Making NAC Standard Progress: IETF accepts two TNC specs
comment No Comments Written by jj on March 11, 2010 – 3:41 pm

I’m excited to share with you this press released, jointly announced by TNC and IETF. Internet Engineering Task Force Publishes Network Access Control Standards Based on Trusted Computing Group Specifications. Keep reading to find out exactly what this means.

The roles of TNC and IETF
As many of you know from my posts and talks, I always distinguish between frameworks and standards. TNC is a consortium that created a framework for NAC communications and endpoint checks. Many vendors have already bought in to the TNC specifications, but there have been a few holding out; Cisco being the largest and most influential. Strangely enough, Cisco wanted to have a standard in place, versus a less formal framework. Ironic, I know. In any event, the IETF (in the form of IETF’s NEA) has been trying to fill that gap of true NAC standards. The problem has been that, although vendors said “yes” to the IETF standards, no one was contributing any new specifications for it. Here’s where TNC reenters the picture. Slowly but surely, the IETF has been adopting the TNC’s frameworks as accepted specs for the standards.

The importance of this announcement
Today’s news demonstrates one more big step in the right direction for TNC, IETF and all the vendors participating. With the acceptance of two more TNC specifications into the IETF standard, we can expect to round out the full IETF NAC Standard by the close of 2010. With a full set of standards, vendors will be able to offer scalable, evolving solutions that integrate more seamlessly with the rest of the infrastructure. Exciting, isn’t it!?

The announcement begins

Internet Engineering Task Force Publishes Network Access Control Standards Based on Trusted Computing Group Specifications

PORTLAND, MARCH 11, 2010 - Trusted Computing Group today announced that two specifications created by its Trusted Network Connect (TNC) work group have been accepted and published as specifications by the Internet Engineering Task Force (IETF). This means that developers and OEMs wanting to create network access control products now will have a single set of standards to support.
“Enterprise users are the real winners; the agreement on a single standard for network access control and endpoint assessment will provide consistency across products from leading networking vendors,” said Russ Housley, chairman of the IETF.

Noted Steve Hanna, co-chairman of the TCG TNC work group and of the IETF working group on this topic, “This industry-wide agreement on standards will increase the number of vendors and customers adopting standards-based network security. In addition, products developed for the new standards can be deployed with the many existing products using TNC specifications to protect the network and critical assets from a myriad of threats.”

The first standard (called PB-TNC by the IETF and IF-TNCCS 2.0 by the TCG) defines a standard way to perform a health check of a network “endpoint” such as a laptop computer or printer. If the endpoint is not healthy, it can be fixed or have its network access restricted. The second standard (called PA-TNC by the IETF and IF-M 1.0 by the TCG) defines a standard set of health checks that are commonly performed, such as checking anti-virus status. These newest standards are based on the TNC standards that customers have been using for years.
continued

You can read the full press release online at: http://www.trustedcomputinggroup.org/media_room/news/113

Look for more information and content soon about TCG’s TNC, IETF and NAC standards, including a video interview with TNC’s Steve Hanna.

Resources and links:

 # # #

Maker Faire Comes to NC April 25th
comment No Comments Written by jj on March 10, 2010 – 1:22 pm

That’s right! Maker Faire is coming to the East Coast April 25, 2010 right here in the Triangle of NC. Keep reading to learn about this GREAT event and how you can participate!

 

What is it?
Maker Faire:NC is a newfangled fair that brings together science, art, craft and engineering plus music in a fun, energized, and exciting public forum. The aim is to inspire people of all ages to roll up their sleeves and become makers. This family-friendly event showcases the amazing work of all kinds of makers–anyone who is embracing DIY and wants to share their accomplishments with an appreciative audience.

Costs and Participation
Attend: FREE
Makers: FREE
Exhibitors: $50 - $200 (100-1600 sq ft)

A note from the organizer:

Maker Faire is an annual event organized by the people who bring us MAKE Magazine.  Maker Faire:NC is a fully sanctioned event but is being planned and coordinated by Raleigh/Durham locals.  Our goal is to bring together Makers, Crafters, Inventors, Evil Geniuses, Scientists, Artists, and anyone else interested in learning from NC, SC, VA, DC, and beyond.

