Security experts at the Black Hat conference in Amsterdam have demonstrated how Cisco’s NAC network access control can be fooled. In a live demonstration using a modified Trust Agent, Michael Thumann and Dror-John Rocher from ERNW were able to gain full access to an NAC protected network using a computer which did not comply with network policies. According to the two security experts, Microsoft’s equivalent NAP system also suffers from this problem, but because of its deeper integration within Windows’ Active Directory, in practice it presents greater obstacles than the Cisco system.
Posted on Saturday, March 31st, 2007 at 5:42 pm and under category News.
You can read any responses through the RSS 2.0 feed.
You can give a response, or trackback from your site.