STAFF WIFI

Your staff have no WiFi password.
Because there is no password.

Staff join the corporate network passwordless, with a per-user 802.1X certificate. No more shared passphrase, no quarterly rotation, no "what's the new password?" — and compliant logging stays per-user and complete.

Curious how it works? Three steps, below

Useroam Cloud Connector panel with PMS guests, AD staff, AD groups and connection status

The problem today: one shared password, one deferred risk

Someone leaves, you change the shared WiFi password, then hand the new one to 80 people one by one. It floats around a group chat, a sticky note, someone's phone. When logging runs on a shared account, you can't tell who did what. That's not security — it's a deferred problem.

The fix: a certificate, not a password

What we do is exactly 802.1X — precisely, WPA2-Enterprise + EAP-TLS. Staff onboard once; a per-user certificate is installed on the device. After that they connect automatically and encrypted, with no password. No password means nothing to share, steal, or rotate.

The terms, plainly

802.1X

The standard that asks "who are you?" at the network door — the access point asks on wireless, the switch asks on wired.

EAP-TLS

How identity is shown at that door. We chose a certificate instead of a password.

WPA2-Enterprise

The name this takes on the wireless network. The wired side runs on the same 802.1X switch.

Flexible identity source

Sync staff from Active Directory/LDAP or add them manually in the panel. AD is not required — venues without AD use the same module. Every staff member's identity source is visible in the list: synced from AD or added manually.

Useroam Cloud Connector staff list showing each person's identity source (AD or manual)

Manage staff by group

Sync staff groups from AD or group them manually in the panel; access rules follow the group. Wireless and wired connections are identified with the same certificate — staff wired into the network are covered too, not just WiFi.

Useroam Cloud Connector groups screen: manage staff from an AD group or manually

What you get

No passwordsPer-user compliant loggingAD not requiredWireless + wiredOne-minute onboarding

Staff WiFi is included in both the Cloud and Cloud Extended editions. Compare editions →

How it works

Add your staff

Sync staff from Active Directory/LDAP or add them manually in the panel.

One password, never again

Staff open the onboarding link and enter their AD password — or one you gave them — once; a certificate installs on the device (one tap on iOS/macOS). After that, no password is ever asked again.

Passwordless, automatic

The device connects via certificate, with no password, wherever it sees the network — logged per user.

One password, once

In the steps below staff enter their AD password — or the one you gave them — exactly once; the certificate installs right there. After that, they are never asked for a password again. Onboarding is supported on iOS, macOS, Android and Windows; on iOS/macOS the profile installs with one tap.

Useroam sign-in form with Username, Password fields and an Install button

Staff sign in once with their corporate username and password ("Kullanıcı Adı", "Parola") and tap Install ("Kur"); the Wi-Fi profile installs automatically.

iOS Install Profile screen: Useroam Staff WiFi, containing Wi-Fi Network, Certificate

iOS's own Install Profile screen: "Useroam Personel WiFi", signed by panel.useroam.com — containing Wi-Fi Network, Certificate ("İçeriyor: Wi-Fi Ağı, Sertifika").

Why it's different (honest framing)

Among Turkish compliant hotspot vendors, the guest side (captive portal, SMS verification, logging) is standard. A module that onboards staff passwordless and self-service, via certificate, is — as far as we've seen — not offered by those vendors. Useroam combines it with guest hotspot, PMS integration and compliant logging on one platform.

Connect your staff without a password.

Try the onboarding flow on your own phone in a demo environment — let's watch your team connect passwordless together.

Frequently asked questions

What is the Staff WiFi module?
Staff join the corporate network not with a shared password but with a per-user 802.1X/EAP-TLS certificate. The identity source can be Active Directory/LDAP or staff added manually in the panel; wireless and wired connections are covered by the same certificate.
Do staff really never enter a password?
During onboarding they enter their AD password — or one you gave them — exactly once, and download the certificate to their device. After that, no password is ever asked again; the connection is automatic and encrypted.
Which devices does onboarding work on?
Onboarding is supported on iOS, macOS, Android and Windows; on iOS and macOS the profile installs with one tap.
Is Active Directory required?
No. You can sync staff from AD/LDAP or add them manually in the panel; venues without AD use the same module.