analytics by Groups to get a sharper picture of how each user category behaves.
Key Highlights:
- Automatic User Assignment: Streamline user onboarding by automatically assigning them to Groups based on flexible, hierarchical rules (for example, routing corporate IdP-verified users directly to the ‘Employees’ group).
- Simplified Policy Management: Effortlessly manage Internet Plans and access policies – including group-based limits on the maximum number of concurrent devices per user.
- Flexible RADIUS Attributes: Apply custom RADIUS attributes either per location or across your entire network.
- Powerful APIs: Use comprehensive APIs to orchestrate and sync Groups with external systems, letting you dynamically assign users (like IoT devices) to their proper group.
With Groups, you can keep your user base organized, simplify policy management, and gain clearer insights into every category of user.
Existing customers interested in the new Group feature should contact their Customer Success or Support team, as an update to the RADIUS configuration might be required.
Multi-SSID
While minimizing SSIDs is common practice, creating dedicated experiences for specific user categories or scenarios can greatly enhance user experience. Our enhanced Multi-SSID feature allows to deploy multiple captive portal onboarding experiences across different SSIDs within the same network (e.g., Conference Wi-Fi vs. Guest Wi-Fi).
SSIDs also play a key role in PPSK management because each user’s dedicated passphrase is tied to a specific SSID. Thanks to the new centralized SSID inventory, you can update an SSID’s name in bulk effortlessly and still keep every passphrase working perfectly on that network
RADIUS-based MAC-less PPSK
We’re excited to announce extended support for RADIUS-based MAC-less PPSK. This significant enhancement expands Cloud4Wi’s PPSK solution , combining the simplicity of MAC-less user onboarding with enterprise-grade capabilities:
- Massive Scalability: Seamlessly scale your Wi-Fi infrastructure to support millions of users effortlessly.
- Refined Access Policies: Enforce sophisticated access policies, including limiting concurrent devices per PPSK.
- Comprehensive Reporting & Logs: Gain full visibility into connectivity logs and compliance reporting, greatly enhancing your monitoring and troubleshooting capabilities.
This feature is currently supported for: Cisco Catalyst, Cisco Meraki, Aruba Central and Juniper Mist. Coming soon Ruckus DPSK3!
Personal Area Network (PAN) Enforcement
A key benefit of PPSK is delivering a home-like connectivity experience in MDU environments. PAN enforcement enables secure, simplified device connectivity on shared networks by assigning dedicated network segment identifiers, allowing user devices to communicate privately while remaining isolated from others
PAN can be enforced using unique VLANs or by leveraging vendor-specific Layer 3 segmentation tech (like Meraki WPN, Cisco UDN, or Aruba PWN).
Another handy feature is specifying each user’s ‘Home Network,’ letting you enforce specific PAN values (e.g., VLANs) only when they’re on certain networks, and otherwise defaulting to the group’s VLAN if needed.
At this time, PAN enforcement only works with RADIUS-based PPSK, and PAN orchestration is possible exclusively via REST APIs. However, PAN is fully integrated into Cloud4Wi’s PPSK solution, so you can start benefiting from it right away.
Miscellaneous Updates
- Sponsor validation is now disabled by default for SAML-based users, streamlining your authentication processes.