Dell PowerConnect W Clearpass 100 Software Palo Alto Networks User-ID Services - Page 20

Summary, Palo Alto Networks Vendor Specific Radius dictionary.

Page 20 highlights

6 Summary The necessity for application and user level visibility is today compounded by the explosion in requests for on demand Internet access. Whether its corporate guest access, a coffee shop hotspot or free wireless at a sporting event, users want to connect as easily and quickly as possible from a range of devices. This introduces a series of security challenges for IT administrators who ultimately are responsible for ensuring not only the ongoing security of the users and then network, but also for being able to provide historical forensic information about application usage. By deploying Amigopod and Palo Alto Networks technology, customers have the benefit of an integrated solution to both the operational and security requirements of providing network access to non Active Directory users. In the corporate environment, nontechnical operators can easily provision temporary guest accounts through Amigopod, and IT administrators have full application level visibility of individual guest traffic through the Palo Alto Networks GUI. In public access deployments where visitors often self-register themselves, the User-ID integration will provide an unprecedented level of visibility and control for network operators. In addition to the User-ID integration, Amigopod also now provides support for the new Palo Alto Networks Vendor Specific Radius dictionary. This enables additional support for authenticating SSL VPN users created on Amigopod and using radius return attributes to apply the appropriate policy. Similarly, this technique can be used for role based administration access for firewall administrators. 20| Palo Alto Networks User-ID Services Amigopod |Technical Note

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20

20
| Palo Alto Networks User-ID Services
Amigopod
|Technical Note
6
Summary
The necessity for application and user level visibility is today compounded by the
explosion in requests for on demand Internet access.
Whether its corporate guest access,
a coffee shop hotspot or free wireless at a sporting event, users want to connect as easily
and quickly as possible from a range of devices.
This introduces a series of security
challenges for IT administrators who ultimately are responsible for ensuring not only the
ongoing security of the users and then network, but also for being able to provide
historical forensic information about application usage.
By deploying Amigopod and Palo Alto Networks technology, customers have the benefit of
an integrated solution to both the operational and security requirements of providing
network access to non Active Directory users.
In the corporate environment, nontechnical
operators can easily provision temporary guest accounts through Amigopod, and IT
administrators have full application level visibility of individual guest traffic through the
Palo Alto Networks GUI.
In public access deployments where visitors often self-register
themselves, the User-ID integration will provide an unprecedented level of visibility and
control for network operators.
In addition to the User-ID integration, Amigopod also now provides support for the new
Palo Alto Networks Vendor Specific Radius dictionary.
This enables additional support for
authenticating SSL VPN users created on Amigopod and using radius return attributes to
apply the appropriate policy.
Similarly, this technique can be used for role based
administration access for firewall administrators.