top of page

Your Network Knows the Device. Does It Know the Person?  
A real customer story from Ello Technology

ChatGPT Image Aug 27, 2026 at 11_54_00 AM.png

Meet Andrew 

We recently worked with Andrew and his team at a South African manufacturing business with between 51 and 200 employees. 

The business already had systems in place to control who could connect to its network. 

The problem was that those controls were focused on devices rather than people. 

As the business grew, that distinction became increasingly important. 

The challenge Andrew's business was facing 

The business was using MAC address allow-listing to control which devices could connect to its network. 

In simple terms, specific devices were approved for access. 

The approach had worked, but it created an ongoing administrative problem. 

Every time a device changed, the list had to be updated. 

More importantly, the business couldn't easily connect network access to the individual person using that device. 

That created limited visibility and made accountability more difficult. 

There was another issue. 

Wireless access relied on a shared Wi-Fi password used across users and devices. 

If that password was shared or became known outside the business, there was no simple way to identify exactly who was using the network. 

When someone leaves, what happens to their access? 

This was one of the biggest concerns. 

When an employee left the business, their access couldn't simply be switched off in one place. 

 

The business had to manually remove their device and make password changes. 

 

That created additional administration and, more importantly, the possibility that access could remain active longer than it should. 

 

For a growing business, that isn't something you want to rely on. 

Andrew's business needed a way to make sure access followed the person — not the device. 

 

Why it mattered 

This wasn't just about making life easier for the IT team. 

There was a genuine business risk involved. 

The company needed to protect sensitive information and ensure that people only had access to the areas relevant to their role. 

Finance, for example, needed to be properly separated from areas that other employees didn't need to access. 

The business also needed greater confidence that when someone left or changed roles, their access would change with them. 

The existing approach was creating too much manual work while providing too little visibility. 

 

The question became: 

How do you know who is actually accessing your network? 

The decision 

Rather than replacing the company's existing technology, the decision was made to build on what was already in place. 

Ello worked with Andrew and his team to move away from device-based access and towards an approach based on individual users and their roles within the business. 

The business already had the foundations needed to make this possible. 

The goal was to connect a person's access to their existing company identity and responsibilities. 

 

That meant the business could move towards a much simpler principle: 

People should have access based on who they are and what they need to do — not simply which device they happen to be using. 

There was also no pressure to introduce everything at once. 

A more advanced cloud-based approach was considered as a possible future option, but it wasn't necessary for what Andrew's business needed at this stage. 

The priority was to solve the immediate problem in a practical and cost-effective way. 

Making the change without disrupting the business 

The business couldn't afford to make a major change and discover afterwards that employees could no longer access what they needed. 

So the rollout was deliberately staged. 

The project took approximately eight weeks, moving through discovery, planning, setup and testing before the new approach was introduced more broadly. 

Most importantly, it was first tested with one department. 

This gave the team an opportunity to see how the new access rules worked with real employees and real working requirements. 

Anything that needed to be adjusted could be dealt with before the wider rollout. 

The final security controls were only put fully into effect once the new approach had been tested and proven. 

That meant the business didn't have to choose between improving security and keeping people productive. 

It could do both. 

What changed? 

The biggest change was simple: 

Access became about people, not devices. 

Employees could now be identified individually when accessing the network rather than relying on a shared Wi-Fi password. 

Access could also be linked to a person's role within the organisation. 

That meant someone in Finance could have access to what they needed without automatically giving that same access to everyone else. 

When an employee leaves, their company account can be disabled, removing their network and Wi-Fi access without having to manually track down devices and change shared passwords. 

The business also no longer needed to maintain device approval lists in the same way. 

The result for Andrew's business 

The outcome was more than improved security. 

The business gained greater visibility, stronger control and a much simpler way of managing access as the organisation changes. 

The key improvements included: 

  • Better visibility over who is accessing the network 

  • Stronger protection of sensitive business information 

  • Individual rather than shared wireless access 

  • Easier employee offboarding 

  • Less manual administration 

  • Greater accountability 

  • Reduced business risk 

  • Better separation of access between different areas of the business 

  • An approach that can scale as the company grows 

Most importantly, the business now has a clearer connection between the person, their role and what they are allowed to access. 

What makes this customer journey interesting? 

Andrew's business didn't have a catastrophic security incident. 

There wasn't a dramatic failure that forced them to act. 

Instead, they recognised that the way they were managing access was becoming increasingly difficult to control as the business grew. 

That is often how business risk develops. 

Something works when the company is smaller. 

Then the business changes. 

More people join. 

Employees leave. 

Roles change. 

More devices are introduced. 

And a process that once seemed perfectly manageable starts creating gaps. 

The important part is identifying those gaps before they become a serious problem. 

The lesson for other business owners 

If your business relies on shared passwords, approved devices or manual processes to control access, ask yourself: 

Would you know exactly who is accessing your network right now? 

And if someone left your business today: 

How quickly could you be certain that all of their access had been removed? 

If those answers aren't straightforward, there may be an opportunity to improve the way access is managed. 

Ello's role 

Andrew's business already had much of the technology it needed. 

The challenge was making those existing systems work together in a way that better supported the business. 

Ello provided the technical guidance, planning and implementation needed to move the business towards an identity-based approach while keeping the rollout controlled and minimising disruption. 

The important part wasn't introducing more technology. 

It was helping the business get greater value, control and security from the environment it already had. 

The takeaway 

Andrew's business didn't need to start again. 

It needed to change the way it thought about access. 

Instead of asking: 

"Which devices are allowed onto our network?" 

The business can now ask a much more useful question: 

"Which people should have access, and what should they be able to access?" 

That is a much stronger foundation for a growing business. 

Your Network Knows the Device. Does It Know the Person? 

If you're not sure who has access to your network, whether they still need that access, or how quickly you could remove it when someone leaves, it's worth having a conversation. 

Talk to Ello about whether your current approach is giving your business the visibility and control it needs. 

Contact

Social

  • LinkedIn
  • Facebook
  • Instagram

© 2026 Ello Technology

Ello Technology Logo

Location

Head Office:

17 Orange Street,

Somerset West,

Cape Town

Johannesburg Office:

Gateway West,

Waterfall City Midrand, Johannesburg

bottom of page