openNAC On-PremiseΒΆ

../../../_images/opennac_democenter_architecture.png

OpenNAC Core and openNAC analytics should be in datacenter location at the same level that other network servers as DHCP, DNS, etc. These two servers can increase their capacity providing horizontally scalability at datacenter, openNAC core can support up to 5K of simultaneously authentications.

OpenNAC sensor should be placed according with network requirements, clients should select the sensor network location, because its traffic visibility is strongly linked to its position into the network,

Network segmentation is one of the capacities of openNAC technology, so according with VLAN configurations several VLANs would be managed by openNAC into the network, by default the VLANs will be:

  • Service
  • Registry
  • Quarantine

Also some network segments can be excluded of openNAC administration, so clients can define an Unmanaged network segment.