- 12 myths about how the Internet works
- Smartphone smackdown: Storm vs. iPhone
- IETF: Should we ignore the Kaminsky bug?
- Top 10 wicked cool algorithms
- How to recession-proof yourself
Senior Editor Tim Greene clarifies issues surrounding the evolving NAC security architecture.
Mark your calendars for a live chat session about NAC hosted by Network World that features Joel Snyder and Richard Stiennon.
These are two of the best informed and articulate experts on NAC that you will find anywhere, and in addition to being educational, this should be entertaining.
The chat is scheduled for Tuesday July 22 from 2 p.m. to 3 p.m. EST. On that day just click here to log in (login begins at 1 p.m. EST, no registration required).
Snyder, who is a perennially popular NAC instructor at Interop, has jumped into NAC with both feet since Microsoft has shipped its version of NAC, claiming that Microsoft’s entry will be the catalyst businesses need to move forward deploying NAC. “The NAP client is just a base,” Snyder said in an earlier chat. “You don't just do everything that Microsoft says, right? They provide a great base and you build on top of that to meet your needs.”
Stiennon - a former Gartner analyst whose declaration that IDS was dead back in 2003 led to his testifying to Congress about whether government was wasting money on the technology - says NAC can do nothing to enhance security. Three reasons:
1. NAC does nothing to stop the malicious user with a clean computer from having their way with your network.
2. A zero-day infection will infect properly configured machines with up-to-date signatures.
3. NAC violates Stiennon's first and only rule of network security, "Thou shall not trust an end point to report its own state."
This showdown should be fun. Don’t miss it.
Snyder is a senior partner with Opus One, a consulting firm in Tucson, AZ, and a member of Network World Lab Alliance.
Stiennon is a security consultant, popular speaker and founder of Seccom Global, a managed security service provider focused on unified threat management. He writes the Stiennon on Security blog for Network World.
Tim Greene is senior editor at Network World.
Partner Content
Brilliantly simple security and control solutions for email, web and endpoint
www.sophos.com
Stopping data leakage
Learn how to exploit your current security investment to control the information that flows into, through and out of your network.
Download the white paper.
Why detection rates aren't enough
Evaluating endpoint security products is a time-consuming and daunting task. Learn the six critical questions you need to ask prospective vendors to get the right endpoint solution.
Download the white paper.
Applications: taking back control
Employees installing unauthorized applications is a growing threat to business security and productivity. Cost-effectively reduce this threat by integrating control into your malware protection.
Learn more today.
Comments (5)
Stiennon's feeling the pressureBy Anonymous on July 17, 2008, 9:08 amStiennon seems to lose it in a tiff with the Mirage Networks CTO here - www.mirageblog.com. I'm all for cursing, but he appears frazzled and looks like he's feeling...
Reply | Read entire comment
I made the comment on Snyder by KO in 3By ashimmy on July 10, 2008, 3:42 pmWas not logged in with my own name, sorry!
Reply | Read entire comment
Surely this will be impartial ;-)By Anonymous on July 10, 2008, 1:50 pmAnyone know which vendor will have paid them this time?
Reply | Read entire comment
I say Snyder by a knock out in 3By Anonymous on July 10, 2008, 11:41 amThe smart money is on Joel by a knockout by the third round. Richard confuses admission control with access control. Once that definition is out of the way, he...
Reply | Read entire comment
Debate with an advocateBy Mitchell Ashley on July 10, 2008, 1:23 pmI wouldn't exactly call either an advocate of NAC. I'm guessing this will more more of a NAC-bash than a NAC debate.
Reply | Read entire comment
View all comments