Wireless company sells secure wired ports

Not a wireless exit strategy, a bigger addressable market, says Aruba

Wireless security must be getting competitive (see recent stories): one of the start-ups in the area is spreading out to sell wired security as well. Aruba Networks has launched a version of its wireless "grid point" product - but without the wireless.

The Ethernet grid point is a £150 Ethernet socket that is controlled by a central Aruba Networks switch, much like the company's wireless access points and so-called grid points, launched in August. The benefit over existing sockets is that it allows authentication and IDS, without having to invoke 802.1x, explained the company (read the press release).

"Users were asking us to adapt our solution to wired ports," said Keerti Melkote, vice president of marketing at Aruba. The Aruba wireless solution includes the means to quarantine laptops, and companies want to extend this to wired ports where laptops - both their own and those owned by visitors - might be connected.

Although 802.1x authentication is available for free on most wired switches, he believes that this solution is needed because of issues in rolling out the solution: "802.1x only goes so far in meeting the requirements," he said. "There are many issues: once you upgrade a port to 802.1x, you pretty much disable every other kind of user, so customers have to carve up their networks." Also, he claimed that employees upgraded to get 802.1x access can no longer get access to non-802.1x ports: "Security starts to break mobility."

Because of the variety of users (guests and contractors for instance), most corporate LANs have some VLANs with no 802.1x, he says, and these need securing by other means. Putting IDS and other boxes into every wiring closet is expensive and doesn't scale, whereas the Aruba switch can hand control of those ports right to a specialist switch, where authentication, IDS, anti-virus and other services can be centralised - many of them provided by third parties, such as Fortinet for anti-virus, or Sygate for integrity checks.

Why go non-wireless? "We're certainly not doing a wireless exit strategy," says Melkote> "It extends mobile security to wired ports. It's a really easy way to get into a larger market." He reckons that most companies only need to add the £150 Ethernet grid point to between 10 and 20 percent of their ports, particularly those in public areas. "We do believe in the primary connection becoming wireless over time [Just as well Keerti, because that's what your boss says - Editor], but today's environment is a mixed environment."

Despite fierce debate, Melkote is backing the "wireless grid" idea of putting in a lot of access points without a site survey: "There's a lot of FUD coming out, saying the access point needs to be up in the ceiling. The wireless grid does work - we have had some deployments. If you don't optimise for floor deployments, it will not work."

Other vendors were keen to keep up the criticism: "They are taking over the play that Bluesocket started," said Alan Cohen, marketing manager of Airespace, likening the approach to the security gateway/firewall technique promoted by Blusocket. "Are they asking the user to terminate every perimeter access in their box? That could be a bit of a bottleneck."

"It's not a bottleneck if you cluster these boxes," responded Aruba communications director David Callisch. In other words, users will need to buy lots of boxes from Aruba? "For some reason, we don't have a big problem with that."

Previous Aruba campaigns have less successfully blurred the boundaries between wired and wireless. In July the company alerted the industry to a "wireless" security breach - that in fact requires access to the wired management VLAN.



What are your views on this subject? Use the form below to post a comment on this article up to 500 characters.


Characters remaining: 500

Related Mobile & Wireless news

Chip makers push Google Android devices

ARM and MIPS aim to put mobile OS everywhere

Sony struggles to ship ebook readers before christmas

Reader Daily Edition may miss holiday season

Organisations offered build-your-own iPhone app service

BuildAnApp looks to take grunt work away.

Microsoft updates Windows Mobile Marketplace

Enhances security, releases desktop PC client



Email this article to a friend or colleague:


PLEASE NOTE: Your name is used only to let the recipient know who sent the story, and in case of transmission error. Both your name and the recipient's name and address will not be used for any other purpose.

Techworld White Papers

Database security: Preventing enterprise data leaks at the source

IDC discusses the growing internal threats to business information, the impact of government regulations on the protection of data, and how enterprises must adopt database security best practices...

Download Whitepaper

Service-oriented security

SOA has become an integral part of enterprise software by providing a framework to efficiently develop software as services that is easily sharable, reusable, and integrated. No where is the need more apparent than in the Identity Management space. Welcome to the age of Service-Oriented Security (SOS).

Download Whitepaper

Data protection prospective vendor checklist

Organisations need a way to map business needs against all these challenges in procuring a technical solution. To help, SANS has developed the following Prospective Vendor Checklist.

Download Whitepaper

Unlock the power of the mainframe

This whitepaper presents the notion of CICS as an integration hub based on a component-based, service-oriented architecture supporting Web services. Highlights will review the challenges and contrasted support for Web services natively in CICS.

Download Whitepaper

Techworld UK - Technology - Business

COLT White Paper

Are all VoIP services the same?

Questions to ask your service provider to ensure you get the VoIP service you need
With careful choice of partner, your business can have all the advantages of VoIP access - reduced costs, flexibility and simplicity - without the drawbacks.
This white paper is your guide to ensure you get right the VoIP service and details the pitfalls which businesses would do well to avoid.

Download white paper
BMC

Ride the express lane in the journey to speed ITIL adoption

Explore the challenges in making the journey to ITIL and the criteria for selecting consulting services
By following ITIL practices, your IT organisation will become more closely integrated with the business. We recommend making the journey to ITIL in a sequence of six incremental steps, the phases of which are driven through execution of a strategic transformational roadmap.

Download white paper

Webcast: IT Financial Management: Cost Optimisation for Efficiency and Agility.
On Demand Webcast
Join this webcast to learn about the techniques and technologies that can help you prove the value of IT to the business by understanding the true cost of today's IT services and those that will be necessary to deliver future success.

Register Today

Site Map

IDG Network

* *