1.6. Summary

Figure 1-2. Post-Admission NAC example

The following are key points from this chapter:

  • NAC and NAP essentially perform the same functions, and these terms are commonly used interchangeably.

  • The Trusted Computer Group is an organization that is striving to bring standardization to NAC/NAP solutions.

  • The Cisco NAC program provides a mechanism for other technologies to integrate with Cisco NAC.

  • Clientless NAC relies on scans, not software, to assess devices.

  • Client-based NAC utilizes software to provide a more granular assessment of the system attempting admission.

  • Client-based NAC software doesn't have to be preinstalled. It can be installed as an ActiveX or other component at the time of network entry.

  • Pre-Admission NAC performs NAC functionality prior to allowing a device onto a network.

  • Post-Admission NAC performs NAC functionality after a device has been granted access to a network.

This chapter laid a foundation on basic NAC/NAP concepts and key players in the marketplace. Chapter 2 describes in detail the technical components of all NAC/NAP solutions.

Get Implementing NAP and NAC Security Technologies: The Complete Guide to Network Access Control now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.