Enterasys Networks 9034385 Plumbing Product User Manual


 
Procedures for Out-of-Band and Inline NAC
Enterasys NAC Design Guide 5-5
•Howhealthresultsareprocessed.
Whenanassessmentisperformedonanendsystem,a“healthresult”isgenerated.Foreach
healthresult,theremaybeseveral“healthresultdetails.”Ahealthresultdetailisaresultfor
anindividualtestperformedduringtheassessment.Eachhealthresultdetailisgiven
ascore
rangingfrom1to10,andbasedonthisscore,thehealthresultisassignedarisklevel.
However,itispossibletooverridethescorewithadifferentvaluethatbetteralignsthescore
withtheenterpriseʹscompliancepolicy.Forexample,Wiresharkisapopularnetworktraffic
analysisapplicationthatcanbeusedforbothinformationalandmaliciousintentions.IfIT
operationsdeterminesthatWiresharkisanapplicationthatshouldnotbeinstalledonend
systemsconnectingtothenetwork,ascoringoverridecanbeconfiguredtoassociateahigh
riskscoreifWiresharkisdetectedon
anendsystem.
•Whichendsystemsarequarantined.
NACManagerusesrisklevelstodeterminewhetherornotanendsystemwillbe
quarantined.Basedonthescoresfromthehealthresultdetails,endsystemareclassifiedinto
oneoffourrisklevels:highrisk,mediumrisk,lowrisk,andnorisk.
Dependingontherisk
leveltowhichtheendsystemisclassified,theendsystemmaybequarantined.
Authorization
TheNACconfigurationalsospecifiestheauthorizationlevels,referredtoas“accesspolicies,”that
willbeappliedtotheendsystem,dependingontheauthenticationandassessmentresults.
AcceptPolicythepolicythatisassignedtocompliantendsys tems.
•QuarantinePolicy–thepolicythatisassignedtononcompliantendsystems
thathavefailed
assessment.
AssessmentPolicythepolicythatis(optionally) assignedtoendsystemswhiletheyare
beingassessed.
FailsafePolicythepolicythatisassignedtoendsystemswhenanerroroccursintheNAC
process.