Network Exception Policies
Individuals connecting non-University of Iowa, user-installed networking equipment to the campus data network must comply with all UI IT policies including, but not limited to:
- Acceptable Use of Information Technology Resources (“AUP”) – privacy, individual responsibilities, and enforcement
- Network Citizenship Policy – required baseline security standards, authority to protect network
- Network and Airspace policy – owner and configuration of all wireless networking services offered at UI
Exception Requirements
The following must be understood and accepted in the form of signature (below) prior to the installation of a non-university, networking equipment. Exceptions must be approved by IT Security and Network Engineering PRIOR to equipment installation.
- The University of Iowa has no obligations, nor responsibility regarding the operation of non-university networking equipment that connects to the campus network.
- The University of Iowa Networking and IT Security staffs will have no visibility into the user installed network. They will however employ normal network monitoring at the point of its connection to the campus data network.
- It is the responsibility of the owner/requestor to keep any software and/or firmware up to date and free of security vulnerabilities.
- In the event that disruptive, inappropriate, or malicious communication is detected from the user-installed networking equipment, Networking and/or IT Security staff will disable the data network connections to the user installed networking equipment until the problem/device is identified and removed (or repaired) by the registered equipment technical contact (device administrator or NSC).
- User installed network equipment must not be used for telephony applications.
- User installed network equipment may not be installed in University owned IT spaces without the additional approval of ITS Physical Infrastructure.
- Network Exceptions need to be renewed annually.
Specific Requirements for User Installed Wireless Network Equipment (UIW)
- User installed wireless network equipment should not be used to access university-authenticated web applications (i.e., those requiring HawkID/password authentication), access personally identifiable health information (PHI), access protected student information, or access any other types of information classified as Level III Data.
- User installed wireless network equipment must use a unique network name that does not conflict with existing UI wireless service network names, including but not limited to “eduroam,” “UI-Guest,” and “UI-DeviceNet,” and must not have a name that implies it is a university provided wireless service.
- Wireless access to the user installed wireless network equipment must be protected with a password, using WPA2-PSK at a minimum. The password must be at least 23 characters long at a minimum.
- The channel and power configuration of user installed wireless network equipment must be approved by ITS Networking Engineering Services prior to installation and changed if/when requested to minimize impact to standard UI wireless services.