An upgrade of Cisco Systems Inc.’s Network Admission Control (NAC)technologies, announced last week, adds wider hardware support andseveral features designed to help companies better protect theirnetworks against insecure endpoint devices.But network managers and analysts said the fact that the NAC offeringis supported only on relatively new networking equipment from Cisco islikely to limit its appeal.“I think they’re moving in the right direction,” said Jim Kirby, anetwork engineer at Wells’ Dairy Inc. in Le Mars, Iowa. But adoptingNAC anytime soon would be a challenge because of the upgrades that theice cream processor would have to make to its network infrastructure,he said.As part of the NAC initiative, Cisco is selling a line of tools thatcan permit, restrict or deny admission to corporate networks based onthe security status of end-user systems. The products include agentsoftware for collecting security data from client systems, networkappliances that enforce security rules and a policy management server. Until now, the technology has been available only on Cisco’s routers.But the company said it plans to add support for NAC to its Catalystswitches by the end of next month. And as of last week, the productscould be used with Cisco’s wireless networking devices.Cisco is also making it possible for companies to enforce securitypolicies on systems they don’t own, such as PCs belonging tocontractors and business partners. Cisco is delivering the agentlesscapability in conjunction with security vendors Altiris Inc., QualysInc. and Symantec Corp. Extending Its ReachBob Gleichauf, chief technology officer for Cisco’s Security TechnologyGroup, said that more than 60 other vendors are now participating inthe NAC program, up from the three partners Cisco had when it shippedan initial set of products in June 2004.The fact that Cisco has finally extended NAC support to its switchesshould make the technology more interesting to IT managers, said JoelConover, an analyst at Current Analysis Inc. in Sterling, Va.“The closer to the PC or the endpoint that you can provide enforcement,the less chance that some malicious software that is on one PC canspread to others,” he said.Even so, the availability of NAC on only Cisco’s equipment could be ofsome concern to users who don’t want to get locked into a proprietarytechnology, Conover noted. He added that the cost of upgrading to newrouters and switches is another potential roadblock for users.Those are some of the reasons why Tripos Inc. won’t be able to adoptNAC in the foreseeable future, said Jerry Wintrode, a senior networkarchitect at the St. Louis-based drug research company. Tripos uses software from InfoExpress Inc. in Mountain View, Calif., toenforce security policies on the systems of remote employees. Thecompany has developed a homegrown tool for detecting and preventingunauthorized PCs from connecting to its LAN.Both capabilities are available as part of NAC. But upgrading theswitches and network management software Tripos now uses would costUS$160,000 to $170,000. Upgrading the InfoExpress suite so it couldreplace Tripos’ homegrown tool, on the other hand, would cost less, at$60,000, said Wintrode.By Jaikumar Vijayan – Computerworld (US) Related content news UK government plans 2,500 new tech recruits by 2025 with focus on cybersecurity New apprenticeships and talent programmes will support recruitment for in-demand roles such as cybersecurity technologists and software developers By Michael Hill Sep 29, 2023 4 mins Education Industry Education Industry Education Industry news UK data regulator orders end to spreadsheet FOI requests after serious data breaches The Information Commissioner’s Office says alternative approaches should be used to publish freedom of information data to mitigate risks to personal information By Michael Hill Sep 29, 2023 3 mins Government Cybercrime Data and Information Security feature Cybersecurity startups to watch for in 2023 These startups are jumping in where most established security vendors have yet to go. By CSO Staff Sep 29, 2023 19 mins CSO and CISO Security news analysis Companies are already feeling the pressure from upcoming US SEC cyber rules New Securities and Exchange Commission cyber incident reporting rules don't kick in until December, but experts say they highlight the need for greater collaboration between CISOs and the C-suite By Cynthia Brumfield Sep 28, 2023 6 mins Regulation Data Breach Financial Services Industry Podcasts Videos Resources Events SUBSCRIBE TO OUR NEWSLETTER From our editors straight to your inbox Get started by entering your email address below. Please enter a valid email address Subscribe