SlideShare a Scribd company logo
Network access protection ppt
What is NAP
Microsoft Network Access Protection (NAP) is a
Policy-based management feature of windows Server
2008 that allows a network administrator to control
access to Network resources.
NAP policies define the required configuration and
update status for a client computer operating system
and critical software.
Security Enhancements in Windows Server 2008
Reduced attack surface of the kernel through Server
Core
Expanded group policy
Windows Firewall
Network Access Protection
BitLocker Drive Encryption
3
Benefits of NAP
Protect the network:-
Network health analysis
Policy validation
Identify risks
Enhanced network health
Policy compliance
Access control
NAP Authentication methods
Password-based Point-to-Point Protocol (PPP)
authentication protocols.
Extensible Authentication Protocol (EAP) and
Protected EAP (PEAP)
Authorization methods
Dialed Number Identification Service (DNIS).
Automatic Number Identification/Calling Line
Identification (ANI/CLI)
Guest authorization
Why Use Network Access
Protection?
Private
Network
Unhealthy
computer
Healthy
computer
8
Network Access Protection
enforcement methods
Internet Protocol security (IPsec)-protected
communications
IEEE 802.1X-authenticated network connections
Remote access virtual private network (VPN)
connections
Dynamic Host Configuration Protocol (DHCP)
configuration
9
NAP client with limited access
DHCP server
Remediation
servers
VPN server
Network Policy Server
(NPS)
Active Directory
Intranet
Restricted network
Perimeter
network
Health certificate
server (HCS)
IEEE 802.1X devices
Internet
Policy
servers
Components of the Network Access
Protection platform
10
Network infrastructure for Network
Access Protection
Health policy validation
Determines whether the computers are compliant with
health policy requirements
Network access limitation
Limits access for noncompliant computers
Automatic remediation
Provides necessary updates to allow a noncompliant
computer to become compliant
Ongoing compliance
Automatically updates compliant computers so that they
adhere to ongoing changes in health policy requirements
Control
Network Access Protection
Net work Access Protection Network Access Quarantine
Control
Internal, VPN and Remote
Access Client
Only VPN and Remote Access
Clients
IPSec, 802.1X, DHCP and VPN DHCP and VPN
NAP NPS and Client included
in Windows Server 2008 ; NAP
client included in Vista
Installed from Windows
Server 2003 Resource Kit
Network Access Protection Solution
Polices, Procedures
& Awareness
Data
Application
Host
Internal Network
Perimeter
Policy Validation
Network Restriction
Remediation
Ongoing Compliance
According to
policy, the client
is not up to date.
Quarantine
client, request it
to update.
Should this client
be restricted
based
on its health?
Network Layer Protection with NAP
Requesting access.
Here’s my new
health status.
MS NPSClient
802.1x
Switch
Remediation
Servers
May I have access?
Here’s my current
health status.
Ongoing policy
updates to Network
Policy Server
You are given
restricted access
until fix-up.
Can I have
updates?
Here you go.
Restricted Network
Client is granted access to
full intranet.
System Health
Servers
According to
policy, the client
is up to date.
Grant access.
Install NPS
Network Access Protection
Components
System Health Validator
Compare the System of Health (SoH) sent
from a System Health Agent (SHA)
Statement of Health (SoH)
SoH is response sent by a System Health
Agent to a System Health Validator
Network
Access
Requests Not Compliant
How NAP Works
Corporate Network
Restricted Network
Windows
Client
Network
Enforment
Endpoint
NPS
Active
Directory
Remediation
Servers
Health
Statements
QA
SHA
EC
QS
SHV
NAP with DHCP
NPS Server
DHCP Server
Requesting access.
Here’s my new health
status.
The client
requests and
receives updates
I need to Lease an IP
address
You are not within the
Health Policy
requirementsAccess Granted. Here
is your new IP
AddressVPN Server
Client
IEEE 802.1X
Devices
Remediation
Servers
NAP Enforcement Client
802.1X
VPN
IPSec
DHCP
NPS
RADIUS
19
DHCP Enforcement
For noncompliant computers, prevents unlimited
access to a network through a limited DHCP address
configuration
Network Access Protection-capable DHCP clients use
their list of SoHs as proof of their health compliance
20
VPN enforcement
For noncompliant computers, prevents unlimited
access to a network through a remote access VPN
connection
Network Access Protection-capable VPN clients use
their list of SoHs as proof of their health compliance
NAP Infrastructure
Health Policy Validation
Health Policy Compliance
Automatic Remediation
Limited Access
DHCP
DHCP with NAP
Secure the DHCP process
Configured through a Network Policy Server
Issues different information depending on compliance
Remediation server
Provides updates and security policy changes to the
client
Brings client into compliance
DHCP issues noncompliant computer IP address of
remediation server
Manage NPS on DHCP
Configuring Custom NPS Policies
Per DHCP scope
Policy validation
System health validators (SHVs) are used by NPS to
analyze the health status of client computers.
Health status is monitored by client-side NAP
components called system health agents (SHAs)
NAP enforcement
NAP enforcement settings allow you to limit network
access of noncompliant clients to a restricted network,
to defer restriction to a later date, or to merely observe
and log the health status of NAP-capable client
computers.
Allow full network access
Allow limited access
Allow full network access
for a limited time.
Remediation
Remediation is the process of updating a client
computer so that it meets current health
requirements.
NAP health policy server
System Health Validators
Health Policies
Network Policies
Connection Request Policies
RADIUS Clients and Servers
Remediation Server Groups
Active Directory Domain Services
NAP enforcement points
Health requirement servers
Health Policy Options
Windows Security Center
Firewall on/off
Anti-virus installed & up to date
Anti-spyware installed & up to date
Automatic updates enabled
System Center Configuration Manager
Required software patches are installed
Automatic patch installation to remediate
Forefront Client Security
Malware signature definition files up to date
State of system services
system health validator
WSHV(Windows Security Health
Validator) Properties
System Health Validator Template
Verifying NAP functionality
Verification of NAP auto-remediation. CLIENT1 is
automatically remediated when Windows Firewall is
turned off, causing Windows Firewall to be turned
back on.
Verification of NAP policy enforcement. NAP policy is
revised to be more restrictive, causing CLIENT1 to be
noncompliant with policy and unable to remediate
itself. When CLIENT1 is in a noncompliant state, its
network access will be restricted.
Review NAP client events in Event
Viewer
Click Start, point to All Programs, click Accessories,
and then click Run.
2. Type eventvwr.msc, and press ENTER.
3. In the left tree, navigate to Event
Viewer(Local)Applications and Services
LogsMicrosoftWindowsNetwork Access
ProtectionOperational.
4. Click an event in the middle pane.
5. By default, the General tab is displayed. Click the
Details tab to view additional information.

