Petri IT Knowledgebase Forums
 

Petri.co.il forums Home Forums Start Page Forums Frequently Asked Questions FAQ Member List Members List
Go Back   Petri IT Knowledgebase Forums > Server Operating Systems > Windows Server 2008 / 2008 R2
Petri.co.il is happy to award auglan the title of Most Valuable Member !!!
Register Calendar Calendar Search Petri IT Knowledgebase Forums Search Todays Posts Today's Posts Mark Forums Read

Notices

Introduction to Network Access Protection

Introduction to Network Access Protection

this thread has 1 replies and has been viewed 3548 times

Closed Thread
 
Thread Tools Search this Thread Display Modes
  #1  
Old 5th April 2006, 01:07
MVP yuval14 yuval14 is offline
MVP
MVP
 
 Join Date: Oct 2003
  6 month star 12 month star
 Location: IL
 Posts: 1,999
  Send a message via MSN to yuval14
 Reputation: yuval14 is a glorious beacon of lightyuval14 is a glorious beacon of lightyuval14 is a glorious beacon of lightyuval14 is a glorious beacon of lightyuval14 is a glorious beacon of lightyuval14 is a glorious beacon of light (501)
Default Introduction to Network Access Protection

http://www.microsoft.com/technet/its...poverview.mspx
  #2  
Old 11th April 2006, 20:36
azmantek's Avatar
MVM azmantek azmantek is offline
Junior Member
MVM
 
 Join Date: Jun 2004
  6 month star 12 month star
 Location: Houston,TX
 Posts: 182
 Reputation: azmantek has a spectacular aura aboutazmantek has a spectacular aura about (180)
Default Re: Introduction to Network Access Protection

yuval14,

Thanks for bringing this up bro. I've been researching on techniques to check client health all year long. From an admin stand point, having the ability to check for client health before granting network access is extremely important; and espcially as we are experiencing the sky rocketing rate of mobile clients (laptop, smartphones, etc) on our network. We've been trying couple of solutions from Cisco and Enterasys.

1. Cisco CSA (Cisco Security Agent) and CTA (Cisco Trust Agent). Basically, these are applications that reside on XP clients; as clients boot up, CSA will check with Cisco "server" (there's another app stay on a server as well) to determine if the client is "healthy" or not. If yes, green light; if not the access is quarantined (client will be redirect to a specified VLAN, where it can access the patch (MS,NAV) servers only. You can read more on their pages to find out in details of how they work. Cisco starts its partnership with MS on NAP, and it makes CSA better. MS NAP alone works fine; the advantage of Cisco CSA over NAP alone is the ability to move client to a quarantined VLAN.

2. Enterasys: Enterasys have their own signature files to check on client health and they can customize the policy down to the port (data jack) level. No client software needed, e verything is done at the switch. For a small and midium networks, Enterasys would be the best. As the network get bigger with policies enforced at the port level, it will bring down the switch in no time.

In conclusion, everything does the job but has its own trade off. If we can have both and combine them, it would be the best.

Regards
__________________
Teamwork

Last edited by azmantek; 11th April 2006 at 23:07..
Closed Thread


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Restrict network access rever75 Active Directory 1 6th February 2006 22:11
PCs losing access to network shares sylvester Windows Server 2000 / 2003 1 22nd November 2005 23:38
Can't access one computer in network nick62 DSL, Cable, and other Broadband Issues 30 25th June 2005 22:31
Citrix Access Suite 4.0 Offers Major Advancements yuval14 Terminal Services 1 26th April 2005 23:02
My Network Places denies access jimbo1972 Windows Server 2000 / 2003 1 4th April 2005 18:22


All times are GMT +3. The time now is 08:27.

Steel Blue 3.5.4 vBulletin Style ©2006 vBEnhanced
Powered by vBulletin® Version 3.8.4
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
 

Valid XHTML 1.0!   Valid CSS!

Copyright 2005 Daniel Petri