- 1、本文档共47页,可阅读全部内容。
- 2、原创力文档(book118)网站文档一经付费(服务费),不意味着购买了该文档的版权,仅供个人/单位学习、研究之用,不得用于商业用途,未经授权,严禁复制、发行、汇编、翻译或者网络传播等,侵权必究。
- 3、本站所有内容均由合作方或网友上传,本站不对文档的完整性、权威性及其观点立场正确性做任何保证或承诺!文档内容仅供研究参考,付费前请自行鉴别。如您付费,意味着您自己接受本站规则且自行承担风险,本站不退款、不进行额外附加服务;查看《如何避免下载的几个坑》。如果您已付费下载过本站文档,您可以点击 这里二次下载。
- 4、如文档侵犯商业秘密、侵犯著作权、侵犯人身权等,请点击“版权申诉”(推荐),也可以打举报电话:400-050-0827(电话支持时间:9:00-18:30)。
- 5、该文档为VIP文档,如果想要下载,成为VIP会员后,下载免费。
- 6、成为VIP后,下载本文档将扣除1次下载权益。下载后,不支持退款、换文档。如有疑问请联系我们。
- 7、成为VIP后,您将拥有八大权益,权益包括:VIP文档下载权益、阅读免打扰、文档格式转换、高级专利检索、专属身份标志、高级客服、多端互通、版权登记。
- 8、VIP文档为合作方或网友上传,每下载1次, 网站将根据用户上传文档的质量评分、类型等,对文档贡献者给予高额补贴、流量扶持。如果你也想贡献VIP文档。上传文档
查看更多
l产品介绍
* We can let the stateful firewall and policy engine within the Aruba mobility controller do the work for us to separate wireless users. Because the mobility controller inspects all traffic and understands how the device was authenticated and authorized, we can create roles that assign a particular kind of rights and privileges to classes of users. This allows us to greatly simplify and collapse SSIDs. We might only have a single corporate SSID now, but within that SSID many different types of users such as contractors or employees can connect and have different roles. This is true even if they are on the same VLAN. The VLAN is not important anymore. Who that user is and what they are authorized to do is what is important. We can even support converged devices and allow voice calls within the corporate SSID that have a higher Quality of Service than normal data. Quality of Service is no longer dependent on the SSID. Instead it can be assigned based on the type of traffic, user or device. With this model in place, we can now implement a truly secure network that supports a wide variety of mobile users, applications and devices. Each one is authenticated, encrypted and authorized. More importantly, this context is maintained wherever the user may roam and regardless of the network. This is a powerful tool for security implementation and control. Single Point of Security Control – terminating encryption, authentication and policy enforcement in one place, the mobility controller. Everyone else splits this out into different places, creating a security vulnerability. Universal Authentication – support disparate authentication types (captive portal, 802.1x, VPN) with the same AP. Role-Based Access Control – Learned the purpose of the user (guest, contractor, employee-marketing, employee-finance, etc). A firewall policy will apply to each type of user. Stateful Firewalls – this is what enables policy enforcement. High-Speed Encryption – Hardware-based Processing -
您可能关注的文档
- I关于义务教育均衡发展理念下择校问题的调查报告.doc
- I基于风险评估的计算机化系统验证.docx
- I关于义务教育均衡发展的调研报告.doc
- l近视问卷初稿.doc
- I关于乡村闲暇业余生活情况及问题的调研报告.doc
- l还原性糖的问题.doc
- I基于高效课堂的小学高年级语文导学案探索与研究.doc
- I基因及基因药物的现状及前景.doc
- I关于乡镇干部管理问题调研报告.doc
- I基因基本概念.doc
- (5篇)乡村振兴工作总结精选.docx
- (3篇)2023年度民主生活会和组织生活会对照整改材料.docx
- (6篇)在关于开展学习“一带一路”倡议提出十周年的研讨交流发言材合集.docx
- 某县委在市委第一季度经济运行分析调度会上的表态发言材料.docx
- 区委书记在2025年区党风廉政建设大会上的讲话发言材料.docx
- 廉政党课讲稿:以扎实开展作风建设学习教育为契机,持续完善全面从严治党体系.docx
- 县委副书记在县委办公室新入职干部座谈会上的讲话发言材料.docx
- 县长在县生态文明建设和生态环境保护委员会2025年第一次会议上的讲话发言材料.docx
- 坚定信仰,加强基层党组织建设党课讲稿4篇.docx
- 在2025年干部任职宣布大会上的讲话发言材料.docx
文档评论(0)