Technical Guides
Deep, expert-led technical guides on guest WiFi, analytics, captive portals, and venue technology.
Ready to move from research to rollout? See how Purple's captive portal software handles branded guest sign-in, analytics, and compliance in one platform.
479 guides

How to deploy iPSK on Cisco Meraki, HPE Aruba and Ruckus
This hands-on reference guide shows how to deploy iPSK on Cisco Meraki, MPSK on HPE Aruba Central and DPSK on Ruckus SmartZone, with a short UniFi PPSK appendix. It focuses on key issuance, VLAN or policy placement, RADIUS decision flows and revocation tests that prove a deployment works in a live venue.

Bulk internet agreement vs managed WiFi: which model fits your building
A practical procurement reference for property, IT and operations leaders comparing resident-paid retail broadband, a bulk internet agreement and managed WiFi. It clarifies ownership, resident move-in, security, cost scope and contractual exit, using US bulk-internet framing and UK equivalents.

Ubiquiti UniFi guest portal not redirecting: causes and fixes
This guide isolates a UniFi guest portal redirect failure by following the guest state, redirect, pre-authorization route and controller authorization in sequence. It gives venue IT teams a sourced method to address guest-network versus Hotspot confusion, external portal hand-offs, current UniFi OS account requirements and DNS isolation testing.

Cisco Meraki splash page not working: a troubleshooting flowchart
This practical day-two guide isolates where a Cisco Meraki splash flow has failed: client authorization, HTTP redirect initiation, walled-garden reachability or RADIUS sign-on. It gives venue IT teams a controlled evidence path, so they can restore Guest WiFi without making broad changes to a live estate.

WiFi 7 Venue Deployment: Infrastructure Readiness for Stadiums and Hospitality Sites
This operational guide helps venue IT teams validate WiFi 7 infrastructure before access-point orders are placed. It covers PoE, multi-gig switching, cabling, controller and licensing readiness, analytics validation and a transparent 200-AP planning model for stadium and hospitality environments.

Planning a WiFi 6 to WiFi 7 access point refresh when Cisco Meraki WiFi 6 reaches end of sale
This technical reference gives multi-site operators a decision framework for a Cisco Meraki WiFi 6 to WiFi 7 refresh before the December 31, 2026 last-order date. It pairs estate and backhaul planning with the Meraki Dashboard checks that protect Purple authentication and location-analytics continuity during every access point swap.

CCPA/CPRA and Guest WiFi: Compliance Guide for Venue Marketers and IT
This technical guide shows venue IT and marketing teams how to govern Guest WiFi data collection under the CCPA/CPRA, without turning a captive portal into a compliance blind spot. It separates network access, privacy information, optional marketing choices and CRM flows, then maps Purple Connect, Capture and Engage to those operational decisions.

Enterprise Guest WiFi Setup Guide: VLAN Segmentation, Security, and Captive Portals
This technical guide shows IT teams how to set up Guest WiFi as a controlled internet-access service, using VLAN segmentation, firewall policy, and a captive portal. It also explains how Purple's registration forms and onboarding controls support a proportionate visitor experience without weakening the boundary around staff, payment, and operational systems.

How to revoke WiFi access when an employee leaves
This guide shows IT and venue operations teams how to remove Staff WiFi access when an employee leaves without disrupting the rest of the workforce. It compares certificate-based 802.1X, identity-specific iPSK and SCIM-driven deprovisioning, then provides a same-day runbook, test method and audit evidence model.

Measuring the Business ROI of Guest WiFi and Location Analytics
This technical reference shows IT and venue teams how to measure the ROI of guest WiFi with a defensible chain from network health and consented data to validated operational or commercial outcomes. It separates measurable evidence from assumptions, maps Purple Connect, Capture and Engage to the right measurement layer, and gives planning scenarios for hotels, retail estates, and event venues.

CCPA/CPRA data retention for shared WiFi operators: how long you can keep guest login data and network logs
A practical US compliance guide for DPOs, network architects and venue operators running shared WiFi. It separates CCPA/CPRA storage-limitation decisions from conditional retention obligations, then turns controller-processor analysis into a retention schedule, CCPA service provider agreement checklist and erasure workflow.

Planning a WiFi 7 deployment in a clinical environment: IoMT devices, interference, and HIPAA
This comprehensive guide explores planning a WiFi 7 deployment in a clinical environment, focusing on 6 GHz band strategy, legacy IoMT device compatibility, IEC 60601 - 1 - 2 RF interference obligations, and HIPAA-aligned network segmentation. It provides actionable architecture advice for healthcare IT leaders to secure mixed device fleets using Purple's cloud RADIUS platform.

