232
Novell ZENworks Network Access Control Users Guide
no
vd
ocx
(e
n)
24
Ma
rch 20
09
10.1 Configuring Novell ZENworks Network
Access Control for DHCP
The primary configuration required for using Novell ZENworks Network Access Control and
DHCP is setting up the quarantine area (see
Section 10.1.1, “Setting up a Quarantine Area,” on
page 232
). You should also review the following topics related to quarantining endpoints:
Endpoint quarantine precedence (see
Section 7.1, “Endpoint Quarantine Precedence,” on
page 217
).
Untested endpoints (see
Section 7.7, “Untestable Endpoints and DHCP Mode,” on page 222
).
Unsupported operating systems (see
Section 6.3.12, “Defining Non-supported OS Access
Settings,” on page 211
).
Endpoint testing exceptions (see
Section 7.3, “Always Granting Access to an Endpoint,” on
page 220
and
Section 7.4, “Always Quarantining an Endpoint,” on page 221
).
Action to take for failed tests (see
Section 6.3.14, “Selecting Action Taken,” on page 211
)
DHCP quarantine options:
Router Access Control List (ACL) settings (see
“Configuring the Router ACLs” on
page 233
).
Static routes assigned to the endpoint (see
Section 3.12.3, “Adding a DHCP Quarantine
Area,” on page 106
)
“
Deploying Novell ZENworks Network Access Control Using DHCP
” in the
Novell ZENworks
Network Access Control Installation Guide
.
The following sections contain more information:
Section 10.1.1, “Setting up a Quarantine Area,” on page 232
Section 10.1.2, “Router Configuration,” on page 232
Section 10.1.3, “Configuring Windows Update Service for XP SP2,” on page 233
10.1.1 Setting up a Quarantine Area
Set up a restricted area of your network that users can access when you do not want to allow full
access to the network. See
Section 3.10, “Quarantining, General,” on page 70
for instructions.
10.1.2 Router Configuration
If you do not elect to enforce using static routes on the endpoint (
Section 3.10, “Quarantining,
General,” on page 70
), you will need to configure router ACLs.
This option restricts the network access of non-compliant endpoints by assigning DHCP settings on
a quarantined network. The network, gateway, and ACLs restricting traffic must be configured on
your router, which is accomplished by multinetting or adding a virtual interface to the router that
acts as the quarantine gateway IP address. The quarantine area DHCP settings must reflect this
configuration on your router.
Содержание ZENworks Network Access Control 5.0
Страница 4: ...4 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 14: ...14 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 Glossary 525 ...
Страница 136: ...136 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 156: ...156 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 216: ...216 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 224: ...224 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 226: ...226 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 Figure 8 1 Inline Installations ...
Страница 227: ...High Availability and Load Balancing 227 novdocx en 24 March 2009 Figure 8 2 DHCP Installation ...
Страница 234: ...234 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 294: ...294 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 310: ...310 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 328: ...328 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 378: ...378 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 384: ...384 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 392: ...392 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 436: ...436 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 442: ...442 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 450: ...450 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 460: ...460 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 524: ...524 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...
Страница 534: ...534 Novell ZENworks Network Access Control Users Guide novdocx en 24 March 2009 ...