- +
Hiring Manager: Emphasize Integrity, Attitude 14/12/2007 11:18:07
William Howell shares his hiring mistakes and his secrets for selecting the best job candidates, finding objective references and using LinkedIn as a recruiting tool.William Howell shares his hiring mistakes and his secrets for selecting the best job candidates, finding objective references and using LinkedIn as a recruiting tool. - +
Strategies for Dealing With IT Complexity 24/12/2007 10:30:47
Every innovation, every business process improvement, comes with an IT complexity tax that must be paid by CIOs in time, money and sweat. Here are strategies to mitigate the increasing complexity of IT as it enables new business.Every innovation, every business process improvement, comes with an IT complexity tax that must be paid by CIOs in time, money and sweat. Here are strategies to mitigate the increasing complexity of IT as it enables new business.
Read up on the latest ideas and technologies from companies that sell hardware, software and services. Revolutionising Back-up and Recovery
Radicati Market Quadrant 2008 on Corporate Web Security
Realizing the Value of Unified Communications
Email Archiving Implementation: Five Costly Mistakes to Avoid
Best Practice in Building an Integrated Information Management Strategy
Mobile Solutions Deliver Improved Efficiency to Star Track Express
Dude! You Say I Need an Application-Layer Firewall?!
Enterprise Wireless WLAN Security
Zones provide focussed content from Computerworld and leading technology partners.Newsletter Subscription
Until Carroll College bought into NAC technology, it took six weeks of work by a dozen full-time IT staff and student volunteers to clean up student PCs, stemming infections they brought to the network.
The effort has gotten a lot simpler. Since putting Tipping Point gear in place in 2005, the effort to keep the network clean has requires just three people and three days at the start of the semester.
"This year we couldn't believe we got done in three days with no major network issues, no major looming security threats, no incidents after those three days - nothing," says John Arechavala, director of infrastructure services at the school. "We're pinching ourselves."
With 1,300 students living in dorms and another 1,700 commuting, Carroll had a big chore. The network let students bring whatever PCs they had at home and attach them to the network. "Consequently you expose yourself to all the evils of the world that happen to be installed on those computers," Arechavala says.
When he started looking at NAC gear three years ago, there weren't that many options. The school is primarily a Nortel shop for its wired infrastructure, and a combination of Cisco and Xirrus for wireless. Nortel wasn't ready with NAC then, but Arechavala had heard of the start-up Roving Planet that had success in other universities. Roving Planet was later bought by Tipping Point.
He says he knew the NAC software could control admission by machine and user as well as perform a basic scan without using client software on each machine. He took the opportunity of implementing NAC to streamline the definition of acceptable PCs that the school would allow on its network. "We don't own these devices, we don't know where they come from, we don't see them before they come in," he says.
First, the student computers had to have either Mac OS, Linux or Windows XP operating systems. Before NAC, he allowed several other flavors of Windows, but he learned that that required too much help-desk knowledge.
The only other requirement for the machines was that each PC have an acceptable antivirus client that was updated and running. If the machines could meet those requirements, they could gain access, he says.
With NAC in place to make sure these two criteria are met, as students plug in for the first time and attempt to access network resources, their traffic is intercepted and they are diverted to an untrusted VLAN where their machines are scanned.
They are diverted to a site where they can download antivirus software if their machines are found lacking, he says. Since the school provides enterprise-grade Norton antivirus from Symantec to students for free, many of them adopt that, he says. Those with unsupported operating systems receive a notice that they must switch to a supported operating system, he says.
Adopting NAC two years ago was daring for the school. It was a significant investment for the college - about US$56,000 - and the name Roving Planet wasn't well known. But because it could reference satisfied customers at other schools, Carroll trustees approved the expenditure, Arechavala says. At the time, the alternative being considered was issuing standard-configuration computers to each student. "Obviously this was cheaper," he says.
The NAC software is deployed on five hardened Linux-based Dell servers attached to core switches, and they are managed by a Tipping Point Network Commander management platform. The NAC servers are attached to core switches, plugged into VLANs designated as trusted and untrusted. Each device can handle hundreds of users, he says.
Computerworld Member Login
Prioritizing Services with IT Service Management (ITSM)
Computerworld Live Webinar
Wednesday 20th, August 2008
11:00am EST (Sydney, Australia)
To be repeated on:
Thursday 4th, September 2008
11:00am EST (Sydney Australia)
Sign up and receive a free copy of The Forrester WaveTM Service Desk Management Tools, Q2 2008 at the conclusion of the Webinar.
Attend and discover:
- How to deliver value to your business through ITSM
- Best practice ITSM implementation
- Why emphasis is changing from optimizing IT management processes to better servicing customers and demonstrating real dollar value
- If service-oriented ITSM is best for your business
- +
Computerworld Live Podcast #97: The Future of Enterprise Networking 25/07/2008 09:45:36
This week CW Live chats with Mark Thompson, global sales and marketing manager for HP ProCurve, on the future of the enterprise networking. Mark discusses the trends we can expect to see in the near future and how the right infrastructure can ensure your enterprise network is secure. - +
Computerworld Live Podcast #96: Security at the Edge 11/06/2008 09:22:22
CW Live speaks with Amol Mitra, HP ProCurve Director of Marketing for Asia Pacific and Japan. Today's topic: how enterprises are starting to shift away from simply controlling security via server logins, firewalls and moving to more adaptive security frameworks. - +
Data Management Edition #10: Multi-Petascale Systems 02/05/2008 09:12:33
This week we look at sustainability and the development of multicore technologies to build multi-petascale systems. - +
IT Security Edition #11: How to poison the Storm botnet 01/05/2008 08:51:55
This week CW Live presents a case study on how to poison the notorious Storm botnet . Plus we take a look at Cisco's plans for Ironport. - +
IT Security Edition #10: Cyber-battles fought and won 24/04/2008 11:09:47
Vendors bow to end user pressure to improve product security, and we take a look at the latest concepts shaping the cyber-battlefield of the future.
Viva la Verticals! Key to Vendor Growth is Through Vertical Market Opportunities, Says IDC 2008-09-05 11:05:00+10
F-Secure delivers fastest protection in the online world 2008-09-04 16:50:00+10
NETGEAR expands ProSafe team as business-class products take off in SME market 2008-09-04 16:27:00+10
Rogue security apps dominate Fortinet's Aug 2008 IT threat report 2008-09-04 16:00:00+10
Adaptec Intelligent Power Management Reduces Storage Power Consumption Up to 70 Percent 2008-09-04 11:28:00+10
Optimized Back-up and Recovery for VMWare for VMWare Infrastructure with EMC Avamar
Virtual machines deployed in the data centre must be protected against failure. Read on to find out how to extend data protection to your virtual machines.








