NAC will permit your switches and/or routers to broker connections to your network based on a level of Trust that you define for your network.
The Trust can be determined by OS, Service Pack, AV installed, AV Dat Version, and CSA running.
For more info: http://www.cisco.com/go/nac
NAC is being released in multiple phases and requires multiple components.
Components:
- Cisco Trust Agent - on endpoints (servers/desktops)
- Network Access Device - Routers/Switches/APs/VPN Conc
- Cisco Access Control Server (CSACS) - used for Policy Decision
- CiscoWorks SIMS - optionally - used for Monitoring
- Anti-Virus Software
- Cisco Security Agent
Cisco Trust Agent
Will be delivered in AV code from TM, SYMC, NAI in summer time frame or downloadable from CCO.
Cisco Secure ACS
Version Supporting NAC will be available in June.
Network Access Devices will be phased in based on code release cycles:
Phase 1 - IOS Routers - certain codes - NAC at L3 boundry (June '04)
Phase 1b - L3 Switches - NAC at L3 boundry (Late Summer / Early Fall '04)
Phase 2 - L2 Switches - NAC on per L2 basis (Fall '04)
post Phase 2 - APs, FWs, VPN Conc