DSGVO: Neues Europäisches Recht

Datenschutz Grundverordnung der EU

Wir sind ein Kleinbetrieb und nicht in der Lage alle Aspekte der DSGVO abzuschätzen. Wir sichern jedoch zu, daß wir die Daten so verantwortungsbewußt nutzen wie auch wir dies von anderen erwarten. Um unseren Service zu nutzen müssen Sie deshalb nach DSGVO aktiv zustimmen, daß wir all Ihre Daten vollumfänglich nutzen und speichern und an Fremde Dienstleister wie unsere Steuerberater, unsere EDV-Dienstleister etc. weitergeben dürfen. Datenschutz-Beauftragter ist Oliver Fendt
Diese Einwilligung ist gem gesetzlichen Bestimmungen jederzeit widerrufbar.

   

Mit Nutzung der Website stimmen ich der Nutzung ausdrücklich zu.

The internet in the home

Basic facts about LAN, WLAN and speed

.

Many rooms have wired LAN. When wired LAN is available, it is the fastest and best way to use the internet. We do not guarantee Wi-Fi reception in these rooms and flats. In NEARLY all rooms there is WLAN via the networks SMUC (encrypted, password 'akademiker') or unencrypted via STUDENTENWOHNHEIME-MUC.

LAN cable is always best. This is immediately followed by WLAN in 5GHz according to the AC standard. All access points of this standard have 5AC in their name (e.g. STUDENT_CAP_5AC) and are fast. The 5GHz range is also good and is called STUDENT_CAP5. Bad is the 2GHz range - because it is very crowded. It's called STUDENTHOME-MUC or STUDENT_CAP, depending on the device model.

This means: STUDENT RESIDENTIAL HOMES-MUC or STUDENT_CAP are great, because they are available in all houses - e.g. for the smartphone.
Much faster, however, are the 5GHz access points, which do not allow ROAMING and therefore have different names at every point in the building.

Use behaviour and speed

We measure your used volume daily for the last 15 days. The fastest because unlimited and highest priority are those, who were below the average of all users during that period.
The worst are those who use more than 17x the amount of the 15-day average of all students. This is almost impossible to do with legal usage. File sharing is illegal in Germany - and will quickly relegate you to the slowest category. In between there are 3 further priority gradations. The fastest of the current 8 gradations is currently 4Mbit upload, 40MBit download with short peak load 10M/120M. The "slowest" is 2.5M/18M with peak 4M/70M. For normal internet use including Microsoft Teams and other video chat apps, the slowest gradation is also sufficient. The main difference is that the slowest are behind the least users in priority. This is not so bad, because the few users do not use the use the internet little anyway - and consequently there are enough free spaces.

As can be seen, our lines are far from being fully utilized on average. The load is distributed across several lines.
At Clemensstr. 118 as of 2023, for example, 2 MNet fiber optic lines with 1000 MBit each and 2 Telekom lines with 250MBit each are active.

Multiple computers/phones/tablets

Currently 5 devices per user are allowed
1 fast device (usually LAPTOP or router) - logs in with VPN????@STUDENT as username.
4 slower devices (tablet, phone) usually log on to the WLAN with VPN????@PHONE (800k/15M with peak performance 5M/60M).

WLAN, cable: Internet is now available in all apartments at Clemensstr. 118, Emanuelstrasse and Gabelsbergerstrasse via LAN (cable).
WLAN is not guaranteed here. Therefore, many students use a router (e.g. TP-Link TL-WR841N approx. 15€ or with the fast WLAN6: TP-Link Archer AX10).
In houses with LAN cable we do not guarantee WLAN - even if WLAN is often available.
In Clemensstrasse 127 some apartments are already connected to LAN cable - but we have a good WLAN6 that works in every apartment.

