NAICE

Overview
Specifications
Reviews
  • Centralized storage and management of access policies
  • Authentication and authorization of network users via 802.1X (RADIUS)
  • Interaction with external identification sources MS AD and LDAP
  • User segmentation based on location, type of equipment being connected, or other attributes
  • MAC Authentication Bypass
  • Profiling based on MAC-OUI or DHCP
  • Active-Active redundancy support
  • Support for licensing with Online/Offline ELM

Network Access and Information Control Engine
Eltex-NAICE (Network Access and Information Control Engine) is a system for managing access to corporate networks and devices. The system is managed using a modern web-interface. NAICE is designed for centralized management of user access policies for wired and Wi-Fi networks. NAICE is a multi-vendor solution that supports interaction via RADIUS protocol.

Authentication and authorization
NAICE integrates authentication, authorization and profiling services into a single platform. The system identifies and categorizes devices and provides the right level of access.

RADIUS protocol
This protocol is used for authentication, authorization and accounting. RADIUS server operates with the user data- base that contains authentication data for each user. RADIUS protocol provides additional protection when accessing network resources.

MS Active Directory and LDAP server
NAICE is integrated with the user database, their attributes and groups from/to Microsoft Active Directory (MS AD) and LDAP¹.
Features and capabilities
  • Identification, authentication, authorization of users and administrators, rights assignment according to group or role membership
  • Registration of access events
  • Profiling of devices connected to the network
  • Centralized storage and management of access policies
  • Authentication and authorization of network users based on 802.1X EAP-PEAP, PAP, MSCHAPv2 policies
  • Integration with MS Active Directory (MS AD) and LDAP
  • User segmentation
  • MAB authorization and basic profiling
  • Support for EAP-TLS protocols (certificate-based authorization)
  • Support for Astra Linux 1.7.5 / 1.7.6 / 1.8.1
Use case