Take it beyond IDS/IPS with post-connect NAC

When deployed with Safe Access®, StillSecure's award-winning network access control (NAC) solution, Strata Guard® functions as a post-connect NAC sensor, giving you greater control over monitoring and enforcing policy compliance and behavior on network endpoints.

Watch Engineer Ben explain post-connect monitoring»

As a post-connect sensor, Strata Guard is deployed to monitor internal network traffic. The figure at right illustrates the post-connect process. All the end users shown on the left side of the graphic passed their Safe Access-administered pre-connect tests and were deemed to be in compliance when they came on the network.

The figure shows how Strata Guard detects dangerous behavior emanating from one of the supposedly safe endpoints. In this example, Strata Guard is configured to sniff outbound traffic. In Step 1, Strata Guard detects the endpoint's attempt to connect to a P2P network using a prohibited application, such as Kazaa™ or LimeWire™. In Step 2, Strata Guard sends the information about this policy-violating behavior to Safe Access. In Step 3, Safe Access quarantines the offending device. The entire process takes, on average, between 5 and 10 seconds.

To learn more, download our three-page whitepaper, Keeping Trusted Endpoints Honest: Using IDS/IPS for Post-Connect NAC