said by soamz:Im planing to setup my wisp company in this month. We have finalized dma radius manager for everything.
So that will be it, or do we need to use any other software too ?
I would recommend the following software to run a WISP.
Syslog server
NTP server
Cacti (For SNMP graphing and monitoring)
Bind9 for your DNS server. You can get away with dnsmasq but its not as scalable as Bind 9 and will do strange things if you put too many clients on it.
Don't forget to separate your MGMT plane from your data plane as well.
And depending on how much rack space you have at your main POP.
Suricata IDS can be used for an IDS. Put its promiscuous interfaces on cloned switch ports connected to the network segments you want to monitor. use a /30 PTP to a mysql server and firewall the shit out of the box or when someone uses a zero day buffer overflow you will be sorry.
I strongly advise having separate Sensor/Logging facilitys. One server with a ton of network interfaces and only a PTP connection to your database server that can only pass data to the SQL server nothing to anything else.
NTOP - Make sure it can't do anything but be managed like your IDS. Ive had some crash's and error messages that said the wrong things to make me feel comfortable about security.
I strongly recommend you put each service you wish to run on separate VM's or physical boxes and setup a proper chroot jail.
Also I recommend using OpenVPN to get access to your MGMT plane.
If you go with Mikrotik rather then Ubiquiti I would recommend The Dude as well.