PacketFence project provides interior worm mitigation and policy enforcement capabilities.
PacketFence be placed strategically throughout the enterprise to compartmentalize networks that may present a threat to valuable resources: VPN concentrators, client and guest networks, extranet connectivity points, etc.
PacketFence is designed to operate in heterogeneous where users are either unable or unwilling, without assistance, to secure their systems properly.
Product's homepage
Here are some key features of "PacketFence":
· Open Architecture-Based on unmodified open-source components, PacketFence requires no software to be installed on client systems.
· Registration-Registration/authentication can be enforced before admission to the network is granted. Additionally successul completion of a vulnerability scan and acceptance of an AUP can also be required
· Detection-detection of worms, trojans, etc by behavorial or signature-based means
· Remediation-Context-sensitive information provided to user for self-directed remediation.
Requirements:
· perl-suidperl
· httpd
· mod_ssl
· php
What's New in This Release: [ read full changelog ]
· This version is a virtual machine built with PacketFence 3.3.1.
· It has Role-Based Access Control (RBAC) support for many network vendors.
· Guests can now pre-register in advance or have their network access sponsored.
· Inline enforcement has been simplified, and many new improvements or fixes have been integrated.