Why is NAC (Network Access Control) so complicated?

Why is NAC (Network Access Control) so complicated?

WiteSand was acquired by Juniper Networks. Announced publicly in early 2022.

https://newsroom.juniper.net/news/news-details/2022/Juniper-Networks-Announces-Acquisition-of-WiteSand/default.aspx

I remember meeting Praveen Jain, Founder and CEO of WiteSand for the first time. We were introduced by a mutual friend who is an incredible entrepreneur in his own right and also a venture investor. I was running the NorCal Enterprise Sales Team at Juniper Networks and Praveen was coming off his time as a co-founder of Pensando. Praveen and I bonded immediately over a myriad of topics.??

  • If networks are truly North/South now due to cloud adoption, then why aren’t we just treating the campus as an Internet hotspot????
  • If customer campuses are inherently composed of multiple vendors, why isn’t there a consolidated platform to orchestrate it all?
  • If we can automate the Data Center, then why can’t we turn the Enterprise network into “code” through automation as well?
  • If networking equipment is still working, why can’t customers leverage the cloud for analytics against their existing infrastructure? Why are they forced to forklift?
  • If the industry is pushing everything to the cloud, why are the major network access control (NAC) vendors still selling appliances?
  • If the industry is pushing for more simplicity, why are NAC solutions so complicated?

As we started to talk deeper about NAC, we mutually agreed that the solutions in the market today are bulky, cumbersome, complicated to operate and, frankly, really old.? As customers are trying to SaaS'ify everything they can, the legacy NAC solutions in the industry today all suffer from these shortcomings:

  • Require the installation of on-prem boxes at various locations
  • Complicated workflows to deploy and maintain, often requiring a consulting practice
  • Inability to control all aspects of segmentation

NAC authenticates users and devices and eventually directs the network switches to enforce the policies. An independent NAC tool may duplicate the work of discovering, maintaining inventory, attracting network flows, and SNMP scanning, while still being limited in what it can enforce in switches. With legacy systems, implementing NAC requires extensive pre-configuration of switches, as well.

NAC should be Intent-Driven

If you think about it, by leveraging an intent-based NAC you don’t need to control all of the various knobs that you’re used to. Rather, with intent you can more easily – and automatically! – segment and isolate users. After all, there really is no need for one laptop to talk to another on the campus network.?

Over the last year as we have been evangelizing our solution and working with various incredible companies through POC trials and development, one key feature was always commented on: The WiteSand Cloud NAC. You’ve heard the expression, “You had me at hello”? ? Well, in our early demos and customer meetings we heard, ”You had me at Cloud NAC.”?

Why is that? Why were customers so excited and interested in our Cloud NAC?

NAC should be delivered from the Cloud

It’s critical from an operational side for customers to leverage cloud. This is especially evident when you see the adoption of tools like Office 365 or Google Workspace. If customers are outsourcing critical business functions to the cloud – email, calendaring, file sharing, web conferencing, chat, calling, and more – then one of the last holdouts is NAC.?

Recently, I was talking to one of our esteemed customers and as they moved to production they immediately validated this workflow and its simplicity. No more network downtime due to upgrades; fingerprints can be updated automatically, globally! This customer also pointed out that the agility of a microservices architecture that is API-based means no more waiting for a legacy provider (built on monolithic code) to promise a new critical feature in a future release. Instead, they can get those features in near-time with this type of approach.

It’s all about simplicity.? It’s all about automation.

Personal Email: [email protected]

Embracing cloud solutions simplifies NAC, offering agility & security. ?? Aristotle once hinted, the more you know, the more you realize you don't know - a truth that drives innovation. #enterprisenetworking #cloudfirst

回复

That’s fantastic progress ??! Navigating through NAC complexity to the cloud is no small feat. As Steve Jobs once said - Stay hungry, stay foolish. May your journey continue to be innovative and inspiring! ??? #innovation #CloudComputing #StayInspired

回复
Jeffrey Wilson

Sr. Account Executive & Enterprise Technologist

3 年

INTENT-based NAC! Whoop! There it is!

Ankit Chadha

Principal Networking Specialist

3 年

So y’all’s got day-0 (provisioning, security), day-1 (NAC, config, usual operations), day-2 (flow analytics, endpoint discovery) covered for all enterprise networking. Across vendors and wired/WiFi/IoT deployments. All with the agility of being cloud based. Solid value prop! Excited to learn more and see the demo.

要查看或添加评论,请登录

Sean Stanton的更多文章

  • Maximizing Efficiency: Asset Lifecycle as a Service with Revnue

    Maximizing Efficiency: Asset Lifecycle as a Service with Revnue

    In today's fast-paced business environment, maximizing efficiency is paramount for sustainable growth. One area where…

    4 条评论
  • Revnue helps eliminate application fatigue

    Revnue helps eliminate application fatigue

    Make technology work for you, not against you Having been in technology sales for over 30 years now, one common theme…

    4 条评论
  • What Makes Revnue So Unique?

    What Makes Revnue So Unique?

    In today’s fast-paced business world, effective contract management is essential for organizations to thrive. That’s…

    4 条评论
  • Reflections on my time with Uber Founder, Travis Kalanick

    Reflections on my time with Uber Founder, Travis Kalanick

    The NY Times recently interviewed me about the time I was Travis' Sales VP before Uber. Unfortunately, they truncated…

社区洞察

其他会员也浏览了