Users & Access Security – DCS Website
 
 
 
 
 

  NAC (Network Access Control)

 
 
Cisco Identity Services Engine (ISE)
A security policy management platform that provides secure network access to end users and devices. Cisco ISE enables the creation and enforcement of security and access policies for endpoint devices that are connected to an organization’s routers, switches and wireless. It is designed to help organizations simplify identity management across devices and applications.Cisco Identity Services Engine helps enterprises understand and gain visibility into their network, giving them the ability to see who is connected as well as which applications are installed and running. The product can help with zero-trust strategies by securing the network and everyone and every endpoint connected to it. ISE can also share data like user and device identities as well as threats and vulnerabilities with other integrated Cisco tools to further streamline security policy management.Cisco Identity Services Engine (ISE) provides a range of network access control (NAC) capabilities from guest access to security response depending upon the licenses and appliances purchased. ISE is intended for use with guest and employee endpoints, but Cisco also offers separate and specialized NAC solutions for equipment (internet of things (IoT), operational technology (OT), and industrial controls), for medical devices, and specifically for rapid threat containment.With an increased number of users and devices accessing networks remotely, protecting an organization’s data from network security breaches becomes more complex. Administrators can use Cisco Identity Services Engine to control who has access to their network and ensure authorized policy-compliant devices are being used. IT administrators can use ISE for policy enforcement, visibility, granting guest access to the network, threat containment, tool integrations, device administration and bring-your-own-device (BYOD) management. Cisco ISE can authenticate wired, wireless and virtual private network (VPN) users. Authorized and unauthorized users are logged so administrators can view who and which devices are connected to their network at any time.
Forescout Network Access Control (NAC) offers advanced, agentless, and flexible network security solutions that extend beyond traditional NAC. These solutions provide comprehensive, resilient, and compliant access control for diverse networks, including IoT/OT environments.

Next-Gen NAC and Network Security

Forescout Network Security solutions leverage synergies between network access control, security, and Zero Trust to create a holistic, compliant, and data-centric framework for the business. This approach reduces attack surfaces and aligns with cybersecurity best practices, including highly-regulated industries.

Our next-gen network access control offers a comprehensive, flexible, and non-disruptive approach that provides essential capabilities for enterprises to maintain robust security postures and implement Zero Trust principles effectively.

Aruba Clearpass
Aruba ClearPass for Secure Network Access Control. From IoT to an always-on mobile workforce, organizations are more exposed to attacks than ever before. With Aruba ClearPass, you get agentless visibility and dynamic role-based access control for seamless security enforcement and response across your wired and wireless networks.

Agentless policy control and automated response.
What’s needed beyond visibility, control and response? Real-time policies for how users and devices connect and what they can access is critical, as well as robust guest access and strong enforcement capabilities.Enforcing access privileges to effectively reduce risk. In addition to its role as the policy enforcement mechanism for ClearPass, the Aruba Policy Enforcement Firewall (PEF) has been designated “Cyber Catalystsm”, based on its ability to effectively reduce risk.

Secure access for guest, BYOD and corporate devices
There are simple ways to let users securely connect devices to a network – without compromising security. ClearPass includes secure Wi-Fi guest access, device onboarding and health checks, and strong enforcement capabilities.

Leverage the ClearPass Security Ecosystem.
Integrating disparate tools and technologies is critical in today’s security environment. Our Security Exchange Program brings together best-of-breed third-party solutions for end-to-end security – from the campus to the road warrior.

Key features

    • Role-based, unified network access enforcement across multi-vendor wireless, wired and VPN networks.
    • Intuitive policy configuration templates and visibility troubleshooting tools.
    • Supports multiple authentication/authorization sources (AD, LDAP, SQL).
    • Self-service device onboarding with built-in certificate authority (CA) for BYOD.
    • Guest access with extensive customization, branding, and sponsor-based approvals.
    • Integration with key UEM solutions for in-depth device assessments
    • Comprehensive integration with the HPE Aruba Networking 360 Security Exchange Program.
    • Single sign-on (SSO) support works with other identity management tools to improve user experience to SAML 2.0-based applications.
    • FIPS 140-2 and CC certified.

 

 

 
 
 
 

Email Security

Endpoint Security

NAC (Network Access Control)

Web Security