Addendum to the ProCurve Access Control Security Design Guide

Microsoft NAP

Remediation and Health Requirement Servers

While a compliant endpoint is connected to the network, the NAP Agent periodically queries the remediation servers to see if updates on software patches or antivirus signatures are available. If they are, the agent downloads them.

Figure A-10. Relationship of NAP Clients to Remediation Servers

Non-compliant endpoints are sent to the Restricted Network, where their NAP Agents can download the necessary patches and signatures to become com- pliant.

Figure A-11. Relationship between NPS and Health Requirement Servers

The NPS periodically queries the health requirement servers to see if updates on software patches or antivirus signatures are available.

A-23