Home > Readers' Choice 2007 > Endpoint security
EMAIL THIS
Readers' Choice 2007: WINNERS BY YEAR: 2008, 2007


2007 PRODUCT CATEGORIES
Antimalware
Application security
Authentication
Database security
Emerging technologies
Endpoint security
Identity and access management
Intrusion detection/prevention (IDS/IPS)
Messaging security
Network firewalls
Secure remote access
Risk and policy management
Security information management (SIMs)
Unified threat management
Vulnerability management
Wireless security

Endpoint security

GOLD AWARD:
Symantec Network Access Control
Network access control for several years has been the most overhyped product category in the security industry, inheriting the title from previous champion PKI. Although vendors have promoted their wares as the next big thing, few have actually delivered any working products. Among those that have brought a system to market is Symantec, winner of the gold medal for endpoint security with its Network Access Control offering.

Symantec Network Access Control, like most similar offerings, uses a server-and-agent architecture in which an agent is installed on each endpoint on the network and administrators handle policy creation and enforcement from a central console. When a protected device connects to the network, the agent performs a series of integrity checks on it to determine whether it is complies with corporate policy. Readers gave the product high marks for its enforcement options, ability to integrate with the existing infrastructure, as well as its logging and reporting capabilities.

Administrators can design policies that require certain patch levels, antivirus signature versions and personal firewall settings before access is granted. Symantec Network Access Control also ships with some canned policy templates. If a device is found to be noncompliant, the system can bring the machine into compliance by applying required patches or other protections before allowing it full access to the corporate network.

Symantec NAC also has the ability to enforce policy on machines even when they're not connected to the network. And when an unknown device attempts to connect to the network via an SSL VPN, Web application or wireless switch, the system can install an on-demand agent to ensure the machine is within the accepted policy. Symantec NAC also includes support for 802.1x authentication over wired and wireless networks, as well as DHCP for LANs and wireless LANs. Interestingly, Symantec also has included support for Cisco's Network Admission Control agent.

The Symantec system gives customers the flexibility to use either a software and hardware approach or go with software only. The hybrid option requires the Symantec Sygate Policy Manager software and the Symantec Enforcer appliance, a 1U rack-mountable box that runs on a hardened version of Red Hat Linux ES 3.

VIEW ALL ENDPOINT SECURITY WINNERS

ADVERTISEMENT
TechTarget Security Media
Information Security View this month\\'s issue and subscribe today.
Information Security Decisions Apply online for free conference admission.
SearchSecurity.com
HomeNewsMagazineMultimediaWhite PapersLearningAdviceTopicsEventsAbout Us

About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Reprints  |  Site Map




All Rights Reserved, Copyright 2003 - 2008, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts