Premium Services

Nile Guest Service

7min

Introduction

In today's digital landscape, offering secure and seamless Internet access to guests is a fundamental expectation in various environments, including enterprises, retail spaces, educational institutions, and public venues. Traditional guest network setups often involve creating separate SSIDs, VLANs, and login portals, which can be cumbersome and insecure. These setups often expose sensitive data and leave networks vulnerable to lateral movement and other threats.

Nile Guest Service provides a modern, secure solution as part of the Nile Access Service (Network as a Service, NaaS). This service allows a wide range of guest devices—including those belonging to customers, partners, and employees—to access the internet securely while keeping them isolated from the organization's internal network.

Document image


Why Choose Nile Guest Service?

Nile Guest Service offers a range of benefits, enhancing both security and user experience:

  • Zero Trust Security
    All guest traffic is completely isolated from corporate resources, preventing lateral movement and ensuring no unauthorized access.
  • User-Friendly Experience
    Provides a smooth, hassle-free experience for guests, minimizing the need for help desk support.
  • Operational Efficiency
    Simplifies the management of guest networks by eliminating the need for on-premises NAC, VLANs, DHCP, subnetting, and other complex firewall configurations.
  • Scalable Solution
    Easily adapts to meet the demands of multi-site deployments without adding complexity.
  • Compliance Made Easy Offload concerns about DMCA and other compliance issues with secure guest access management.

Document image


How Does It Work? Nile Point of Presence (PoP)

The Nile Guest Service leverages a cloud-based Point of Presence (PoP) closest to your location, ensuring low latency and optimal performance for activities like video conferencing. Guest traffic is securely tunneled from your site to the Nile PoP and then directly to the internet, keeping your internal network safe.

Simple Configuration

Setting up the Nile Guest Service is straightforward. Once you sign up, essential components like the DHCP server, client subnets, segment, and SSID are automatically provisioned through the Nile Customer Portal. You simply need to edit the SSID name on the wireless page and save the settings. Additionally, you can use your own DNS server IP addresses if preferred.

Note: Ensure that UDP port 6081 and port 443 are open (outbound) on firewalls for necessary communication between the Nile Service Block (NSB) Gateway and the Nile Portal.

Guest User Connectivity and Access Control

Guests connecting to the Nile Guest Service SSID are securely authenticated and isolated from your corporate network. All guest traffic is tunneled from the customer site to the Nile PoP before being sent to the internet.

The Nile Guest Service offers two authentication modes:

  • Click-Through
    Guests simply accept the terms and conditions to connect.
  • Sponsored Guest Login (Email Approval)
    Guests enter their names and email addresses, and a sponsor must approve their access via email.

Monitoring and Visibility

Administrators can monitor connected guest devices and view detailed user and device information through the Nile Customer Portal. This visibility extends to traffic flow, similar to the monitoring available for employee traffic.

Looking Ahead: Future Enhancements

Nile is continually improving its services. Upcoming features for the Guest Service include:

  • URL filtering
  • Customizable guest portals with your organization's branding
  • The ability to revoke guest user access

By utilizing Nile Guest Service, organizations can provide secure and reliable internet access to guests without compromising the security and integrity of their internal networks.