NAC Best Practices
Before deploying NAC devices, it is important to do your research.
3 slides · 1 min read · Domain 4
This usually begins by writing or evaluating the organizations' remote access policies.
This policy should clearly identify the scope of network access that the organization wishes to allow and will include both the corporate users and the range of devices.
It should also provide consideration for the requirements of guest users (visitors, contractors) and what types of devices they may bring with them. If the policy is going to allow access from mobile devices, then there should be a mobile device management (MDM) policy and a set of procedures that differentiates between enterprise-owned devices and those being connected to the network on an ad-hoc basis.
The policy should detail what controls these users or devices need to adhere to such as:
- encryption
- screen locking
- antivirus (AV)
- and firewall settings.
Once the policy requirements are fully understood, then examine the options presented by the various NAC vendors and choose the solution that best fits with the policy.
