North American Systems
International
Where Innovation
Meets Solutions
NAC (Network Access Control) is a popular technology that is oftentimes seen as complicated and expensive. With Sophos Endpoint Security and Data Protection, NAC functionality is built right in, and doesn't require additional licenses or add-ons.
Endpoint Security and Data Protection’s built-in NAC assesses endpoint health to determine if they should be allowed to access the network. The NAC component is setup with default policies to check if the endpoint system’s anti-virus is enabled and firewall protection is active, and up-to-date, whether the machine is centrally managed with Sophos or not. In addition, the NAC agent can check and see if the client’s Windows operating system has required service packs installed, and Microsoft/Windows Update enabled as a requirement to access the network.
The Sophos NAC component can be setup to automatically fix these issues prior to the client accessing the network, and alerts can be sent to the administrator if endpoints have disabled patch agents or their firewall regardless of whether or not the endpoint is managed or unmanaged.