Addendum to the ProCurve Access Control Security Design Guide
Microsoft NAP
DHCP
The DHCP method requires that DHCP be run on a Windows Server 2008 and also requires Active Directory domain services. Figure
Figure A-7. DHCP Network Access
1.The NAP client (using the DHCP NAP EC) sends its SSoH to a DHCP server, using DHCP protocols.
2.The DHCP server sends the client’s SSoH to the NPS, using RADIUS messages.
3.The NPS performs a system health validation and sends its verdict to the DHCP client.
4.The DHCP server takes one of the following actions:
a.If the endpoint is
b.If the endpoint is compliant, the DHCP server assigns it an IP address that gives it unrestricted network access (in one of the normal sub- nets).