beautypg.com

1 secure communication – IBM Tivoli and Cisco User Manual

Page 80

background image

62

Building a Network Access Control Solution with IBM Tivoli and Cisco Systems

3.3.1 Secure communication

The components are designed to provide a high level of security between the
various elements in the solution. We provide a description of how the various
components securely communicate, and Figure 3-7 shows an overview of the
secure communications.

Figure 3-7 Secure communication between components

Cisco Trust Agent

Client

EAPoUDP/

EAPonLAN

SSL

SSL

CA Server

Client

EAPoRADIUS

PEAP

Server

Certificate

Server

Certificate

Server

Certificate

AAA Policy

Server (ACS)

Compliance

Server (SCM)

Remediation

Server (TCM)

Root

Certificate

Policy

Enforcement

Device (NAD)

SCM

Client

Remediation

Handler