<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: NAC agent-multiple antivirus version in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311948#M821526</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear Fasehbai&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can we have any version of Antivirus Software for Eg Evualuation version will also work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can We have Remidiation Server to update the Endpoint Instead of Going to the Internet for any update.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 07 Sep 2009 05:21:56 GMT</pubDate>
    <dc:creator>tabrez_shaikh</dc:creator>
    <dc:date>2009-09-07T05:21:56Z</dc:date>
    <item>
      <title>NAC agent-multiple antivirus version</title>
      <link>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311946#M821426</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;customer has two version of McAfee antivirus. What I need is - user get the same role when login to PC with version X or PC with version Y. Is it possible to create AV install rule with OR logic? Something like if on PC is installed version X OR version Y pass check and give user Role USER.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for help.&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 11:39:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311946#M821426</guid>
      <dc:creator>peter-marcek</dc:creator>
      <dc:date>2020-02-21T11:39:37Z</dc:date>
    </item>
    <item>
      <title>Re: NAC agent-multiple antivirus version</title>
      <link>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311947#M821494</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Peter,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Roles are assigned based on your authentication (and mapping rules), not on the basis of your posture rules.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So what you can do here is tweak your requirement-rules.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Goto  Clean Access -&amp;gt; Clean Access Agent -&amp;gt; Requirements -&amp;gt; Requirement-Rules&lt;/P&gt;&lt;P&gt;- Chose the requirement&lt;/P&gt;&lt;P&gt;- Chose the correct OS&lt;/P&gt;&lt;P&gt;- Set requirement met to Any&lt;/P&gt;&lt;P&gt;- Checkmark the AV rules for both versions of AV&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So now if your user role has this requirement enabled, any of those two AVs would satisfy the requirement.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 06 Sep 2009 14:25:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311947#M821494</guid>
      <dc:creator>Faisal Sehbai</dc:creator>
      <dc:date>2009-09-06T14:25:14Z</dc:date>
    </item>
    <item>
      <title>Re: NAC agent-multiple antivirus version</title>
      <link>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311948#M821526</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear Fasehbai&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can we have any version of Antivirus Software for Eg Evualuation version will also work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can We have Remidiation Server to update the Endpoint Instead of Going to the Internet for any update.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 07 Sep 2009 05:21:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311948#M821526</guid>
      <dc:creator>tabrez_shaikh</dc:creator>
      <dc:date>2009-09-07T05:21:56Z</dc:date>
    </item>
    <item>
      <title>Re: NAC agent-multiple antivirus version</title>
      <link>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311949#M821567</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Tabrez,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes to both questions. Setting those up will vary, but you can do both those things.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH,&lt;/P&gt;&lt;P&gt;Faisal&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 08 Sep 2009 11:26:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311949#M821567</guid>
      <dc:creator>Faisal Sehbai</dc:creator>
      <dc:date>2009-09-08T11:26:14Z</dc:date>
    </item>
    <item>
      <title>Re: NAC agent-multiple antivirus version</title>
      <link>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311950#M821614</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear Faisal &lt;/P&gt;&lt;P&gt;It will be great if you can answer to all of my queries.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1] What are the different category checks that NAC can implement? (for example, anti-virus, operating system, registry check, â&amp;#128;¦)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;   Please, provide snap shots of NAC policy/rules applied.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2] Service/Warranty: how much is it to renew the software licenses after the warranty expires?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;   Also, how much is it for the Yearly Subscription/maintenance of Licenses?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;   Suppose if we didn't renew the service, will our NAC work without updates?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3] Can we enforce updates using a PC placed in quarantine/inside/trusted area instead of using the internet (remediation server)?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;4] Application check of end point: does it check for Evaluation, trail, licensed, or un-licensed version of any application (for example, anti virus, OS, â&amp;#128;¦)?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;5] Let's say we configured the appliance to be VPN, thereafter is it possible to change it to wireless? If yes, how difficult it is?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;6] After implementing the NAC VPN solution in a single-sign-on, how much time delay will it add to authenticating a remote user? In other words, will there be a considerable delay?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Sep 2009 05:41:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311950#M821614</guid>
      <dc:creator>tabrez_shaikh</dc:creator>
      <dc:date>2009-09-09T05:41:39Z</dc:date>
    </item>
    <item>
      <title>Re: NAC agent-multiple antivirus version</title>
      <link>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311951#M821651</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;1] What are the different category checks that NAC can implement? (for example, anti-virus, operating system, registry check, â&amp;#128;¦)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Faisal: All of the above. It would take a good sized chapter to detail all you're asking for above in Q1, so I would therefore suggest a book for you to pick up and read. The title is "Cisco NAC Appliance: Enforcing Host Security with Clean Access (Paperback)" ISBN for this book is 1587053063.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also see the Video-On-Demand which explains all the requirement/rules etc. VODs are located here: &lt;A class="jive-link-custom" href="http://tinyurl.com/d74t9u" target="_blank"&gt;http://tinyurl.com/d74t9u&lt;/A&gt; and you're looking for VOD 5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2] Service/Warranty: how much is it to renew the software licenses after the warranty expires?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also, how much is it for the Yearly Subscription/maintenance of Licenses?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Suppose if we didn't renew the service, will our NAC work without updates?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Faisal: Your account team is the best resource for this. I don't know the pricing. NAC will continue to work without renewal of service - you just won't get support for it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3] Can we enforce updates using a PC placed in quarantine/inside/trusted area instead of using the internet (remediation server)?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Faisal: Yes, you can have your internal remediation servers you can point your clients to.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;4] Application check of end point: does it check for Evaluation, trail, licensed, or un-licensed version of any application (for example, anti virus, OS, â&amp;#128;¦)?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Faisal: Yes to all. The rule/requirement capabilities of CCA are very flexible and you can get quite creative&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;5] Let's say we configured the appliance to be VPN, thereafter is it possible to change it to wireless? If yes, how difficult it is?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Faisal: Same CAS can work for both wireless and VPN. How difficult? Depends on your network. Your account team again would be the best resource to get you a design&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;6] After implementing the NAC VPN solution in a single-sign-on, how much time delay will it add to authenticating a remote user? In other words, will there be a considerable delay? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Faisal: Delay for authentication is minimal (two seconds to five seconds) If you client however needs rememdiation, that delay is separate.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 10 Sep 2009 00:37:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311951#M821651</guid>
      <dc:creator>Faisal Sehbai</dc:creator>
      <dc:date>2009-09-10T00:37:51Z</dc:date>
    </item>
    <item>
      <title>Re: NAC agent-multiple antivirus version</title>
      <link>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311952#M821681</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Dear Fasehbai&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your helpful Information , I will follow the instruction given by you.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 10 Sep 2009 04:25:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/nac-agent-multiple-antivirus-version/m-p/1311952#M821681</guid>
      <dc:creator>tabrez_shaikh</dc:creator>
      <dc:date>2009-09-10T04:25:14Z</dc:date>
    </item>
  </channel>
</rss>