PCI DSS 4.0.1 for hotel WiFi: what the 2025 deadline means for your guest and POS networks
This guide breaks down the mandatory PCI DSS v4.0.1 requirements for hotel WiFi networks, focusing on the March 2025 deadline. It provides actionable guidance for IT leaders on network segmentation, software patching, and wireless scanning to ensure compliance during 2026 assessments.

How to Securely Segment Staff and Guest WiFi Networks: Best Practices for Enterprise LANs
This guide provides IT managers and network architects with a vendor-neutral, technical blueprint for securing enterprise LANs by properly segmenting staff and guest WiFi traffic. It covers 802.1X authentication, cloud RADIUS, VLAN isolation, and the credential lifecycle management required to eliminate shared passphrases and protect corporate assets.

How to Set Up a Captive Portal on Starlink: A Guide for Maritime, Transportation, and Remote Sites
This technical guide explains how to bypass Starlink's native CGNAT limitations to deploy a secure, CCPA/CPRA-compliant captive portal for guest WiFi. It covers network architecture, VLAN segmentation, and cloud RADIUS integration for maritime, transportation, and remote enterprise sites.

A Network Administrator’s Guide to Configuring RADIUS Authentication for Guest WiFi
A comprehensive technical reference for network administrators on deploying RADIUS authentication for guest WiFi. Covers architecture, vendor-neutral configuration steps, security best practices, and troubleshooting common deployment failures.

How to Set Up a Captive Portal on Starlink for Guest WiFi
This technical guide explains how to bypass Starlink's native CGNAT limitations to deploy a secure, CCPA/CPRA-compliant captive portal for guest WiFi. It covers the required architecture, VLAN segmentation, and bandwidth management strategies essential for remote venues, maritime operators, and event spaces.

Implementing SCEP for Secure BYOD and 802.1X WiFi in Higher Education
This technical guide details how higher education IT teams can automate 802.1X certificate enrollment for thousands of BYOD devices using SCEP. It covers the architecture, security benefits, and practical deployment steps to replace manual onboarding with a secure, zero-touch network access model.
Secure BYOD WiFi: Passpoint certificate onboarding vs xPSK (iPSK)
A comprehensive technical guide for IT teams on securing unmanaged employee and student devices (BYOD) using zero-touch Passpoint EAP-TLS certificates vs vendor-specific xPSK (iPSK/easyPSK, DPSK, PPSK, MPSK).

How to leverage SMS in marketing to increase return visits
This technical reference guide outlines how enterprise venues can integrate WiFi analytics with SMS marketing engines to drive repeat visits. It details the architecture required to capture real-time presence data, trigger automated SMS campaigns based on physical behavior, and measure the direct impact on return rates. By aligning network infrastructure with marketing automation, IT and operations teams can establish a high-yield channel for customer retention.

Configuring RADIUS Authentication for Guest and Staff WiFi Networks
This technical reference guide outlines the architecture, configuration, and deployment of RADIUS authentication for enterprise guest and staff WiFi networks. It provides network architects and IT managers with the exact protocols, security standards, and troubleshooting methodologies required to build secure, scalable wireless access control systems.

Captive Portals vs. Open Networks: Balancing Security and UX
This technical reference guide provides network architects and IT managers with a comprehensive blueprint for deploying guest WiFi networks. It analyzes the technical trade-offs between open networks and captive portals, detailing how to balance security protocols with user experience. Readers will learn how to configure resilient redirection mechanisms, manage MAC randomization, and implement seamless authentication workflows.

Passpoint and OpenRoaming: Complete Guide
This technical reference guide provides a comprehensive analysis of Passpoint (Hotspot 2.0) and WBA OpenRoaming frameworks within enterprise WiFi networks. It details the underlying authentication protocols, architectural components, and deployment strategies required to establish secure, frictionless guest connectivity. Network architects and IT leaders will learn how to design, implement, and troubleshoot these standards to eliminate manual login barriers while maintaining enterprise-grade security.

WPA2 Personal vs Enterprise: what is the difference and which should you use?
This technical reference guide provides a comprehensive comparison of WPA2 Personal and WPA2 Enterprise security protocols within enterprise WiFi environments. It outlines the architectural differences, deployment methodologies, and security implications of each standard to help network architects and IT leaders make informed deployment decisions.
Got questions about your specific setup?
Our team works with venue operators, IT managers, and network engineers across 80,000 venues. Book a 20-minute call and we will show you how others like you solved it.