Essential NAC
Genians’ Next-Gen NAC provides any organization with the most essential cybersecurity features and functionalities. These act as a seed from which one can cultivate a robust cybersecurity environment while offering the most affordable pricing and flexible deployment options.
Actionable Compliance
Achieving cybersecurity in the real world means going beyond the constraints of any given set of compliance requirements and taking the necessary actions that an active, real-time approach to security management necessarily involves.
Network Surveillance
Genian NAC can monitor IP-enabled devices on your network in real-time using a non-disruptive Layer 2 based Network Sensor and classifies those devices and their users into logical groups based on your business requirements. Genian NAC has the intelligence to sort out a wide range of network-connected devices and their states to present immediate, meaningful, and actionable information.
Coverage
- Monitor heterogeneous network environments without changing existing network configuration
- Monitor wireless packets by Wireless Sensors or Agents
- Monitor all managed, unmanaged, and even legacy networking devices
Detection
- Provide the most accurate device platform information and see access trends
- Discover contextual access information (Who, What, Where, When, How)
- Detect compliance status change on time
Observation
- Find non-compliant, unknown, rogue, misconfigured devices
- Discover abnormal network traffics (e.g. ARP Spoofing/Bombing, MAC/IP Cloning, Port scanning, Invalid Gateway)
- Present personalized information through fully customizable dashboards
DEVICE PLATFORM INTELLIGENCE (DPI)
“Device Platform” refers to any hardware or software, or any combination of hardware and software (OS), used to access a network.
Genian NAC incorporated with Device Platform Intelligence (DPI) can present the most accurate device identity, its contextual, and its risk information in order to enhance network visibility and secure network access for the IoT era. DPI can be shared through the Genians Cloud.
Identity
Distinct information
- The name of Device Platform consists of manufacturer, device name, model number (Integrated with the Common Platform Enumeration (CPE) dictionary)
- The actual picture of the device platforms
The list of device fingerprinting sources - Network connection type (Wired, Wireless)
Released Date
Context
Business Information
- Product end of life (EOL)
- Product end of support (EOS)
- Manufacturer business status
- Manufacturer location (Country)
- Manufacturer homepage
Extended Information
- Linked to Product webpage
- Linked to Google search engine
Risk
Technology Vulnerability
- Provide Common Vulnerabilities and Exposures (CVE)
- Report device platforms exposed to vulnerability issues in real time
- Alert and notification
Business Vulnerability
Report manufacturer/vendor going out of business or being acquired, which can introduce systems that cannot be upgraded or patched
NAC
Genian NAC leverages multiple techniques to enforce IT security policies dynamically using contextual information (What, Who, When, Where, How) to quarantine any non-compliant devices and remediate them to be compliant through automated processes.
Dynamic Access Control
- Condition-based grouping (Over 500 predefined conditions)
- Policy assignment based on the status change of endpoint compliance
- End-to-end access control inside of LAN
Multi-layered Access Control
- 802.1x: Built-in RADIUS server
- DHCP: Built-in DHCP server
- Layer 2: ARP Enforcement (using Network Sensor)
- Layer 3: TCP reset (using Mirror/SPAN Sensor)
- Layer 3: Inline Enforcement (Dual-homed Gateway)
- Agent: NIC/Power Control, Alert Popup
- Integration: Firewall, Switch port shutdown (SNMP, Webhook)
Mobile, BYOD, Guest
In the hyper-connected world of the Internet of Things (IoT), organizations are grappling with implementing Bring Your Own Device (BYOD) initiatives to deal with the rapidly evolving and increasingly complex tsunami of mobile devices, from laptops and tablets to other smart ”Things”, such as phones, watches, cars and more. Genian NAC can provide flexible and secure network access, wherever you are located, and for whatever devices you bring to the network.
Onboarding Process
- Check user authentication and device compliance status
- Guide users to meet compliance (Self-service process)
- Provide role-based access control
Secure Access Request
- Captive Web Portal service
- Built-in RADIUS server (802.1x)
- User authentication (AD, local DB, RDBMS, Google G-Suite)
- Request approval system (Device, IP, User, Peripherals)
IP Address Management (IPAM)
Through our intuitive IP matrix interface (Class C Subnet mask), see how many IP addresses are being used and available, which IP’s are assigned via DHCP, which are reserved, and more.
Monitoring
- See the usage of IP address for each network segment
- Identify who/what device connecting to an IP address
- Monitor the change of IP addresses
Comprehensive IP Management
- Built-in DHCP Server
- IP Address (Allow, Deny, Lease, Assign)
- IP Conflict / Change Prevention
- MAC/IP Cloning Detection
Switch Port Management
See how many devices are connected to specific ports, their connection status, port-level security, 802.1x information, traffic, utilization and more. Using 802.1x port-based access control, control any ports connected to non-compliant devices.
Monitoring
- Identify how many devices are connected to specific ports
- Check the authentication status of connected devices
- Monitor Switch port status (Up/down, Security, 802.1x, VLAN, etc.)
Port Management
- Switch and Port Description
- Administratively Down
- Discover Top 10 Switch Port Traffics
WLAN Security
Genians’ Network Sensor has the capability of scanning all SSIDs in your network and identifying who connects to which SSIDs, capturing not only your organization’s APs but also neighboring APs and controlling what is connecting to those APs. You can allow or deny Wifi-enabled devices accessing different SSIDs based on their policy compliance by groups, such as Authorized AP, Rogue AP, Misconfigured AP, Tethering device, and more.
WLAN Monitoring
- Detect SSIDs by Wireless Sensor or Agent
- Discover all connected wireless devices per SSIDs
- Discover where SSIDs are located
- Detect APs connected to corporate networks
WLAN Compliance
- Detect non-compliant wireless devices (APs, mobile devices)
- Detect rogue and misconfigured APs
- Detect hidden APs and softAPs
Wireless Connection Manager
- Manage wireless connection profile
- Disable SoftAP
- Provide a single-click wireless connection service
- Allow connections only to authorized APs
- 802.1x supplicant plugin (EAP-GTC)
Endpoint Security
Manage all desktop configurations, applications, OS Updates, peripheral devices, wireless connections and more. Standardize the configuration of corporate-owned devices automatically and control them remotely.
- Change Computer Name
- Check Password Validation
- Collect System Information Using WMI
- Configure Windows Security Settings
- Control OS Updates (Works for the isolated network)
- Configure 802.1X Wired Authentication
- Profile Settings
- Control Antivirus Software Settings
Control DNS
Control External Devices (e.g. USB, Printer)
Control Internet Explorer Security Settings
- Control Network Folder Sharing / Interface / Traffic
- Control Power Options, Screen Lock
- Provide Wireless Connection Manager (Zero configuration)
- Control WLAN
- Deploy Files
- Inspect TCP Connections
- Manage ARP Table
- Install / Remove software
- Run Scripts
- Terminate Processes
IT Security Automation
Genian NAC integrates a wide range of IT security and business solutions (Firewall, VPN, IDS/IPS, VM, MDM, SIEM, APT, DLP, CRM/ERP, etc.) to ensure unified policy enforcement. Genian NAC supports custom integration using Webhook, REST API, and Syslog.
Perimeter Security System (Next-gen Firewall)
- Give: IP-User information for user-aware policy
- Take: Receive Infected Endpoint IP or MAC then quarantine it
Threat Detection System (SIEM, ATP, VA, EDR)
- Give: IP information (user, history, platform.)
- Take: Receive Infected Endpoint IP or MAC than quarantine it
Enterprise Mobility Management
- Give: New device information
- Take: Block mobile devices if EMM agent is not installed