Security: Network Access ControlThis newsletter is sponsored by SonicWALLNetwork World's Security: Network Access Control Newsletter, 08/28/07Aruba and Bradford Networks team to offer NAC policy serverBy Tim GreeneAruba Networks is teaming up with Bradford Networks to supply all the equipment needed to apply NAC to any device logging into a network, regardless of connection method. The relationship adds to Aruba’s offerings a NAC policy server, which houses the policies needed to enforce access controls on wired, wireless and remote access endpoints. Aruba gear could support NAC but it relied on servers made by other vendors to dictate policy. The addition of the Bradford network server offers an advantage to customers when they add NAC to their networks, they deal with one less vendor if they already have Aruba products deployed.
Aruba calls the Bradford equipment Aruba Endpoint Compliance System (ECS), which manage identities of individuals by associating them with MAC addresses, the users' roles in the company, IP addresses, how the device is attached to the network, and time of day. Policies issued by the ECS can be enforced by separate Aruba gear called Aruba Mobility Controller, which includes a stateful Layer 3 firewall. Imposing a set of firewall rules on endpoints based on ECS policies can restrict network access. Mobility Controllers can tap data from endpoints and network devices such as intrusion prevention systems and use the data to help determine what access policies should be applied. The Mobility Controller can also push enforcement to Aruba wireless access points, and using a feature called Remote AP, an access point can extend NAC to remote access users. If the remote user accesses the Internet via an Aruba access point, the access point will grant access as dictated by the NAC policy server. ECS comes in three models to support varying numbers of end users. The E-50 supports up to 1,000 users, the E-100 supports up to 6,000 users and the Network Security Manager can manage groups of E-100 devices to support tens of thousands of end users, Aruba says.
|
Contact the author: Tim Greene is a senior editor at Network World, covering network access control, virtual private networking gear, remote access, WAN acceleration and aspects of VoIP technology. You can reach him at tgreene@nww.com. This newsletter is sponsored by SonicWALLARCHIVEArchive of the Security: Network Access Control Newsletter. BONUS FEATUREIT PRODUCT RESEARCH AT YOUR FINGERTIPS Get detailed information on thousands of products, conduct side-by-side comparisons and read product test and review results with Network World’s IT Buyer’s Guides. Find the best solution faster than ever with over 100 distinct categories across the security, storage, management, wireless, infrastructure and convergence markets. Click here for details. PRINT SUBSCRIPTIONS AVAILABLE International subscribers, click here. SUBSCRIPTION SERVICESTo subscribe or unsubscribe to any Network World newsletter, change your e-mail address or contact us, click here. This message was sent to: security.world@gmail.com. Please use this address when modifying your subscription. Advertising information: Write to Associate Publisher Online Susan Cardoza Network World, Inc., 118 Turnpike Road, Southborough, MA 01772 Copyright Network World, Inc., 2007 |
No comments:
Post a Comment