Home > Networking News > Cisco Trusted Security to boost network security, management
Networking News:
EMAIL THIS

Cisco Trusted Security to boost network security, management

By Michael Morisy, News Writer
11 Dec 2007 | SearchNetworking.com

News on networking, mobility and voice
Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google

Cisco's newly announced Trusted Security (TrustSec) platform is intended to simplify and improve aspects of network security management by adding role-based access control (RBAC) to Cisco's switches.

"The thing you have to think about with existing technologies is what is missing," said John McCool, senior vice president of Cisco's Internet Systems business unit, at a news briefing.

While current network security techniques check data at its ingress point, McCool said, RBAC recognizes data in relation to a user's role and regulates what is and is not allowed, based on that role.

TrustSec helps move network security from threat defense (stopping a virus or an exploit) to managing at the switch level what users can and cannot access, solving a critical problem as system administrators worry less about external threats and more about data leakage and other internal threats that are often posed by users with legitimate network access that is not effectively limited.

Robert Whiteley, a senior analyst with Forrester Research, said the biggest challenge facing network administrators today is the tradeoff between allowing access and maintaining security. Cisco's solution, though not revolutionary, elegantly helps solve that problem, he said.

Whiteley said Cisco was playing to its advantages: a large market share with a typical installation using 100% Cisco switches. Over the next 18 months, TrustSec will be rolled out across Cisco's switching product lines, meaning that older installations will also be able to take advantage of the features – and administrators will have one more reason not to migrate away.

Since TrustSec will be available across Cisco product lines, it can rely on standardized protocols and a consistent system. Whiteley said this pervasiveness, which allowed Cisco to "bake security into the network," was important because networks could rely less and less on firewalls to keep security risks at bay and instead must regulate users both inside and outside the network.

Cisco's competitors are working on similar RBAC techniques, Whiteley said, but they inevitably run into one of two problems: Either their infrastructure must be put at every security "choke point" or their hardware must be used throughout the network. For administrators looking to build a multi-vendor network, neither is a particularly palatable option.

Companies under security or compliance mandates could find the technology useful almost immediately as they seek to better secure and manage access to data in their networks, Whiteley said, and previous investments in Cisco technology would help lower the financial barrier to moving toward RBAC.

He added, however, that moving to TrustSec would involve some "growing pains" as policies are put in place and administrators get used to RBAC. But at the end of the tunnel, cost savings would be likely to result because data leaks and breaches – which Whiteley said were some of the most expensive threats – could largely be mitigated.

Tags: Network Access ControlNetwork Security Best Practices and ProductsVIEW ALL TAGS

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us    Add to Google



RELATED CONTENT
Network Access Control
What are two common devices that control outbound network access?
Using NAC for smartphone security on wireless LAN
Network security risks multiply when enterprises begin outsourcing
Dynamic policy ensures faster, safer network for school district
NAC appliance vendors: Can you depend on them?
NAC integration at the endpoint
Extending NAC enforcement to network security devices
Integrating NAC with network security tools
Network access control market crushed by economy, but future is bright
Joel Snyder discusses Network Access Control Day at Interop Las Vegas

Network Security Best Practices and Products
How do I change my security setting to allow ActiveX?
What are two common devices that control outbound network access?
3Com acquisition confirms HP-Cisco battle for China
Enterprises demand next-generation firewalls with IPS, app visibility
Preventing hacker attacks with network behavior analysis IPS
Is there a way to trace my stolen laptop computer?
Integrating NAC with network security tools
Should organizations separate technical from administrative security?
What network equipment is needed to secure a small business LAN?
Ethical hacking and countermeasures: Network penetration testing intro

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
network access control  (SearchNetworking.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary



Comprehensive network management resources, expert solutions, and professional research informing your technology decisions
About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides technology professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective purchase decisions and managing their organizations' technology projects - with its network of technology-specific websites, events and online magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2000 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts