Metodología para la implementación de un control de acceso a la red WLAN utilizando una solución de NAC (Network Access Control) en la infraestructura física del Ministerio del Interior
Fecha
Autor corporativo
Título de la revista
ISSN de la revista
Título del volumen
Editor
Compartir
Director
Altmetric
Resumen
The purpose of this document is to design and develop a structured methodology comprised of seven phases for the implementation of a Network Access Control (NAC) system on the wireless network infrastructure of the Colombian Ministry of the Interior. The proposed solution aims to significantly improve security levels in WLANs (Wireless Local Area Networks) through centralized management of devices accessing the institutional network, applying authentication, authorization, and continuous monitoring policies. To achieve this, recognized standards such as IEEE 802.1X, the RADIUS (Remote Authentication Dial-In User Service) protocol, and integration with Active Directory are used, allowing the identity of devices and users to be validated before granting them access to network resources. The initiative arises in response to the growing need to strengthen security in corporate and institutional environments where the simultaneous connection of multiple devices is common, including personal devices of employees, contractors, and visitors (BYOD, Bring Your Own Device model). In the specific case of the Ministry of the Interior, a high turnover of connections was identified without verification of compliance with security policies, which represents a risk to the confidentiality, integrity, and availability of institutional services and data. The methodology developed ranges from the initial network diagnosis and evaluation of available NAC technologies to technical implementation, user training, and post-deployment evaluation through surveys and interviews. This methodological framework seeks not only to resolve the problems identified in the entity, but also to serve as a replicable model for other public or private institutions facing similar challenges in access control to their wireless networks. It is worth noting that the project had a total investment of $319,041,000, allocated to the acquisition of licenses and specialized services. The results obtained allow us to conclude that the implementation of a NAC system using a clear and sequential methodology contributes to greater visibility of connected devices, the reduction of unauthorized access, and the strengthening of institutional cybersecurity capacities.