More Related Content

PPTX
SNMP(Simple Network Management Protocol)
PPT
Active directory
PPT
Wlan security
PPTX
WLAN of networking.ppt
PPT
Slides of SNMP (Simple network management protocol)
PPT
Ieee 802.11 wireless lan
PDF
Configuring Wired 802.1x Authentication on Windows Server 2012.pdf
PPTX
DHCP (Dynamic Host Configuration Protocol)
SNMP(Simple Network Management Protocol)
Active directory
Wlan security
WLAN of networking.ppt
Slides of SNMP (Simple network management protocol)
Ieee 802.11 wireless lan
Configuring Wired 802.1x Authentication on Windows Server 2012.pdf
DHCP (Dynamic Host Configuration Protocol)

What's hot (20)

PPTX
System and network administration network services
PPT
middleware
PPT
PPTX
Mise en place d’un serveur radius
PDF
Radius Protocol
DOC
Comptia Network+
PDF
CCNAv5 - S4: Chapter 1 Hierarchical Network Design
PPTX
Remote access service
PPT
Microsoft Active Directory
PDF
Mise en place d'un système de messagerie sécurisée pour une PME/PMI
PPT
Firewall
PPTX
Network design
PPTX
PPPoE Server & Client Configuration
PPTX
Dhcp ppt
PPTX
Wireshark
PDF
Introduction to Network Function Virtualization (NFV)
PPTX
PPTX
Wireless network security
PDF
VPN site-to-site.pdf
PPT
Wi fi protected access
System and network administration network services
middleware
Mise en place d’un serveur radius
Radius Protocol
Comptia Network+
CCNAv5 - S4: Chapter 1 Hierarchical Network Design
Remote access service
Microsoft Active Directory
Mise en place d'un système de messagerie sécurisée pour une PME/PMI
Firewall
Network design
PPPoE Server & Client Configuration
Dhcp ppt
Wireshark
Introduction to Network Function Virtualization (NFV)
Wireless network security
VPN site-to-site.pdf
Wi fi protected access
Ad

Similar to Network access protection ppt (20)

PPTX
6421 b Module-07
PPT
MS NAP - Security Day
PPT
Network Access Protection
PPT
Network Access COntrol asdfcxzqwe asd asdd .ppt
PPT
What is NAC
PPTX
Microsoft Windows 7 Enhanced Security And Control
DOC
Nap vpn stepby_step
PPTX
"Secure network access & threat protection"
PPT
Windows server2008
PPTX
Connect Remotely Using Windows® 7 Direct Access
PDF
Microsoft Certifications 70-411 it exams dumps
PPTX
6421 b Module-09
PDF
BOSNOG NAC stack 2018
PPT
0505 Windows Server 2008 一日精華營 Part II
PDF
Network access control (nac)
PPTX
6421 b Module-05
PPT
Uac sales pres_20_apr09-2
PPTX
Windows 7 And Windows Server 2008 R2 Combined Value
PPTX
Network security
PPTX
Microsoft Platform Security Briefing
6421 b Module-07
MS NAP - Security Day
Network Access Protection
Network Access COntrol asdfcxzqwe asd asdd .ppt
What is NAC
Microsoft Windows 7 Enhanced Security And Control
Nap vpn stepby_step
"Secure network access & threat protection"
Windows server2008
Connect Remotely Using Windows® 7 Direct Access
Microsoft Certifications 70-411 it exams dumps
6421 b Module-09
BOSNOG NAC stack 2018
0505 Windows Server 2008 一日精華營 Part II
Network access control (nac)
6421 b Module-05
Uac sales pres_20_apr09-2
Windows 7 And Windows Server 2008 R2 Combined Value
Network security
Microsoft Platform Security Briefing
Ad

Recently uploaded (20)

PDF
Review of recent advances in non-invasive hemoglobin estimation
PDF
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton
PDF
Empathic Computing: Creating Shared Understanding
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
PPTX
Cloud computing and distributed systems.
PDF
Network Security Unit 5.pdf for BCA BBA.
PPTX
ACSFv1EN-58255 AWS Academy Cloud Security Foundations.pptx
PDF
Unlocking AI with Model Context Protocol (MCP)
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PDF
Machine learning based COVID-19 study performance prediction
PDF
Encapsulation theory and applications.pdf
PDF
The Rise and Fall of 3GPP – Time for a Sabbatical?
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PDF
Chapter 3 Spatial Domain Image Processing.pdf
PDF
MIND Revenue Release Quarter 2 2025 Press Release
PDF
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
PPTX
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
PPT
Teaching material agriculture food technology
Review of recent advances in non-invasive hemoglobin estimation
Optimiser vos workloads AI/ML sur Amazon EC2 et AWS Graviton
Empathic Computing: Creating Shared Understanding
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
Cloud computing and distributed systems.
Network Security Unit 5.pdf for BCA BBA.
ACSFv1EN-58255 AWS Academy Cloud Security Foundations.pptx
Unlocking AI with Model Context Protocol (MCP)
Advanced methodologies resolving dimensionality complications for autism neur...
Machine learning based COVID-19 study performance prediction
Encapsulation theory and applications.pdf
The Rise and Fall of 3GPP – Time for a Sabbatical?
Reach Out and Touch Someone: Haptics and Empathic Computing
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Chapter 3 Spatial Domain Image Processing.pdf
MIND Revenue Release Quarter 2 2025 Press Release
Profit Center Accounting in SAP S/4HANA, S4F28 Col11
Detection-First SIEM: Rule Types, Dashboards, and Threat-Informed Strategy
Teaching material agriculture food technology

Network access protection ppt

  • 2. What is NAP Microsoft Network Access Protection (NAP) is a Policy-based management feature of windows Server 2008 that allows a network administrator to control access to Network resources. NAP policies define the required configuration and update status for a client computer operating system and critical software.
  • 3. Security Enhancements in Windows Server 2008 Reduced attack surface of the kernel through Server Core Expanded group policy Windows Firewall Network Access Protection BitLocker Drive Encryption 3
  • 4. Benefits of NAP Protect the network:- Network health analysis Policy validation Identify risks Enhanced network health Policy compliance Access control
  • 5. NAP Authentication methods Password-based Point-to-Point Protocol (PPP) authentication protocols. Extensible Authentication Protocol (EAP) and Protected EAP (PEAP)
  • 6. Authorization methods Dialed Number Identification Service (DNIS). Automatic Number Identification/Calling Line Identification (ANI/CLI) Guest authorization
  • 7. Why Use Network Access Protection? Private Network Unhealthy computer Healthy computer
  • 8. 8 Network Access Protection enforcement methods Internet Protocol security (IPsec)-protected communications IEEE 802.1X-authenticated network connections Remote access virtual private network (VPN) connections Dynamic Host Configuration Protocol (DHCP) configuration
  • 9. 9 NAP client with limited access DHCP server Remediation servers VPN server Network Policy Server (NPS) Active Directory Intranet Restricted network Perimeter network Health certificate server (HCS) IEEE 802.1X devices Internet Policy servers Components of the Network Access Protection platform
  • 10. 10 Network infrastructure for Network Access Protection Health policy validation Determines whether the computers are compliant with health policy requirements Network access limitation Limits access for noncompliant computers Automatic remediation Provides necessary updates to allow a noncompliant computer to become compliant Ongoing compliance Automatically updates compliant computers so that they adhere to ongoing changes in health policy requirements
  • 11. Control Network Access Protection Net work Access Protection Network Access Quarantine Control Internal, VPN and Remote Access Client Only VPN and Remote Access Clients IPSec, 802.1X, DHCP and VPN DHCP and VPN NAP NPS and Client included in Windows Server 2008 ; NAP client included in Vista Installed from Windows Server 2003 Resource Kit
  • 12. Network Access Protection Solution Polices, Procedures & Awareness Data Application Host Internal Network Perimeter Policy Validation Network Restriction Remediation Ongoing Compliance
  • 13. According to policy, the client is not up to date. Quarantine client, request it to update. Should this client be restricted based on its health? Network Layer Protection with NAP Requesting access. Here’s my new health status. MS NPSClient 802.1x Switch Remediation Servers May I have access? Here’s my current health status. Ongoing policy updates to Network Policy Server You are given restricted access until fix-up. Can I have updates? Here you go. Restricted Network Client is granted access to full intranet. System Health Servers According to policy, the client is up to date. Grant access.
  • 15. Network Access Protection Components System Health Validator Compare the System of Health (SoH) sent from a System Health Agent (SHA) Statement of Health (SoH) SoH is response sent by a System Health Agent to a System Health Validator
  • 16. Network Access Requests Not Compliant How NAP Works Corporate Network Restricted Network Windows Client Network Enforment Endpoint NPS Active Directory Remediation Servers Health Statements QA SHA EC QS SHV
  • 17. NAP with DHCP NPS Server DHCP Server Requesting access. Here’s my new health status. The client requests and receives updates I need to Lease an IP address You are not within the Health Policy requirementsAccess Granted. Here is your new IP AddressVPN Server Client IEEE 802.1X Devices Remediation Servers
  • 19. 19 DHCP Enforcement For noncompliant computers, prevents unlimited access to a network through a limited DHCP address configuration Network Access Protection-capable DHCP clients use their list of SoHs as proof of their health compliance
  • 20. 20 VPN enforcement For noncompliant computers, prevents unlimited access to a network through a remote access VPN connection Network Access Protection-capable VPN clients use their list of SoHs as proof of their health compliance
  • 21. NAP Infrastructure Health Policy Validation Health Policy Compliance Automatic Remediation Limited Access
  • 22. DHCP DHCP with NAP Secure the DHCP process Configured through a Network Policy Server Issues different information depending on compliance Remediation server Provides updates and security policy changes to the client Brings client into compliance DHCP issues noncompliant computer IP address of remediation server
  • 24. Configuring Custom NPS Policies Per DHCP scope
  • 25. Policy validation System health validators (SHVs) are used by NPS to analyze the health status of client computers. Health status is monitored by client-side NAP components called system health agents (SHAs)
  • 26. NAP enforcement NAP enforcement settings allow you to limit network access of noncompliant clients to a restricted network, to defer restriction to a later date, or to merely observe and log the health status of NAP-capable client computers. Allow full network access Allow limited access Allow full network access for a limited time.
  • 27. Remediation Remediation is the process of updating a client computer so that it meets current health requirements.
  • 28. NAP health policy server System Health Validators Health Policies Network Policies Connection Request Policies RADIUS Clients and Servers Remediation Server Groups Active Directory Domain Services NAP enforcement points Health requirement servers
  • 29. Health Policy Options Windows Security Center Firewall on/off Anti-virus installed & up to date Anti-spyware installed & up to date Automatic updates enabled System Center Configuration Manager Required software patches are installed Automatic patch installation to remediate Forefront Client Security Malware signature definition files up to date State of system services
  • 33. Verifying NAP functionality Verification of NAP auto-remediation. CLIENT1 is automatically remediated when Windows Firewall is turned off, causing Windows Firewall to be turned back on. Verification of NAP policy enforcement. NAP policy is revised to be more restrictive, causing CLIENT1 to be noncompliant with policy and unable to remediate itself. When CLIENT1 is in a noncompliant state, its network access will be restricted.
  • 34. Review NAP client events in Event Viewer Click Start, point to All Programs, click Accessories, and then click Run. 2. Type eventvwr.msc, and press ENTER. 3. In the left tree, navigate to Event Viewer(Local)Applications and Services LogsMicrosoftWindowsNetwork Access ProtectionOperational. 4. Click an event in the middle pane. 5. By default, the General tab is displayed. Click the Details tab to view additional information.