From: Laidlaw, Patrick A. (Patrick.Laidlaw@wwt.com)
Date: Wed Jan 02 2008 - 17:51:33 ARST
That is not what Cisco NAC is for. Cisco Nac is posture assessment for
pc's connecting to your network, IE do you have AV up to date are your
patches up to certain rev levels, do you have some software installed
etc. IF all yes's then your allowed on my network.
If you have T1's in multi vendor closets then you should encrypt the
traffic across the WAN.
Patrick
-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Andy Cole
Sent: Wednesday, January 02, 2008 9:52 AM
To: Qingli Gao; ccielab@groupstudy.com
Subject: RE: OT-- network security in big building
That is what Cisco NAC is for,
http://www.cisco.com/en/US/products/ps6128/index.html
-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Qingli Gao
Sent: Wednesday, January 02, 2008 12:48 PM
To: ccielab@groupstudy.com
Subject: OT-- network security in big building
Hi All, Happy new year!
Recently I am working on a risk assessment for some branch offices for a
Company. Those branch offices are all located in a big/high building
around the world.
It seems pretty standard that each building has a communication room
that terminate the out side circuit and then extend the circuit to the
actual office location/floor.
I am curious that how can we trust a building's security system/policy.
Since most circuit will deliver internal traffic without encryption. It
is not that hard to tap a T1/E1 line at all.
Any comments will be appreciated. I am wondering if this is the same
case everywhere.
Qingli
This archive was generated by hypermail 2.1.4 : Fri Feb 01 2008 - 10:37:57 ARST