Enterasys-networks 9034385 Manual de usuario Pagina 37

  • Descarga
  • Añadir a mis manuales
  • Imprimir
  • Pagina
    / 98
  • Tabla de contenidos
  • MARCADORES
  • Valorado. / 5. Basado en revisión del cliente
Vista de pagina 36
Model 4: End-System Authorization with Assessment and Remediation
Enterasys NAC Design Guide 2-15
trafficwithspecificsourceanddestinationcharacteristicsaswellasspecificapplication
identifiers(UDP/TCPports).Inaddition,theEnterasysNACsolutionwillsupportan
unlimitednumberofdifferentquarantinepolicyroles,whichmeansthatthesolutioncan
supportvaryingdegreesofnetworkusagerestrictionsdependingupontheseverityofthe
non
complianceorsecuritybreach.ThisisdifferentfrommanyotherNACsolutionsthatonly
offeraVLAN“parkinglot”forendsystemsthatneedtobequarantined.
Required and Optional Components
ThissectionsummarizestherequiredandoptionalcomponentsforModel4.
.
TheNACGatewayandNACControlleraretheNACappliancesusedtoimplementtheoutof
bandandinlinenetworkaccesscontrolfunctionalityonthenetwork.
NetSightNACManageristhesoftwareapplicationusedtocentrallymanagetheNACappliances
deployedonthenetwork.
NetSightConsoleisthesoftwareapplicationusedto
monitorthehealthandstatusof
infrastructuredevicesinthenetwork,includingswitches,routers,andEnterasysNACappliances
(NACGatewaysandNACControllers).
Assessmentfunctionalityisrequiredbecauseinthisdeploymentmodel,connectingendsystems
arebeingassessedforsecurityposturecompliance.
ARADIUSserverisonlyrequiredifoutof
bandnetworkaccesscontrolviatheNACGatewayis
implementedwithwebbasedand/or802.1Xauthentication.
NetSightPolicyManagerisrequiredforallinlineNACdeployments,andrecommendedforout
ofbandNACdeploymentsthatutilizeEnterasyspolicycapableswitches.PolicyManager
providestheabilitytocentrallydefineandconfigurethe
authorizationlevelsorpolicies.
NetSightInventoryManagerisanoptionalcomponent,providingcomprehensivenetwork
inventoryandchangemanagementcapabilities.
Table 2-4 Component Requirements for Authorization with Assessment and Remediation
Component
Authorization with
Assessment and
Remediation
NAC Appliance Required
NetSight NAC Manager Required
NetSight Console Required
Assessment Service Required
RADIUS Server Optional
NetSight Policy Manager Optional
NetSight Inventory Manager Optional
Vista de pagina 36
1 2 ... 32 33 34 35 36 37 38 39 40 41 42 ... 97 98

Comentarios a estos manuales

Sin comentarios