VPN over wifi, network setup, some help needed

Hello all this is my first incursion in this forum, my company has recently bought a RB2011UiAS-2HnD-IN and I’m kind of new to this systems.

I’ll explain what’s in my mind, and I’d like you guys to help me out to see if it’s possible to make it real,

so, the setup goes like this,

This is a resort where I have installed 1 wifi for the guests, that connects through the routerboard to the internet (adsl), with the RouterOs radius server activated,

then we have another internet connection that’s connected through regular switches to the company network, this is isolated from the Routerboard

in the near future, I’d like to create a High availability system for the company network, having the 2 internet connections, as fail-over and with some load balancing capabilities if possible

and now comes the tricky part, at least for me, we’d like to have our staff connected to the company network through the guests wifi (with PDA like devices, for them to report thier progress on their tasks and getting new tasks directly) is that even possible?

I’ve been thinking of VPN and I’m pretty sure there rules can be created for a set of MAC’s to skip the Radius server.

I’ll report my progress here..

Thank you all again in advance

Yes, all of that can be done. It’s a little involved because there are multiple pieces there, but its easy enough to do. A company like our’s can help you do it, or if you want to do it on your own, I would suggest using GNS3 to model the whole scenario before you go live with it. The HA and load balancing would require a little more info to comment on, but may I suggest a way of handling the two groups over wifi? You could also use two separate subnets. One for the guests and for the staff. Create static IP leases for the staff and bypass the hotspot. It doesn’t add great levels of security, but it offers basic security and a simple solution to what you are doing.