Throughput is device-observed per company (VLAN) from the core over SNMP; volume and presence come from WiFi accounting.
"% plan" is today's peak download vs the plan rate. Infrastructure VLANs 1–20 are excluded. Rows are ranked by utilization.
Company usage
Loading…
CPU load history
Loading…
Rejected authentications · last 24h
Loading…
Login Attempts
Change Password
Add Access Point
Property
Friendly label shown across the portal. Leave blank to use the system name below.
Two-letter code — groups this property by state in lists and dropdowns.
System name — used to match imports (Network Commander & ISP). Avoid changing once set.
Used to build network-device hostnames. UPPERCASE letters, numbers and dashes only. Optional.
10..x.x
Property octet only. Builds 10.<loc>.0.0/16 — core 10.<loc>.2.1, switches 10.<loc>.2.2–149. Leave blank to derive from companies.
Company
—
Caps how many users a company admin can add in the customer portal. Blank = unlimited.
Assign Public IP
Available addresses from this property's Active-Primary ISP block. Pick “Other…” to enter one manually.
WiFi User
Changing the property moves this user and reloads the companies below.
Move User
Moving from to another property,
or to a different company at the same property. The user's VLAN follows whichever company you pick.
Reset Password
Username:
Make Company Admin
Make a Company Admin?
They'll be able to sign into the customer portal and add, remove, enable, disable, view, and email passwords for users in their company.
Delete WiFi User
Permanently delete ?
This removes them from RADIUS authentication immediately and cannot be undone.
Yardi Kube Sync —
Admin Account
Sends the account email address their role, sign-in link and password.
Network Admins have access to all properties automatically.
ISP Circuit
Edit Device
IP:
Change to reassign this device — e.g. convert a Switch to an Edge (or back). The IP stays the same; vendor options update to match.
Defaults to the floor/switch convention; override here if needed.
Auto-built from the Location Prefix + Name (e.g. ATX1-FL2-SW1) and saved with this device. Set the prefix on the property to change it.
Used by automation scripts. Options depend on device type.
OPNsense interface for future automation (e.g. wan, lan, opt1). Defaults to wan.
WAN IP is picked from this property's ISP block — already-assigned IPs (e.g. the Expansive/house IP) are shown and stay selectable. Mask & gateway pre-fill from the circuit; edit if this firewall differs. Stored for the automation box.
Write-only. Handed to Ansible Vault on the automation box — never stored here or shown again.
The core's SNMP listen-address — usually 10.<loc>.7.1, not the mgmt IP.
Feeds the per-VLAN throughput on the Usage page. The collector polls every 5 min.
FS core — bandwidth is tracked via sFlow, not SNMP.
The core exports sFlow to the automation box (network-sflow-collector.service, UDP 6343); there is no
per-device toggle here. See PerimeterFSCore_sFlow_Setup.md.
Add Device
Auto-filled from floor/switch — edit if needed.
Hostname: —(auto-built from the property prefix + name)
Used by automation scripts. Options depend on device type.
OPNsense interface for future automation (e.g. wan, lan, opt1). Defaults to wan.
WAN IP is picked from this property's ISP block — already-assigned IPs (e.g. the Expansive/house IP) are shown and stay selectable. Mask & gateway pre-fill from the circuit; edit if this firewall differs. Stored for the automation box.
Mgmt VLAN is auto-derived from the IP; edit it later if needed.
OPNsense API Secret
Device: . The key and secret are handed to the automation box for Ansible Vault and are never stored in this portal or shown again.