Multi-site deployment

The Multi-Site Deployment feature for NAC Edges supports hybrid integration between local enforcement components and cloud-hosted My OPSWAT Central Management. NAC Edges communicate directly with local network devices to enforce security policies while receiving configuration and policy updates from My OPSWAT Central Management.

Key Features:

  • Independent Operation: Each NAC Edge functions autonomously, ensuring direct enforcement of security measures at each site.

  • Custom Configuration: Administrators have the flexibility to configure multiple NAC Edge components, each with unique authentication settings tailored to specific requirements.

  • Multi-Site Capability: NAC Edges can be deployed across various sites, ensuring consistent security enforcement and policy application throughout the organization.

  • Centralized Monitoring: The MDITA Cloud portal provides real-time monitoring and visibility into the status and performance of all deployed NAC Edges, enabling effective management and oversight.

Note: Each NAC Edge can only integrate with 1 Virtual Machine. In case you have multiple NAC Edges, then multiple VMs will be required.

Examples

Create three NAC Edges to represent a deployment across three different sites, with each Edge utilizing a different authentication method.


  • Site A:

    • Client: Unifi-switch


- Authentication Method: EAP-TLS (cert-based)


  • Site B:

    • Client: Aruba


- Authentication Method: EAP-PEAP


  • Site C:

    • Client: Cisco


- Authentication Method: EAP-TTLS