loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
32nd IEEE Conference on Local Computer Networks (LCN 2007)
TNC-compatible NAC System implemented on Network Processor
Dublin, Ireland
October 15-October 18
ISBN: 0-7695-3000-1
An'an Luo, Tsinghua University, China
Chuang Lin, Tsinghua University, China
Zhen Chen, Tsinghua University, China
Xuchai Peng, Tsinghua University, China
Peter D. Ungsunan, Tsinghua University, China
In this paper, based on the Trusted Network Connect architecture, we designed a novel TNC-compatible Network Access Control System which ensures that network administrators enforce security policies on endpoint connection and communication with corporate network depending on the endpoint integrity and security status. The platform framework is built on the Intel IXP2400 network processor and a set of network access control mechanisms is implemented. The paper introduces the system design and implementation based on hardware characteristic of the IXP2400 Architecture, presents emulation performance results of the system, and then proposes systemic performance optimizations, especially cryptographic performances, according to IXP2400 shared memory hierarchy and access latency, which averagely boost the throughput more than 25%. The novelty of system design is the utilization of IXP2400 multi-core and multi-thread network processor?s software and hardware platform to implement the NAC system framework through secure and reliable communication to ensure endpoint integrity and platform-authentication, which is compatible with Trusted Network Connect.
Index Terms:
TNC; network access control; network processor; AES algorithm
Citation:
An'an Luo, Chuang Lin, Zhen Chen, Xuchai Peng, Peter D. Ungsunan, "TNC-compatible NAC System implemented on Network Processor," lcn, pp.1069-1075, 32nd IEEE Conference on Local Computer Networks (LCN 2007), 2007
Usage of this product signifies your acceptance of the Terms of Use.