For, by Anton Grashion, security strategist, EMEA, Juniper Networks
It depends on how you define network access control (NAC). Plain NAC did not encompass the full role-based security system users and enterprises require to balance security with a productive, intelligent network. Working up from the TCG-TNC definitions, the technology to coordinate each user's role, endpoint device and location-based policies to create a dynamic access control system is available today.
Against, by Jeff Prince, chairman and CTO, ConSentry Networks
Network access control is a key step in securing a local area network (LAN). It ensures that only the right people have access, and it can prevent such threats as a guest unleashing a worm.
USB U3What is it?
How does it work?
The U3 technology makes the thumb drive appear as two separate devices on the computer it's plugged into — one is the thumb drive itself, and the other device appears to the computer to be a standard CD-ROM. In this way, the application launcher can use the autorun capability to launch when the drive is inserted. Unfortunately, this also allows anyone to rewrite the CD-ROM image with an alternate image and autorun any code.
Should I be worried?
There is a thumb-drive-based hacking tool under development that anyone can download and place on a U3-capable USB device.
How can I prevent it?
Turn off autorun for all CD-ROM devices. Additional mitigation can be done by third-party programs which enforce security policies for physical devices. Some of these programs can also combat information theft via removable devices by shadow-copying any data transferred to thumb drives to a secure datastore for assessment by network administrators.
— Joe Stewart, senior researcher, SecureWorks (formerly LURHQ)



