Sunday | 20 July, 2008
Computerworld

FAQ on NAC
Explanations that may clarify some of your questions about network access control

Related Features
  • +

    Your World. . . Hacked 02/10/2007 10:51:23

    As your business becomes more collaborative and global, the risks to your company’s trade secrets rise proportionally. Fortunately, there are new strategies to protect the data that allows you to compete
    The call to Bob Bailey, an IT executive with a major US government contractor, came on an otherwise ordinary day in October 2003. "Why are you attacking us?" demanded the caller, an IT leader with a Silicon Valley manufacturer. He wanted to know why Bailey's company had launched a denial-of-service attack against his network
  • +

    When Egos Dare 05/06/2007 10:17:02

    For some observers and practitioners, the federated model brings the best elements of centralization and decentralization to the IT table. Others aren’t so sure . . .
    The monarch was dead. Demoralized and shaken, the organization spent time mourning for a popular and high-profile CIO who had reigned for many years. Then, with time starting to dull the pain, the young princes began sharpening their knives, sensing their best opportunity in years to seize power
  • +

    The Declaration of Interdependence 03/09/2007 15:02:56

    The world has changed. You can’t deny employees the freedom to use consumer applications at work. Here’s how to live with and profit from them
    Digital cameras didn't creep up on the Drees company as much as they pounced. Five years ago a lot of employees at the $US1.1 billion real estate company weren't even using computers. Today, those same employees are responsible for one of the company's more innovative uses of technology
  • +

    The Four Stages of Enterprise Architecture 07/02/2007 14:04:06

    An exclusive MIT survey maps the evolution of IT architecture and explains why you can’t skip any steps
    It was 1999, and addressing any potential Y2K flaws in all of State Street's computer systems consumed the giant financial services provider's IT attention.
Additional Resources
Executive Guides
Whitepapers
Zones
Zone logoZones provide focussed content from Computerworld and leading technology partners.

Newsletter Subscription

Sign up for our Computerworld newsletters!
Computerworld's twice-daily news service keeps you in touch with the latest, most important headlines from Australia and around the world.
Keep up with the latest virtualization technologies, products, news and features.
RSS Feeds

How does NAC work in practice?

NAC products scan computers and other devices before they get on the network to determine whether they possess a security posture in line with corporate policy. Is virus-scanning software up-to-date? Is the operating system patched? Is a personal firewall in use? That process requires an engine capable of matching scan results to policies to see if the device is qualified to gain access. And it entails devices that can enforce the policy engine's decision: to block access, to restrict access to certain resources or to allow access only to an isolated network segment where security functions can be brought up-to-date.

Can other types of security products play a role in a NAC environment?

Yes. For example, CA's eTrust antivirus and antispyware software play in Cisco's NAC environment by delivering status information to Cisco's Trust Agent. The agent gathers data from the CA software and other software on desktops and laptops to develop a profile of the computers trying to access the network. Similarly, IBM's Tivoli Security Compliance Manager is Cisco NAC-compatible because it scans machines coming onto the network. By itself it can't enforce whether the device gains access; it needs infrastructure from Cisco or some other vendor to enforce policy.

What key questions should network executives ask themselves regarding an investment in NAC?

- Do company decision-makers agree that the business needs different levels of access control?

- Does the infrastructure have a specific need that NAC can address, or does network security in general need beefing up?

- Does my road map adequately address a potential move from current products to the eventual industry-standard products if an enterprisewide NAC deployment becomes appropriate?

- Does the NAC product need to fit into my existing infrastructure or will NAC be part of a wide-ranging overhaul?

- Are tracking, monitoring and logging events controlled by NAC important for this organization?

Market Place

Computerworld Member Login


 

Beyond Virtualisation - The Roadmap to 2012

CIO Breakfast Briefing
8:30am - 10:30am

Brisbane | 22 July | Sofitel Brisbane
Sydney | 23 July | Four Seasons Hotel
Canberra | 24 July | The Hyatt

Attend and discover:

  • What happens after virtualisation
  • The benefits automation drives
  • When automated infrastructures will emerge
  • What the roadmap to 2012 looks like
  • How to deliver an automated architecture
  • How to maximise your investment in virtualisation
Whitepaper

IDG Strategy Guide: Best Practice Quality Management

Quality in software development projects doesn't happen on its own. Quality happens only when careful planning is done. Read on to make your quality management policies best practice models, and to discover how to deliver successful projects on time, every time.

Enterprise IT Buyer's Guide
Find Technology Vendors Fast
 
Find vendors by name | Find by category
Sponsored Links