3.3.1 Secure communication

The components are designed to provide a high level of security between the various elements in the solution. We provide a description of how the various components securely communicate, and Figure 3-7shows an overview of the secure communications.

 

 

CA Server

 

 

 

Server

 

 

Server

Certificate

Server

Certificate

 

Certificate

AAA Policy

 

Compliance

Remediation

Server (ACS)

 

Server (SCM)

Server (TCM)

EAPoRADIUS

Root

 

 

Certificate

 

 

 

 

 

Policy

 

 

SSL

Enforcement

PEAP

SSL

Device (NAD)

 

 

 

EAPoUDP/

 

 

 

EAPonLAN

 

 

 

Cisco Trust Agent

SCM

Remediation

Client

 

Client

Handler

Client

 

 

 

Figure 3-7 Secure communication between components

62Building a Network Access Control Solution with IBM Tivoli and Cisco Systems

Page 80
Image 80
IBM Tivoli and Cisco manual Secure communication between components