Just like the bigger Left-Coast version, Maker Faire:NC celebrates things people create themselves — from James Bond-worthy electronic gizmos to Martha Stewart-quality “slow made” foods and homemade clothes. Inspiration is ubiquitous at the festival and there are surprises around every corner for people of all ages.

“At the surface, Maker Faire is a fun event for people of all ages,” explained (San Mateo 2009) Event Director Sherry Huss. “But we want people to experience more than just a weekend of creative entertainment, we want them to leave feeling inspired — that they too can create things, express themselves, and engage the world around them. Our goal is to resuscitate the spirit of American creativity and innovation.”

This video from the Full Size Maker Faire held in 2009 in California will give you a little idea of what we’re all about.

Ideas for Makers who want to participate (remember, it’s FREE)!

  • Green Tech and Clean Tech
  • Robotics
  • Music Performance and Participation
  • 3D Printers and CNC Mill
  • Textile Arts and Crafts
  • Home Energy Monitoring
  • Rockets and RC Toys
  • Radios, Vintage Computers and Game Systems
  • Electronics
  • Electric vehicles
  • Biology/Biotech and Chemistry Projects
  • Food and Beverage Makers
  • Kites
  • Shelter (Tents, Domes, etc.)
  • Unusual Tools, Machines, or Techniques
  • How to Fix Things or Take them Apart (Vacuums, Clocks, Washing Machines, etc.)

Links and Resources

# # #

Making NAC Standard Progress: IETF accepts two TNC specs

March 11, 2010 – 3:41 pm

I'm excited to share with you this press released, jointly announced by TNC and IETF. Internet Engineering Task Force Publishes Network Access Control Standards Based on Trusted Computing Group Specifications. Keep reading to find ...

Universal NAC Feature Model document

March 8, 2010 – 5:40 pm

Universal NAC Feature Model document:  A guide to model and compare NAC solutions Author: Jennifer Jabbusch White paper, feature and mechanical evaluation and comparison of Network Access Control technologies 24 pages, PDF format 2010-03-03 RSA Edition, first release Copyright ...

NAC, Endpoint Security and Revelations from the RSA P2P

March 5, 2010 – 8:36 pm

I'm not going to recount what was said during the session; RSA's Peer 2 Peer sessions are gracefully excused from the promiscuous ears of the media. I do, however, want to share a ...

Eight NAC and Endpoint Security Sessions at RSA

February 26, 2010 – 10:54 am

Looking for NAC and endpoint security sessions at RSA? If so, here's a list of the top eight sessions you don't want to miss. In chronological order: SEM-004 TCG Workshop: Industry's First International Security ...

RSA Sneak Peek: The Universal NAC Feature Model doc

February 25, 2010 – 6:02 pm

As I've announced earlier, during the P2P session I'm hosting at RSA on Endpoint Integrity and NAC, I'll be releasing for the first time ever our Universal NAC Feature Model. The contents of which include a ...

Lab Barbie: Firewall princess

February 10, 2010 – 6:10 pm

I've found a new inventive way to keep the boys out of my lab area. Meet Lab Barbie. Lab Barbie comes in a variety of styles. This photo is of SRX Barbie, beautifully clad ...

More Security Uncorked content at Tech Target

February 10, 2010 – 3:12 pm

At times, my new blog entries are sparse (at best). Unfortunately, much of my writing in the past year has been private for-hire content that will never make it in its original form ...

Security Uncorked: Nominated for Security Bloggers Award

February 10, 2010 – 2:57 pm

I'm surprised and flattered that among the hundreds of SBN members, my blog was nominated with four others for a Social Security Award for 2010. Although I was at first a little befuddled ...

Cloud Security Alliance at OWASP NC Meeting

February 9, 2010 – 11:46 am

To my North Carolina readers, I wanted to share an upcoming event with you. OWASP NC is hosting Jim Tiller to come share details about the Cloud Security Alliance. This is great opportunity ...

Get Uncorked!

Subscribe to JJ's Security Uncorked via email or by RSS feed.

Want to subscribe?

 Subscribe in a reader Or, subscribe via email:
Enter your email address:  
Find entries :