Combines user identity, device security state, and network location data to create a unique, dynamic access control policy for each individual user and session.
Network Diagram [PDF 793 KB]Need Help?
Unified Access Control (UAC) is a standards-based, scalable network access control solution for adaptive access control that reduces threat exposure and mitigates risks. Unified Access Control protects your network, guarding mission-critical applications and sensitive data, and providing comprehensive control, visibility, and monitoring.
This approach to adaptive network access control reduces the cost and complexity of delivering and deploying granular network access control from the branch to the corporate data center. Unified Access Control also addresses network access challenges such as insider threats, guest access, outsourcing and off-shoring, and regulatory compliance.
Unified Access Control is composed of:
Unified Access Control is the industry's first NAC solution to offer full Layer 2 through Layer 7 enforcement capabilities.
Unified Access Control is based on industry standards (802.1X, RADIUS, and IPSec) and open standards (Trusted Network Connect standards), including the TNC's open standard IF-MAP, which empowers Unified Access Control to integrate with third-party network and security devices.
|
IC4500 Unified Access Control Appliance
The IC4500 Unified Access Control Appliance is a next-generation hardened, centralized network access policy management server delivering superior scalability and performance for mid-sized to large organizations and remote or branch offices. Learn more |
|
IC6500 Unified Access Control Appliance
Delivering best-in-class scalability, performance, and redundancy, the IC6500 Unified Access Control Appliance is a next-generation hardened, centralized network access policy management server for large, multinational organizations and government agencies. Learn more |
|
IC6500 FIPS Unified Access Control Appliance
Delivering scalability, performance, and redundancy, the IC6500 FIPS Unified Access Control Appliance, coupled with a dedicated FIPS certified security module. Provides next-generation cryptographic operations and centralized network access policy management server for large, multinational organizations and government agencies. Learn more |
Juniper Networks Unified Access Control and the IC Series Unified Access Control Appliances:
Several hardware and software options and modules are available for UAC's IC4500, IC6500, and IC6500 FIPS Unified Access Control Appliances, including:
| Module | Description |
|---|---|
| Microsoft SOH License | Addresses the licensing of System Health Agent (SHA)/System Health Verifiers (SHV) and Statement Of Health (SOH) protocols from Microsoft. These are key components that enable Juniper Networks UAC to support the Microsoft Windows SOH and embedded Microsoft Network Access Protection (NAP) Agents through the Trusted Network Connect (TNC) SOH open and standardized protocol IF-TNCCS-SOH. |
| Infranet Controller Disaster Recovery (DR) License | Addresses disaster situations without requiring the purchase of permanent user licenses for those types of contingencies. This license also enables the periodic testing of disaster recovery deployment while still providing usage when needed. They are also available for clusters. |
| Coordinated Threat Control License | Leverages additional access control and security capabilities through UAC's communications with Juniper Networks IDP Series Intrusion Detection and Prevention Appliances for coordinated threat control. |
| IF-MAP Licenses | Leverages the TNC's open specification Interface for Metadata Access Point (IF-MAP), and is defined as an IC Series Appliance (or IC Series Appliance cluster) operating solely as a Metadata Access Point (MAP) server with no additional simultaneous endpoint licenses or OAC-ADD-UAC licenses. In this mode, the IC Series Appliance (or clustered IC Series Appliances) as MAP servers must have an IF-MAP license installed. Mixed IC Series Appliance and MAP mode is defined as any IC Series Appliance that simultaneously acts as both an IC Series Appliance and as a MAP server, where either a simultaneous endpoint license or an OAC-ADD-UAC license has been installed. In this case, the IF-MAP license is not required on that IC Series Appliance (or IC Series Appliance cluster). |
| Hot-Swappable Power Supplies (IC6500, IC6500 FIPS ONLY) | The IC6500 and IC6500 FIPS offer optional dual, hot-swappable power supplies. |
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
Download
[
The Network Ahead
Juniper executives share their viewpoints on industry topics ranging from cloud computing to economics and green IT.
Read the Network AheadJuniper and IBM have teamed up to deliver technology solutions, standards development, network management, and managed security services.
Learn more
See how the communications industry is helping address climate change issue.
Watch now
Juniper's single operating system delivering the power of one. Learn how Junos Software reduces complexity and drives operational excellence, lowering the cost of innovation.
Learn more