A SERVICE OF

logo

62 Building a Network Access Control Solution with IBM Tivoli and Cisco Systems
3.3.1 Secure communication
The components are designed to provide a high level of security between the
various elements in the solution. We provide a description of how the various
components securely communicate, and Figure 3-7 shows an overview of the
secure communications.
Figure 3-7 Secure communication between components
Cisco Trust Agent
Client
EAPoUDP/
EAPonLAN
SSL
SSL
CA Server
Client
EAPoRADIUS
PEAP
Server
Certificate
Server
Certificate
Server
Certificate
AAA Policy
Server (ACS)
Compliance
Server (SCM)
Remediation
Server (TCM)
Root
Certificate
Policy
Enforcement
Device (NAD)
SCM
Client
Remediation
Handler