What Is Network Access Control (NAC)? - Check Point Software

What Is Network Access Control (NAC)?

Network access control (NAC) solutions enable an organization to restrict unauthorized or non-compliant devices and users from accessing the corporate network. This helps to ensure that all devices connected to the corporate network are compliant with corporate security policies. In addition, continuously checking device compliance is a core requirement for any organization’s Zero Trust Security model. Here we discuss common use cases and capabilities of Network Access Control solutions and why NAC is important.

Why is Network Access Control Important (NAC)?

All devices connected to a corporate or private network are a potential security risk to an organization. If a device is lacking important patches, has not installed the latest security updates, or is potentially infected with malware, then allowing it to connect to the corporate network could provide an attacker with a means of accessing the corporate network.

Network Access Control solutions provide organizations with the ability to enforce their security policies by blocking non-compliant devices from connecting to the network. This enables the company to manage its digital attack surface and reduce its risk of cyber threats.

Capabilities of Network Access Control (NAC)

NAC solutions should include the following core capabilities:

Types of Network Access Control

Network Access Control can be implemented under two different models:

Pre-admission and post-admission NAC are not mutually exclusive, and, ideally, an organization will have solutions that implement both. This defense-in-depth approach blocks as many threats as possible from connecting to the network in the first place and attempts to identify any that slipped through the cracks before they can move laterally and gain access to additional corporate resources.

Common Use Cases for NAC

NAC enables an organization to manage access to its network and IT resources. Some common use cases for NAC include:

Network Access Control with Check Point

Network Access Control solutions provide organizations with control over the devices that are connected to the corporate network. With NAC, companies can block non-compliant devices entirely or restrict their access to corporate assets.

Check Point solutions integrate with NAC and identity solutions to address common NAC use cases. Additionally, Check Point solutions offer key capabilities for NAC, including:

Built-in remote access device security posture checks in Check Point Endpoint Security and Private Access ZTNA enforce zero trust access to corporate resources and applications.