Networking-Forums.com

Professional Discussions => Security => Topic started by: icecream-guy on November 16, 2016, 06:50:41 AM

Title: goodbye NAC
Post by: icecream-guy on November 16, 2016, 06:50:41 AM
Software defined permiter, lol  interesting read though, added capabilities looks nice tho'

http://www.networkworld.com/article/3141930/security/goodbye-nac-hello-software-defined-perimeter-sdp.html
Title: Re: goodbye NAC
Post by: deanwebb on November 16, 2016, 09:21:22 AM
I read that and laughed a little. Sounds like a marketing spiel. Currently, CounterACT and Cisco ISE do the SDP thing with post-admission posture assessment. I'll grant that the letters can change, but the tech is already there.

The author, in my view, does not have an appreciation for the vast complexity necessary to properly identify all devices in the first place, let alone determine who should be talking to what. It's a major victory just having a stable system that can report on the enterprise in a large mulitinational.