Security Solutions

A-15
Addendum to the ProCurve Access Control Security Design Guide
Microsoft NAP
Figure A-4. Client-Side NAP Architecture
NAP Server Architecture
The NAP server architecture is in some ways analogous to an AAA architec-
ture. An enforcement point controls endpoints’ network access according to
instructions from a policy server—here, the NPS. The NPS, in turn, makes
decisions based on its own policies and information stored in repositories.
The components of the architecture are described in the sections below.
Note As with AAA (in which the same physical device can act as PEP and PDP), the
same physical server can run the Windows Server 2008 components required
for a policy enforcement point and an NPS. However, it is recommended that
you separate the roles.