Skip Links

Network World

  • Social Web 
  • Email 
  • Close

McAfee's IPS enforcement is home grown

What is McAfee doing with the Lockdown intellectual property it has acquired?
Security: Network Access Control Alert By Tim Greene , Network World , 10/30/2008
Tim Greene
Sign up for this newsletter now!

Senior Editor Tim Greene clarifies issues surrounding the evolving NAC security architecture.

  • Share/Email
  • Comment
  • Print

Recently McAfee announced it was adding hardware enforcement to its NAC offerings by adding NAC software to its IPS appliance.

Previously, the company enforced NAC policies via its software agent placed on managed endpoints that supported a McAfee NAC agent.

The IPS-based enforcement allows NAC policies to be imposed on unmanaged devices on networks, such as guest and contractor laptops that don’t carry the McAfee NAC agent software.

Since the announcement, it was reported in a blog by NAC vendor Napera that McAfee has bought up the assets of defunct NAC vendor Lockdown Networks. There was speculation in that blog that McAfee’s IPS-based NAC enforcement was based on Lockdown technologies.

Well it’s not, according to McAfee. The IPS enforcement is home grown.

So what is McAfee doing with all that Lockdown intellectual property?

“The development team is leveraging it but it has not yet been included in any McAfee products,” a spokeswoman says.

Is there a plan to include the technology in McAfee products?

“They won’t disclose at this time, but it’s possible,” the spokeswoman says.

Well of course they’re going to incorporate it. Lockdown had an appliance that could enforce NAC policies on switches via SNMP. That is a preferred method for enforcing NAC because it is closer to the endpoint itself and doesn’t require proliferation of IPS devices.

Beyond that, McAfee said when it announced its IPS enforcement that early next year it would introduce a NAC-only appliance. Chances are it will be based on the Lockdown gear.

Tim Greene is senior editor at Network World.

  • Share/Email
  • Comment
  • Print
Comments (1)
Login
Forgot your account info?

NAC not IPSBy toddhooper on October 30, 2008, 10:45 amThat's what I was blogging about Tim - the NAC appliance McAfee announced they would ship in Q1 2009. Clearly they couldn't build an IPS product from the assets...

Reply | Read entire comment

View all comments

Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed