Network Access Control (NAC) system Flashcards
4.2.3
Network Access Control (NAC)
concept of controlling access to an environment through strict adherence to and enforcement of security policy
NAC Goals
Prevent/reduce known attacks directly and zero day indirectly
Enforce security policy throughout the network
Use identities to perform access control
Preadmission Philosophy
A NAC implementation that requires a system to meet all current security requirements before it is allowed to communicate with the network
Postadmission Philosophy
A NAC implementation that allows and denies access based on user activity which is based on a predefined authorization matrix
Agent based NAC
Installed on each management system, checks config files regularly, and can quarantine for non-compliance
Agentless NAC
The NAC system can scan remotely and employ inventory techniques to determine access decisions