openNAC Glossary

openNAC Core
Is the main role in openNAC tecnhnologies, this provide for instance AAAA Services and many others.
Administration Portal
Main administration tool to be used by any Network or Security Engineer.
ON NAC
openNAC module that include Policy Engine and Bussines Profiles.
ON Netconf/Backup
openNAC module that include Network management tool such us macros, cron and devices backups.
ON CMDB
openNAC module that include all the Assets and its tags that are used by other modules such as ON NAC or others..
Configurations Vars
openNAC module where you include default paramenters to be used.
Policy Engined
Is the main module where authentiction, authorization, accounting happens, additional capabilities are also included.
UDS
User Data source (UDS) is the name used by openNAC to provide identity repositories.
openNAC Analytics
Is one Role in openNAC tecnologies, this provide an Analisys Engine and reporting capabilities.
Status
If we go to the Administration portal in openNAC Core you are able to visualized all the information storaged at openNAC Analytics
openNAC Analisys
openNAC Analytics store all events in different index which are searchable and easily filtered
openNAC Sensor
Is a openNAC tecnhnologies Role. This can deployed an in bound or out of bound, this collects and decoding network protocols and sends it to openNAC Analytics. This is based on BRO IDS/IPS technologies.
Plugins
Is common concept used by openNAC tecnhnologies in order to explain that all the pieces have been created to be easily expanded.
OVA
Is a Open Source format to distribute and deploy Virtual Machines.
SNMP
Simple Network Management Protocol is a protocol wildly used to carry out network devices management.
COA
Radius Change of Authorization is a method used to change authorization status in a realm time and during a current session.
Layer2
Is refered to the Layer 2 of OSI Model.
Layer3
Is refered to the Layer 3 of OSI Model.
Layer4
Is refered to the Layer 4 of OSI Model.
VLAN
Virtual Local Area Network is a logical subgroup within a local area network that is created through software rather than by manually moving cables in the wiring closet. It combines user stations and network devices into a single unit regardless of the physical LAN segment they are attached to. It also lets traffic flow more efficiently within populations of mutual interest.
openNAC Agent
Is used to provided security analysis, Hardware and software inventory and VPN Client.
Project qualification
Is the process carry out by openNAC Professional in order to define a clear design, scope of work and guarantee a sucess implementation projects.
Captive Portal
Its a user portal where: can be registered user devices, Guest Access form is available, openNAC Agent can be downloaded..
openNAC Administration Portal
Unify administration module where you can carry out Administration, Operation, troubleshooting and monitoring for openNAC Technologies.
Active Directory
Is the Microsoft commercial name provided to Directory services, Active directory constains all the domain assets such as user, printers, groups…
LDAP
Is the protocol used to gain access to a directory services, LDAP constains all the domain assets such as user, printers, groups…
configuration Wizads
openNAC Technologies includes configuration wizards that provide a key benefit regarding Network access control tecnologies, this allows to Generate certificates, create a initial configuration and also Join to Active Directory among others
Traps SNMP
Are SNMP messages that comes from Network devices such as Switches, AP, VPNs or others to notify changes to openNAC
802.1x
Is a standard port-based Network access control, this use EAP framework which has plenty of different methods, paramenters and options. openNAC is fully compatible with 802.1x technologies.
api
https://en.wikipedia.org/wiki/Application_programming_interface
MAB
https://en.wikipedia.org/wiki/IEEE_802.1X
byod
https://en.wikipedia.org/wiki/Bring_your_own_device
IOT
https://en.wikipedia.org/wiki/Internet_of_things
Registry VLAN
Is a VLAN where the users register its devices in openNAC Core CMDB.
Quarantine VLAN
Is a VLAN where the users are sent by Policy or by Administrator instructions, this is a secure environment where the User devices can be isolated and managed properly without risk. Normally any device that is not compliance in terms of security is sent to this.
Service VLAN
Is a VLAN where the users are sent when authentiction happens properly or when Security policy decides, this provide acces to corporate network and only the set the resources defined by the policy.
Policy Engine
Is one of the main modules that openNAC Core has that provide Policy evaluation. AAA services, tagging, registering, plugins calls are a examples of use.
Business Profiles
openNAC has a event classification method, a business profiles includes one o many policies. This type of groups can be used to filter and create specific reports and queries.
Google Authenticator
https://en.wikipedia.org/wiki/Google_Authenticator
Mobile Connect
https://developer.mobileconnect.io/overview
PSK
https://en.wikipedia.org/wiki/Pre-shared_key
2FA
https://en.wikipedia.org/wiki/Multi-factor_authentication
MFA
https://en.wikipedia.org/wiki/Multi-factor_authentication
Malware
https://en.wikipedia.org/wiki/Malware
Radius Server
https://en.wikipedia.org/wiki/RADIUS
DNS Server
https://en.wikipedia.org/wiki/Domain_Name_System
DHCP Server
https://en.wikipedia.org/wiki/Dynamic_Host_Configuration_Protocol
FreeRadius
https://en.wikipedia.org/wiki/FreeRADIUS
mysql
https://es.wikipedia.org/wiki/MySQL
apache http server
https://en.wikipedia.org/wiki/Apache_HTTP_Server
memcache
https://en.wikipedia.org/wiki/Memcached
elastic
https://en.wikipedia.org/wiki/Elasticsearch
kibana
https://en.wikipedia.org/wiki/Kibana
Logstash
https://es.wikipedia.org/wiki/Logstash
Bro NIDS
https://en.wikipedia.org/wiki/Bro_(software)
nmap
https://en.wikipedia.org/wiki/Nmap
NGFW
https://en.wikipedia.org/wiki/Next-Generation_Firewall
siem
https://en.wikipedia.org/wiki/Security_information_and_event_management
digital certificates
https://en.wikipedia.org/wiki/Public_key_certificate
tcp
https://en.wikipedia.org/wiki/Transmission_Control_Protocol
udp
https://en.wikipedia.org/wiki/User_Datagram_Protocol
nac
https://en.wikipedia.org/wiki/Network_Access_Control
802.1x
https://en.wikipedia.org/wiki/IEEE_802.1X
OTP
https://en.wikipedia.org/wiki/One-time_password
PEM file
https://en.wikipedia.org/wiki/X.509#Certificate_filename_extensions
P12 file
https://en.wikipedia.org/wiki/PKCS_12
wmi
https://en.wikipedia.org/wiki/Windows_Management_Instrumentation
Wired AutoConfig
https://technet.microsoft.com/en-us/library/cc727725(v=ws.10).aspx
PEAP
https://en.wikipedia.org/wiki/Protected_Extensible_Authentication_Protocol
Smart Card
https://en.wikipedia.org/wiki/Smart_card
CA
https://en.wikipedia.org/wiki/Certificate_authority
SSID
https://en.wikipedia.org/wiki/Service_set_(802.11_network)