Home > Networking News > Juniper updates network access control
Networking News:
EMAIL THIS

Juniper updates network access control

By Andrew R. Hickey, News Editor
11 Oct 2007 | SearchNetworking.com

News on networking, mobility and voice
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google

This week Juniper Networks Inc. of Sunnyvale, Calif., updated its Unified Access Control (UAC) software, which the vendor says will reduce the cost and complexity of securing networks and applications.

UAC version 2.1 offers access control, visibility, and monitoring of applications and users to address regulatory compliance and mitigate risk and exposure to an ever-evolving landscape of threats. According to Juniper Director of Product Management Karthik Krishnan, version 2.1 is in line with Juniper's broader strategy to give enterprises advanced, coordinated visibility and control of applications and users across the enterprise.

UAC 2.1 includes the following features:

  • Coordinated threat control, which uses Juniper's Intrusion Detection and Prevention (IDP) platforms for Layers 2 through 7 visibility into application traffic. This allows IT to isolate a threat at the user or device level and employ a specific, configurable policy action against that user or device.
  • An identity-enabled profiler that ties user identity and role information to network and application usage, allowing enterprises to track and audit network application access, thereby addressing regulatory compliance.
  • Unmanageable device support that can dynamically address unmanageable endpoints like printers and VoIP phones so enterprises can use existing policy and profile stores to control their access.
  • Advanced security assessment, which integrates Shavlik NetChk Protect's predefined patch management assessment checks, allowing granular endpoint device health and security-state assessments.
  • Heterogeneous endpoint support that extends support to enterprise computing platforms with a new Layer 2/3 UAC agent for Microsoft Windows Vista.
  • Simplified deployment that extends authentication protocol support for phased deployments, providing enhanced automatic remediation capabilities.
NAC evolves from the core to outer edge

According to Krishnan, companies now consider networks and network access as critical to success and are recognizing that access control, visibility, and monitoring of applications and users are essential to mitigate exposure to internal and external threats. Network access control (NAC), he said, is at an evolutionary stage, maturing from simple pre-admission controls, guest-user access and endpoint policy assessment. Instead, NAC is now wrapping in post-admission policies and controls, role-based application access, and network and application visibility and monitoring. In UAC 2.1, Juniper has added the ability to implement security policy enforcement broader and deeper into a network's core and outward to the edge, mitigating many of the risks associated with exposing corporate assets.

Andrew Braunberg, senior analyst at Washington, D.C.-based research firm Current Analysis, said Juniper's UAC updates will continue to make Juniper a worthy competitor in the network access control market. He added, however, that many of the enhanced features aren't entirely new but instead a spin on already existing functionality.

"With NAC, it's about letting users leverage their existing security investments," he said, adding that he wonders if UAC 2.1's IDP tie-in will be opened up to third-party intrusion detection and prevention tools.

Jeff Wilson, principal analyst for network security at Campbell, Calif.-based Infonetics Research, said in a statement that enterprises are challenged when looking to roll out NAC solutions to protect information assets and maintain regulatory compliance. He added that Juniper's latest round of UAC updates solves many of those challenges.

For more on NAC
Read about whether you should implement NAC now

Find out where NAC vendors rank for retention

Learn what questions to ask in a NAC RFP
Overall, Braunberg said, Juniper has been able to round out both the pre- and post-connect capabilities of UAC, tasks, that, he added, users and market research ranks rather high among NAC tools. Additionally, adding in identity- and role-based awareness for auditing and compliance furthers NAC's capabilities. And while he said the updates, such as a Vista client and the ability to discover unmanageable devices agentlessly, are not a "huge new deal," he noted that they represent progress.

"This will help [Juniper] stay competitive," he said.

Competition in the NAC market, which is dominated by Cisco's framework and appliance, has recently reached a plateau, since few new functions are being created. Braunberg said many vendors are enhancing their NAC offerings in order to stay on par, but no real new functionality has arisen since the market reached a level of maturity.

"There's not really going to be anything new under the sun in the NAC market over the next few years," Braunberg said, citing something he read recently. "Most of it is already available. Vendors will continue fortifying their NAC solutions."

Sanjay Beri, vice president of access solutions at Juniper, said UAC 2.1 enables IT to proactively mitigate threats, maintain regulatory compliance and reduce administration inefficiencies that increase costs and diminish productivity.

"Our open, standards-based UAC offering provides enterprises with a simple, flexible access control solution that enables a phased approach to deployment and protects customers' previous IT investments," Beri said.



Tags: Network Access ControlNetwork Security Best Practices and ProductsVIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google



RELATED CONTENT
Network Access Control
Network security risks multiply when enterprises begin outsourcing
Dynamic policy ensures faster, safer network for school district
NAC appliance vendors: Can you depend on them?
NAC integration at the endpoint
Extending NAC enforcement to network security devices
Integrating NAC with network security tools
Network access control market crushed by economy, but future is bright
Joel Snyder discusses Network Access Control Day at Interop Las Vegas
Maturing NAC market gets its first Gartner Magic Quadrant
Poor data-loss prevention practices almost cost Intel a billion

Network Security Best Practices and Products
Enterprises demand next-generation firewalls with IPS, app visibility
Preventing hacker attacks with network behavior analysis IPS
Is there a way to trace my stolen laptop computer?
Integrating NAC with network security tools
Should organizations separate technical from administrative security?
What network equipment is needed to secure a small business LAN?
Ethical hacking and countermeasures: Network penetration testing intro
Are you on a domain name system (DNS) blacklist database?
Rogue access points: Preventing, detecting and handling best practices
Network security threats solved by risk management: John Pironti explains

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
network access control  (SearchNetworking.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



Comprehensive network management resources, expert solutions, and professional research informing your technology decisions
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2000 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts