Adam is an IT Pro Technical Evangelist working in Sunny Redmond. Rory Blythe helped him purchase his sunglasses, and he once passed Bill Gates in a hallway.
After months of cajoling, Adam was finally able to convince Jeff Sigman from the NAP team and Brent Atkison from MSIT to sit still for 30 minutes to talk about why we created NAP, and how we went about deploying it worldwide at Microsoft. Ah, who am I
kidding. Jeff's been asking me for...
ZippyV,
You're right, Server 2003 included a feature called Quarantine Services, you can read more about it
here. Brent talks about it a bit in the video when he talks about Microsoft's Remote Access implementation. Quarantine services work only on VPN connections, and rely on custom scripts to do all the inspection on the client. NAP can be used on VPN, IPSEC,
802.1x, or DHCP, and uses client issued health statements for the inspection. It covers more scenarios and is a faster inspection process.
you can specify what to do with unhealthy machines. Typically, you'd configure your network to put the machines on a remediation v-lan where they can only access a remediation server that pushes down any required patches, antivirus signatures, etc.
You might also have a v-lan that has internet access only, so guests on your network that don't meet your criteria for health can still get to the net.
Channel9 Team : Spam Video Filter Beta
Apr 01, 2008 at 12:06 PMTechNet Edge also has a new technology debut up on their site: http://edge.technet.com/Media/Robots-in-the-Data-Center/
Network Access Protection with MSIT
Oct 17, 2007 at 3:50 PMYou're right, Server 2003 included a feature called Quarantine Services, you can read more about it here. Brent talks about it a bit in the video when he talks about Microsoft's Remote Access implementation. Quarantine services work only on VPN connections, and rely on custom scripts to do all the inspection on the client. NAP can be used on VPN, IPSEC, 802.1x, or DHCP, and uses client issued health statements for the inspection. It covers more scenarios and is a faster inspection process.
Network Access Protection with MSIT
Oct 10, 2007 at 9:32 PMYou might also have a v-lan that has internet access only, so guests on your network that don't meet your criteria for health can still get to the net.