04.03.2013 Views

OfficeScan 10.6 Administrator's Guide - Trend Micro™ Online Help

OfficeScan 10.6 Administrator's Guide - Trend Micro™ Online Help

OfficeScan 10.6 Administrator's Guide - Trend Micro™ Online Help

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

The Client Validation Sequence<br />

Using Policy Server for Cisco NAC<br />

Client validation refers to the process of evaluating an <strong>OfficeScan</strong> client’s security<br />

posture and returning instructions for the client to perform if the Policy Server<br />

considers it to be at-risk. The Policy Server validates an <strong>OfficeScan</strong> client by using<br />

configurable rules and policies.<br />

Below is the sequence of events that occurs when an <strong>OfficeScan</strong> client attempts to<br />

access the network:<br />

1. The Cisco Network Access Device starts the validation sequence by requesting the<br />

security posture of the client when it attempts to access the network.<br />

2. The Network Access Device then passes the security posture to the ACS server.<br />

3. The ACS server passes the security posture to the Policy Server, which performs<br />

the evaluation.<br />

4. In a separate process, the Policy Server periodically polls the <strong>OfficeScan</strong> server for<br />

Virus Pattern and Virus Scan Engine version information to keep its data current.<br />

It then uses a policy you configure to perform a comparison of this information<br />

with the client security posture data.<br />

5. Following that, the Policy Server creates a posture token, and passes it back to the<br />

<strong>OfficeScan</strong> client.<br />

15-7

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!