Chapter 9. Understanding Microsoft NAP Solutions

NAC functionality can be a funny thing. Sometimes, technologies that aren't officially recognized or marketed as NAC solutions can provide NAC functions. This is particularly true when it comes to Microsoft. Think again about the most basic functions of NAC:

  • Keep unwanted devices off of a network

  • Ensure that authorized devices are compliant and remediate them if they are not

Think back to earlier in this book. If your goal is to keep unwanted devices off of a network, do you really care if the unwanted device has antivirus running and up to date? Do you even want to utilize your computing resources to take the time to check their security posture if you're never going to let them on anyway?

With this thought in mind, let's take a look at a couple of NAC/NAP-like functions that various Microsoft technologies offer. Specifically, let's look at the following:

  • Microsoft Network Access Protection (NAP)

  • 802.1x via Microsoft

  • Microsoft Network Access Quarantine Control (NAQC)

NAQC and 802.1x aren't truly considered NAP and NAC solutions, so they will not be covered in the same format as has been used for the other NAC/NAP solutions so far in this book. However, this chapter describes these technologies and how they could potentially perform some of the NAC/NAP functions that companies are considering.

For Microsoft NAP, the examination entails a more robust and methodical approach. As with the previous NAC/NAP chapters, this chapter will be ...

Get Implementing NAP and NAC Security Technologies: The Complete Guide to Network Access Control now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.