If something is not working with the internet you need the following checklist and with it you can call the internet hotline at 089-30623-1999.
-What is your VPN number
. -Are you connecting via CABLE or WLAN
? -If via CABLE have you tried PPPoE? Is the cable in the right socket
. -What is the current IP address of the PC (169.X.X.X or 192.X.X.X or __________)
(You can find out how to find out the IP address at the bottom of the page or on Google for your device if necessary). Without this information, no help is possible.

Own routers

It is possible to operate your own router in all apartments with a LAN connection
. But please note: Make absolutely sure that you do not send any DHCP services to our network!!! Otherwise we will have to search for the troublemaker at great expense. We charge a flat rate of €100 for this.
DESHALB do not simply plug in. These things have to be set up!!!
Always plug the cable that leads into our network into the usually BLUE WAN port (Mikrotik "ETH1", TP-Link "WAN", FritzBox set up first) - not!!! into the often YELLOW LAN port.

We have had good experience with MIKROTIK routers (e.g. Mikrotik RB941-2nD-TC at Reichelt.de for 19.90€ or e.g. the better model with 5GHz RBD52G-5HacD2HnD-TC approx. 65 €).
Mikrotik routers are very inexpensive and professional and from a European manufacturer.
Many students use routers from the Chinese manufacturer TP-Link - which are very cheap - and easier to set up once.
If you install a router, be sure to use the PPPoE connection to our systems. This is a professional and stable protocol and works without any problems.
At Mikrotik, a professionally set up router looks like this: (Copy/Paste - Change access data yourself)

Sample TP-Link









/interface bridge
add auto-mac=no comment=defconf name=bridge
/interface pppoe-client
add add-default-route=yes disabled=no interface=ether1 keepalive-timeout=60 \
name=Studentenwohnheim password=1234 use-peer-dns=yes user=1234@student
/interface wireless
set [ find default-name=wlan2 ] band=5ghz-a/n/ac channel-width=\
20/40/80mhz-XXXX distance=indoors frequency=auto installation=indoor \
mode=ap-bridge ssid=MikroTik-412924 station-roaming=enabled \
wireless-protocol=802.11
/interface list
add comment=defconf name=WAN
add comment=defconf name=LAN
/interface wireless security-profiles
set [ find default=yes ] authentication-types=wpa-psk,wpa2-psk eap-methods="" \
group-ciphers=tkip,aes-ccm mode=dynamic-keys supplicant-identity=MikroTik \
unicast-ciphers=tkip,aes-ccm wpa-pre-shared-key=passwort \
wpa2-pre-shared-key=passwort
add authentication-types=wpa-psk,wpa2-psk eap-methods="" \
management-protection=allowed mode=dynamic-keys name=profile1 \
supplicant-identity="" wpa-pre-shared-key=passwort \
wpa2-pre-shared-key=passwort
/interface wireless
set [ find default-name=wlan1 ] band=2ghz-onlyn channel-width=20/40mhz-XX \
country=germany disabled=no distance=indoors frequency=auto installation=\
indoor mode=ap-bridge security-profile=profile1 ssid=WLANZimmernummerAxx \
station-roaming=enabled wireless-protocol=802.11
/ip pool
add name=default-dhcp ranges=192.168.88.10-192.168.88.254
/ip dhcp-server
add address-pool=default-dhcp disabled=no interface=bridge lease-time=4w2d10m \
name=defconf
/interface bridge port
add bridge=bridge comment=defconf interface=ether2
add bridge=bridge comment=defconf interface=ether3
add bridge=bridge comment=defconf interface=ether4
add bridge=bridge comment=defconf interface=ether5
add bridge=bridge comment=defconf interface=wlan1
add bridge=bridge comment=defconf disabled=yes interface=wlan2
/ip neighbor discovery-settings
set discover-interface-list=LAN
/interface list member
add comment=defconf interface=bridge list=LAN
add comment=defconf interface=ether1 list=WAN
add interface=ether1 list=LAN
/interface wireless cap
set discovery-interfaces=ether1 enabled=yes interfaces=wlan2
/ip address
add address=192.168.88.1/24 comment=defconf interface=bridge network=\
192.168.88.0
/ip dhcp-client
add comment=defconf interface=ether1
/ip dhcp-server network
add address=192.168.88.0/24 comment=defconf gateway=192.168.88.1
/ip dns
set allow-remote-requests=yes
/ip dns static
add address=192.168.88.1 comment=defconf name=router.lan type=A
/ip firewall filter
add action=accept chain=input comment=\
"defconf: accept established,related,untracked" connection-state=\
established,related,untracked disabled=yes
add action=drop chain=input comment="defconf: drop invalid" connection-state=\
invalid disabled=yes
add action=accept chain=input comment="defconf: accept ICMP" disabled=yes \
protocol=icmp
add action=accept chain=input comment=\
"defconf: accept to local loopback (for CAPsMAN)" disabled=yes \
dst-address=127.0.0.1
add action=drop chain=input comment="defconf: drop all not coming from LAN" \
disabled=yes in-interface-list=!LAN
add action=accept chain=forward comment="defconf: accept in ipsec policy" \
disabled=yes ipsec-policy=in,ipsec
add action=accept chain=forward comment="defconf: accept out ipsec policy" \
disabled=yes ipsec-policy=out,ipsec
add action=fasttrack-connection chain=forward comment="defconf: fasttrack" \
connection-state=established,related disabled=yes
add action=accept chain=forward comment=\
"defconf: accept established,related, untracked" connection-state=\
established,related,untracked disabled=yes
add action=drop chain=forward comment="defconf: drop invalid" \
connection-state=invalid disabled=yes
add action=drop chain=forward comment=\
"defconf: drop all from WAN not DSTNATed" connection-nat-state=!dstnat \
connection-state=new disabled=yes in-interface-list=WAN
/ip firewall nat
add action=masquerade chain=srcnat comment="masquerade network" \
ipsec-policy=out,none out-interface-list=WAN
add action=masquerade chain=srcnat comment="defconf: masquerade" \
ipsec-policy=out,none out-interface=Studentenwohnheim
/snmp
set enabled=yes
/system clock
set time-zone-name=Europe/Berlin
/system identity
set name="Zimmernummer Privat"

Picture of how to set up a Mikrotik router, for example

M_Skype

In all our houses internet is available. In the Gabelsberger Str., in the Clemensstrasse 118 and in the Emanuelstrasse and in many renovated rooms via LAN cable. Otherwise via WLAN. The WLAN reception is available with a reasonable antenna in all units that do not already have LAN via cable anyway. Note, however, that the antenna in some cheap laptops is is not optimal, and reception is not equally good at every point in the room. Good experience we have had with USB WLAN sticks, because with a USB extension cable for a few you can easily change the position and get good reception even in unfavourable locations.

The settings are quickly explained: ALL on Windows standard.
So AUTOMATIC IP address.
Our HOTSPOTS are usually called either STUDENT RESIDENTIAL HOME or IMMOFENDT (with an abbreviation over the location) e.g. STUDENT RESIDENTIAL HOME2OG.

Internet with the smartphone @PHONE

.

You can use our Internet system with up to 4 other devices (such as Playsation, smartphone, tablet...).

The additional access is slightly reduced in speed - otherwise works exactly like the normal accesses, i.e. either web-authenticated or via PPPoE.

To enable our system to recognise that this is the second access, you must enter VPNxxxx@phone as the user ID. The password remains the same as before.

Frosch_Handy

Connecting with PPPoE: (Recommended)

Version for APPLE (Copied from an Apple website without guarantee)

Steps for configuration

  1. Get the following information from your ISP:
    • User name and password (The user name is e.g. VPN1234)
    • .
  2. Open the "Apple" menu and select "System Preferences".
  3. Open the "Preferences" menu and select "Network".
  4. Select "Ethernet (built-in)" from the "Show" (before Mac OS X 10.1, the "Configuration" pop-up menu).
  5. Click in the title "PPPoE".
  6. Activate the option "Use PPPoE".
  7. Enter your user name in the "Account name" field.
  8. Enter your password in the corresponding field. If you want all users of the computer to use the same connection type%nbsp; , select the "Save password" option.

