Jumping into open-source NAC with PacketFence ZEN
It provides a good introduction to virtualization and network access control
May 21, 2007 12:00 PM ETComputerworld -
In a previous article, I discussed some of the basic features of network access control (NAC) systems. While there are many commercial vendors of NAC systems, turning to an open-source product can often be a cost-effective functional alternative.
However, without a solid Linux systems administration background, properly installing and configuring open-source NAC applications can be extremely frustrating. One can get lost in getting separate dependent packages to work before even starting the NAC application.
At least that's how it was. The developers of one Linux-based open-source NAC application, PacketFence, have used another hot area in IT -- virtualization -- with their release of PacketFence Zen (PF ZEN). PF ZEN is a precompiled and configured VMware Inc. version of PacketFence built on Fedora Core 6.
The result is a Linux-based NAC system running on Windows that is almost too easy to install and doesn't require complex Linux administration skills. In fact, that was the primary motivator for developing the ZEN distribution of PacketFence, which stands for "Zero Effort NAC." PF ZEN was produced to "allow users to bring up a NAC solution with minimal effort and little to no Linux expertise", explains PacketFence developer David LaPorte.
Because installing PF ZEN involves NAC and virtual machine technologies, it provides an excellent introductory experience to both. The best part is that you don't have to spend hours on installing an operating system, loading dependent packages and configurating a basic NAC setup. The VMware appliance does it all, and not only with near zero effort, but also near zero cost.
Virtualization as an evaluation tool
Virtualization involves inserting an abstraction layer into the client/server path. Load balancers are a common form of virtualization to an extent; what the user sees as one server may in fact be one of several dozen machines, each performing the same delivery task.
A virtual machine can be looked at as load balancing in reverse. Instead of using multiple machines to deliver one application, one machine can host several virtualized machines. A client may access a company's Web page from one server, mail from another and calendar from a third, when in reality all three servers may be virtualized instances on a single hardware platform.
VMplayer is a free product from VMware to run virtualized machine packages called appliances. The concept is simple: Load the VMware player, download a virtual appliance file, and play it. VMplayer opens a window to the virtualized machine, and from there the virtualized machine acts like a stand-alone server.
A properly built appliance loads a separate precompiled and configured operating system on the existing computer's operating system. This allows for testing of operating systems and applications without dedicating hardware to it. Several appliances are available on the VMplayer Web site, including PF ZEN.
network access control
Additional Resources



White Papers & Webcasts
How to Secure and Accelerate Your Oracle Applications
Learn about the escalating application performance and security challenges facing corporations, today!
Aligning IT to Business: The Rising Importance of Application Delivery Networks
Application Delivery Networking (ADN) will play a vital role in helping enterprises incorporate strategic technologies to achieve business initiatives.
Optimize Performance of Datacenter to Datacenter Traffic
To get the backups and database synchronizations completed on time, enterprises rely on WAN optimization from Blue Coat.
Mitigate Risk, Lower Costs and Improve Network Efficiency
Create a stable IP network that not only meets today's challenges, but is flexible enough to also meet future demands.
Enterprise Application Delivery: No User Left Behind
Gain the ability to deliver applications to all users, using any device, across any network.
Preparing Your Business Services for the Future
Would you trust your network monitoring tools enough to know when something is truly halting a business service?
Practical Strategies to Accelerate Business Applications Across the WAN
Discover how Blue Coat SG appliances, uses five essential techniques to speed delivery of internal and externally hosted business applications
IPAM: Slashing Network Costs
Slashing Network Costs by Consolidating and Automating Core Network Services
Infonetics: WAN Optimization Appliance Market Highlights 1 Q09
Vendor market share positions shuffled once again in 1Q09, learn more now!
Horror stories: Managing IT Across Multiple Locations
How one extra sharp IT manager eliminates daily agony, hassle and repetition.
