8.1. Hey, It's Me
Three drivers make identity a must-have component of network access control (NAC):
Regulatory compliance: Regulations such as HIPPA, Sarbanes-Oxley, and PCI (Payment Card Industry)
Resource protection: Protecting your high value network resources
Traffic auditing: Actually seeing what happens in the network traffic
|
NOTE
Before creating a complex NAC deployment, check for an internal identity stores that your NAC deployment can leverage and make a list of those identity stores before you try to create policies. Typically, you have to use several identity stores across your network to define complete policies that cover all users on your network. Identity typically isn't in the realm of your network infrastructure IT groups, and you may have to pull in your authentication IT group(s) to have a successful network access control deployment.
Most networks are built to connect users to resources. In the modern NAC view, both devices and users have identities. These identities can be either
A user who has a user name and other information
A device that has a location, hardware ID, or other information
Both users and devices have an identity that Network ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access
