Skip the navigation

Jumping into open-source NAC with PacketFence ZEN

It provides a good introduction to virtualization and network access control

By Greg Schaffer
May 21, 2007 12:00 PM ET

Computerworld -

In a previous article, I discussed some of the basic features of network access control (NAC) systems. While there are many commercial vendors of NAC systems, turning to an open-source product can often be a cost-effective functional alternative.

However, without a solid Linux systems administration background, properly installing and configuring open-source NAC applications can be extremely frustrating. One can get lost in getting separate dependent packages to work before even starting the NAC application.

At least that's how it was. The developers of one Linux-based open-source NAC application, PacketFence, have used another hot area in IT -- virtualization -- with their release of PacketFence Zen (PF ZEN). PF ZEN is a precompiled and configured VMware Inc. version of PacketFence built on Fedora Core 6.

The result is a Linux-based NAC system running on Windows that is almost too easy to install and doesn't require complex Linux administration skills. In fact, that was the primary motivator for developing the ZEN distribution of PacketFence, which stands for "Zero Effort NAC." PF ZEN was produced to "allow users to bring up a NAC solution with minimal effort and little to no Linux expertise", explains PacketFence developer David LaPorte.

Because installing PF ZEN involves NAC and virtual machine technologies, it provides an excellent introductory experience to both. The best part is that you don't have to spend hours on installing an operating system, loading dependent packages and configurating a basic NAC setup. The VMware appliance does it all, and not only with near zero effort, but also near zero cost.

Virtualization as an evaluation tool

Virtualization involves inserting an abstraction layer into the client/server path. Load balancers are a common form of virtualization to an extent; what the user sees as one server may in fact be one of several dozen machines, each performing the same delivery task.

A virtual machine can be looked at as load balancing in reverse. Instead of using multiple machines to deliver one application, one machine can host several virtualized machines. A client may access a company's Web page from one server, mail from another and calendar from a third, when in reality all three servers may be virtualized instances on a single hardware platform.

VMplayer is a free product from VMware to run virtualized machine packages called appliances. The concept is simple: Load the VMware player, download a virtual appliance file, and play it. VMplayer opens a window to the virtualized machine, and from there the virtualized machine acts like a stand-alone server.

A properly built appliance loads a separate precompiled and configured operating system on the existing computer's operating system. This allows for testing of operating systems and applications without dedicating hardware to it. Several appliances are available on the VMplayer Web site, including PF ZEN.



Additional Resources
Forrester Consulting - Optimizing Users and Applications in a Mobile World
WHITE PAPER
Solving application issues over the WAN requires careful consideration. Based on their independent research, Forrester Consulting offers recommendations on how to tackle application performance issues, insufficient bandwidth and the inability to quickly restore users in a disaster.

Read now.

Security KnowledgeVault
WHITE PAPER
Security is not an option. This KnowledgeVault Series offers professional advice how to be proactive in the fight against cybercrimes and multi-layered security threats; how to adopt a holistic approach to protecting and managing data; and how to hire a qualified security assessor. Make security your Number 1 priority.

Read now.

Cut Communications Costs Once and for All
WHITE PAPER
New IP-based communications systems are being deployed by small and midsized businesses at a rapid rate. Learn how these organizations are enabling faster responsiveness, creating better customer experiences, speeding office or mobile interactions, and dramatically reducing existing communications costs.

Read now.

Networking White Papers
Digital Transformation: Creating New Business Models Where Digital Meets Physical
Individuals and businesses alike are embracing the digital revolution. Social networks and digital devices are being used to engage government, businesses and civil...
Make the Connection: Better Network Connectivity Drives Transformation
Network connectivity is more than just plumbing. Leading organizations today see high-performance network connectivity as a critical enabler of competitive advantage, and not...
Virtualizing Government Infrastructure
All server virtualization solutions are not created equal. The more-with-less agenda for government agencies is tailor-made for server virtualization, which is evolving into...
Moving Service Management to SaaS
Today, organizations can enjoy similarly substantial benefi ts by migrating their IT service management functions to a software-as-a-service model. This paper shows how...
Achieving 360 Degree Network Visibility with Nimsoft
360° network visibility is critical for ensuring continuous availability of networks, servers, and applications-anything less could
have costly bottom-line implications.
All Networking White Papers
Networking Webcasts
Optimizing Networks for the Cloud
Join guest speaker, Rohit Mehra, IDC Director of Enterprise Communications Infrastructure, to explore current trends, discuss best practices for optimizing Data Center and...
Unified Communications 101
What's the best way to implement a unified communications solution for your organization?
Try the OptiView® XG on your network - FREE
The OptiView® XG is the first dedicated tablet with automated network and application analysis -- fastest way to root cause. XG raises the...
Apps QuickStart Series Part 2: Designing and Deploying SQL Server on VMware vSphere
Download this webcast to learn about the design considerations for virtualizing SQL workloads, performance and scalability information and high-availability options, as well as...
Apps QuickStart Series Part 1: Designing and Deploying Exchange 2010 on VMware vSphere
Download this webcast to learn the virtual hardware design considerations for Exchange 2010, deployment using the building block approach, options for high-availability and...
All Networking Webcasts
Newsletter Sign-Up

Receive the latest news test, reviews and trends on your favorite technology topics

Choose a newsletter
  1. View all newsletters | Privacy Policy
IT Jobs