
NTS MacMan
Controlled access to corporate networks is essential in times of cyber- and ransomware-attacks. Businesses must make sure that only authorized devices and users gain access to the network, ensuring protection from unauthorized access and potential security threats.
There are actions required to ensure the integrity, availability and security of the IT infrastructure. Furthermore, adherence to compliance guidelines needs to be guaranteed. Authorized accesses must be possible without great effort and attack vectors need to be minimized at the same time!
Cisco ISE
Large networks entail more control, but also more administration effort and thus higher risk. With Identity Services Engine (ISE), Cisco offers a solution that controls access to the network centrally. Thereby, requirements for clients as well as the resulting authorizations for connections via Wired LAN, WLAN and VPN can be defined. In the ISE, the administration of a MAC address database is an important task for the endpoint management and requires respective knowhow.
NTS positions themselves exactly at this point with their in-house developed software solution: NTS MacMan. With this solution, NTS offers their customers a solution to manage endpoints easily. With NTS MacMan, an administrator, a helpdesk employee or IT staff that work regularly with Cisco ISE are able to control access to the corporate network based on Mac addresses.
USAGE EXAMPLE FOR ACCESS MANAGEMENT
- (temporary) guest access to the network
- (permanent) access of devices without extended authentication (802.1x), e.g.: printer, phone
The corporate network access policy is essential. Thereby, it is an important point to make sure that users and devices that lose the right of access are not connected to the network anymore. In many cases, this is a manual task that takes a lot of time and that is prone to error as well. NTS MacMan provides an automated process for this. An endpoint can be provided with a freely configurable expiration date (e.g. 3 days) upon which it is automatically removed from the ISE endpoint group. The endpoint information continues to remain in NTS MacMan so that the endpoint can be quickly added to a new authorization group.
It is also possible to configure a permanent network access for endpoints by not specifying an expiration date for the access validity.
YOUR ADVANTAGES AT A GLANCE
- Simple creation and administration of endpoints, saves time and prevents mistakes
- Authorization structures for the allocation of endpoints to endpoint groups
- Automated deactivation of endpoints by means of an expiration date
- Logging to trace changes at endpoints
- Contributes to the protection from an unauthorized network access
NTS MacMan allows a simple adding/editing/deleting of endpoints, an allocation of endpoint groups, a definition of expiration periods and an authorization of authorization groups to only edit certain endpoint groups. And all these functions without a direct access to Cisco ISE.
If you would like to know more about NTS MacMan, then feel free to contact our sales team for more specific information and details at: sales@nts.eu.