<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic NAC implementation in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nac-implementation/m-p/1178599#M788294</link>
    <description>&lt;P&gt;Hello, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could I have some help in placing CAS and CAM servers in my existing topology :).&lt;/P&gt;&lt;P&gt;Indeed I want to verify the conformity of Remote users(Connected Via VPN) to my inside servers by NAC, but I have some difficult in placing them.&lt;/P&gt;&lt;P&gt;Is it possible to configure the CAS in VGW mode?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;please view the topology in attachement.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards/.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 11:29:17 GMT</pubDate>
    <dc:creator>i.ennassiri</dc:creator>
    <dc:date>2020-02-21T11:29:17Z</dc:date>
    <item>
      <title>NAC implementation</title>
      <link>https://community.cisco.com/t5/network-security/nac-implementation/m-p/1178599#M788294</link>
      <description>&lt;P&gt;Hello, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could I have some help in placing CAS and CAM servers in my existing topology :).&lt;/P&gt;&lt;P&gt;Indeed I want to verify the conformity of Remote users(Connected Via VPN) to my inside servers by NAC, but I have some difficult in placing them.&lt;/P&gt;&lt;P&gt;Is it possible to configure the CAS in VGW mode?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;please view the topology in attachement.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards/.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 11:29:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-implementation/m-p/1178599#M788294</guid>
      <dc:creator>i.ennassiri</dc:creator>
      <dc:date>2020-02-21T11:29:17Z</dc:date>
    </item>
    <item>
      <title>Re: NAC implementation</title>
      <link>https://community.cisco.com/t5/network-security/nac-implementation/m-p/1178600#M788301</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;is there a network (with servers or PC's) that sits between the front and back firewalls?  I don't often see designs like this with back to back firewalls.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What type of vpn/fw device sits closest to your ISP router?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you will have to configure the CAS in an in-band mode, either L3 or VGW.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 29 May 2009 13:41:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-implementation/m-p/1178600#M788301</guid>
      <dc:creator>srue</dc:creator>
      <dc:date>2009-05-29T13:41:43Z</dc:date>
    </item>
    <item>
      <title>Re: NAC implementation</title>
      <link>https://community.cisco.com/t5/network-security/nac-implementation/m-p/1178601#M788304</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;1/The FW that is closest to the ISP router is an ASA5550.the back FW is a fortinet.&lt;/P&gt;&lt;P&gt;The front FW is used as a VPN server, and there is a 2 DMZ, one for AAA Server, AD, CA Server. and the other is for Web servers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The back firewall is used to protect mission critical servers, and other networks connected to it.&lt;/P&gt;&lt;P&gt;2/The network that I want to protect using NAC is a set of servers that will be accessed by VPN users.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Where should I place the CAM and CAS servers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards/.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 29 May 2009 14:18:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-implementation/m-p/1178601#M788304</guid>
      <dc:creator>i.ennassiri</dc:creator>
      <dc:date>2009-05-29T14:18:25Z</dc:date>
    </item>
    <item>
      <title>Re: NAC implementation</title>
      <link>https://community.cisco.com/t5/network-security/nac-implementation/m-p/1178602#M788313</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Ismail,&lt;/P&gt;&lt;P&gt;   The Auth DMZ looks like a suitable zone to place NAM. &lt;/P&gt;&lt;P&gt;   Couple of questions, Im no pro in Fortinet, can you do source routing with it? Is the inside switch a L3 switch?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Jun 2009 00:43:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-implementation/m-p/1178602#M788313</guid>
      <dc:creator>Alan Huseyin Kayahan</dc:creator>
      <dc:date>2009-06-01T00:43:57Z</dc:date>
    </item>
    <item>
      <title>Re: NAC implementation</title>
      <link>https://community.cisco.com/t5/network-security/nac-implementation/m-p/1178603#M788327</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;the inside switch is a catalyst 3560, it supports L3.&lt;/P&gt;&lt;P&gt;so for the CAS , where I can place it? Can I configure it as Virtual gateway?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 01 Jun 2009 06:51:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-implementation/m-p/1178603#M788327</guid>
      <dc:creator>i.ennassiri</dc:creator>
      <dc:date>2009-06-01T06:51:47Z</dc:date>
    </item>
  </channel>
</rss>