     Tip: If you want the computer to connect automatically  when you open a network programme (web browser,  e-mail etc.), click in "PPPoE Options" and activate the  option "Connect automatically when needed".

  9. Click in the title "TCP/IP".
  10. Select "PPP" from the "Configure" menu according to the specifications of your Internet provider.
  11. Click in "Apply".
  12. Open a web browser or other Internet program  (TCP/IP program) to check your connection to the Internet.

Tip: If you did not select the option to make an automatic  connection in step 8, you must first open the  Internet Connection" program, select the correct configuration  and then click in "Connect". Select "Internet Connection Help" from the "Help" menu for more information.

More steps for AirPort

.
  1. Open a web browser to make sure the computer connects to the Internet.
  2. .
  3. After the computer has successfully connected to the Internet  you can physically connect the base station to the network 
  4. .
  5. Unplug the power cord of the DSL or cable modem for a few seconds and then plug it back in.
  6. Use AirPort Assistant (in the  "Applications/Utilities" folder) to copy the computer's settings to the base station.
  7. If you selected the option "Connect automatically  when needed" above in step 8, Open the System Preference  "Network" after using AirPort Assistant.  Uncheck this setting there for the option "Ethernet%nbsp; (built-in)". This will prevent the  problem described in the following article: AirPort: Via PPPoE a connection to the base station but not to the internet is possible.

For information on base station troubleshooting, see the article AirPort: Troubleshooting Overview.

 

Other than that, there is also the HOTSPOT method:

The first time you call up a website, our login page appears - no matter what you want to call up. Here you can enter your VPN number and password, e.g. VPN1234@STUDENT and 0000 as your password. You will then be redirected to the page you requested, if your browser allows this. If you get an error message, simply type the address again and you will be connected accordingly. That's it.

Make sure that even programmes like SKYPE only work after you have called up an Internet page to identify yourself.

When the internet doesn't work...

.

Internet is available in the houses by means of hotspots and PPPoE concentrators. Technically, the routers filter all traffic to the internet. Shared pages (e.g. www.studentenwohnheime-muc.de) are excluded. As soon as you connect your computer to the network (LAN or WLAN), it establishes a connection to our system. Our system locks the computer until it is authenticated.

The physical connection should work automatically with the default settings. (Obtain IP address automatically [DHCP]) You will then be assigned a network address.

What do I have to pay attention to with WLAN?

We have professional centrally managed access points from Mikrotik and Ubiquiti. These can transmit unencrypted (SID:STUDENT RESIDENCE-MUC) or encrypted via a 2nd Id (SMUC). The key is: akademiker
. In addition, there are access points in the fast 5GHz range - all of them start with STUDENT. E.G. STUDENT1272OG5GHZ.

What do I have to look out for on the LAN?

Actually, only to get the right socket. Because in some rooms there are 2 identical sockets -  that look the same ... because there used to be telephones in the room! If necessary, try the other can.

.

File sharing

File-sharing is prohibited in Germany. UPLOAD in particular is strictly prohibited under German law. According to the TKG, we store connection data - and have to pass it on to the authorities. We therefore recommend NAPSTER. Napster is a completely legal download source for music for currently 10 euros a month. Works great and is really affordable.

How do I test if the cable / WLAN is working

?

If the cable or WLAN is working, you will be assigned an IP address. You can test this under START - EXECUTE - CMD [OK] - IPCONFIG [ENTER]. You should then get an IP address like 192.168.1??.???. Now you have cleared the first hurdle!
Caution: If the number 169.XXX comes, then you do not have a connection yet! The addresses are all 192.168.x.x (starting with 192.168.).