Back to Customer Stories
Education
1min read
May 27, 2026

How SecureW2 Improved Network Access and Security Across Dozens of Campuses

At a Glance
Industry Education
Use Case Pre-shared key to certificate migration, multi-MDM enrollment (Jamf + Google), BYOD onboarding
Key Result Transitioned to a standardized 802.1X framework across several campuses, replacing manual logins with automated certificate-based authentication. This enabled seamless, 'zero-touch' connectivity for staff and faculty while minimizing the risk window for compromised devices with short-lived, self-renewing digital certificates.

The Challenge

A charter school network operating dozens of campuses in a major metropolitan area used pre-shared keys (PSKs) to authenticate every device. PSKs offered no way to identify which user was connected to a device, no ability to revoke access from former students and staff, and no distinction between a school-owned Chromebook and a student’s personal phone.

For a network serving thousands of employees and students across multiple buildings, that lack of visibility was a growing security concern.

The device environment added complexity. School-issued devices ran on Google management for Chromebooks and other classroom hardware. Corporate staff devices — primarily MacBooks — ran on Jamf. Android and iOS student devices connected as unmanaged BYOD.

Each platform required its own enrollment path, but all needed to integrate with Okta as the identity provider across device types. The school needed a cloud-based platform that could handle three distinct enrollment workflows without requiring separate infrastructure for each.

Ease of implementation mattered as much as the technical fit. In a classroom setting, every minute a teacher spends troubleshooting a connection error is a moment taken away from the students’ education. For the school administration, it was crucial to find a zero-touch solution that would minimize disruption for students and faculty.

The Solution

The school successfully transitioned to a high-security, automated network environment with the help of SecureW2. They implemented the JoinNow platform to access self-renewing digital certificates that minimize the risk of unauthorized network access.

The platform automates certificate authorization for Chromebooks and MacBooks, while JoinNow MultiOS provides a self-service path for Android and iOS devices. The result ensures secure network access for students, faculty, and staff, no matter which device they use.

The certificate-based framework replaces manual passwords with unique device identities, providing the IT team with full visibility into every connection and enabling zero-touch configuration for managed devices.

The Results

  • Certificate-based Wi-Fi authentication implemented across four dozen campuses, mitigating the risk of unauthorized devices accessing the network.
  • Three enrollment paths deployed, enabling access for Google (Chromebooks), Jamf (MacBooks), and self-service BYOD (Android/iOS)
  • Okta integration that tied every certificate to a verified user identity across all device types
  • Multi-campus rollout that covered dozens of school locations
  • Seamless implementation without disrupting classrooms or creating steep learning curves for users.

Learn More About SecureW2

Explore SecureW2's trust model, dive into our platform and product details or read more success stories.

Why SecureW2

Establish continuous trust with Dynamic PKI and Cloud RADIUS. Enforce access based on live identity, device posture, and risk context.

  • Passwordless authentication that can’t be phished
  • Works with your IdP, MDM, and security stack
  • Real-time policy engine for dynamic access control
Explore the Platform

Get the essentials on the products that power continuous enforcement.

Knowledge Base Articles

Explore practical guidance from engineers and admins deploying SecureW2.

  • Setup and configuration tutorials
  • Integration best practices with IdPs and MDMs
  • Troubleshooting guides for PKI and RADIUS