How to open the network access function

  
1 in windows2008 system, install the network access protection function; open the Win2008 system "start” menu, select "> program""/“administrative tool”/“server manager&rdquo ; command, click the "role" node option from the left side of the server manager window that appears, and click the "Add role" function in the right area of ​​the corresponding node to open the role add wizard window Follow the prompts to select the "Network Policy and Access Service" item, then click the "Install" button, and then follow the wizard default settings to complete the installation task of the Network Access Protection function; 2. Create a health and safety standard; In operation, we can first click the “Server Manager” button in the system tray to select “role","network policy and access service> from the left area of ​​the pop-up server manager window ;,“NPS”,“Network Access Protection”,“System Health Validator&rdq Uo; node option, click the “properties” button in the right area of ​​the target option to open the security and health verification dialog box, click the “Configure” button, select the regular “Antivirus application is enabled” ;, “All firewalls have been enabled for all network connections, "antivirus programs are the latest" and several health and safety standards. Any computer that needs to be connected to the LAN must meet the above health standards at the same time, Win2008 system It is considered to be a healthy and secure computer; 3. Create a security verification policy; when creating a healthy security verification policy, we can first locate the mouse in the "Network Policy Server" in the left area of ​​the Server Manager window. Node options, and then expand the "Policy" policy from the bottom of the target node, and then click the "New" button under the target branch to bring the new one from the pop-up security verification policy dialog box. “Policy name” set to "health computer", will “ client SHV ​​check & rdquo The parameter is set to "The client has passed all SHV checks", and the "SHV" parameter used in this health policy is selected as "Windows security health verification program", and finally click the "OK" button to end A healthy security verification policy creation operation; according to the same steps, we can also create an unhealthy security verification policy, but when creating this policy, we must select the “Client SHV ​​Check” parameter as “Customer”. The terminal failed to pass one or more SHV checks, and the rest of the parameters are the same as above; 4. Create a new network connection strategy; locate the mouse first in the left area of ​​the Server Manager window “ Network Policy and On the Access Service node, and from the bottom of the node, click the “NPS",“strategy>,“"network policy" option, and click the “New” button from the target option. A Create Network Connection Policy Wizard window will appear on the screen; set the "Policy Name" parameter to “ "Connect", select the "Network Access Server Type" option as "DHCP Server", and then click the "Add" button from the back interface, and select "Select Condition" as the previous creation. Good "healthy computer>; strategy, according to the wizard default prompts one by one, <; granted access rights & rdquo;, & ldquo; only perform computer health check & rdquo; set options, and finally "strategy settings" parameter settings For NAP to force full network access, click the “Complete" button to end the network connection policy creation work. Then follow the same steps, we create a "unhealthy connection" network strategy, just in doing this, we must select the "select condition" parameter as "unhealthy computer" strategy, and will “Policy setting” is set to “deny access” option, the rest of the parameters are exactly the same as above; 5. Set the DHCP service function; considering that the ordinary computer accesses the network, first need to contact the DHCP server in the LAN. Therefore, we must also set the appropriate DHCP service parameters to ensure that all computer's Internet connection request is forwarded to the Win2008 system's network access protection function through DHCP. Click the “Start”/“Program”/“Administrative Tools”/“Server Manager”/“DHCP” option in the server system desktop to enter the DHCP server console interface and open the target. For the scope's property interface, click the “Network Access Protection” tab in the interface, select the “Enable this Scope” option in the corresponding option settings page, and select “Use default network access protection configuration”. File & rdquo;, and finally click the & ldquo; button to perform the settings save operation. After the above five steps, the user can easily open the network access function under the Windows2008 system. As long as there is a threatening computer to connect to the network, it will be controlled by the win2008 network access protection function to avoid transmitting the virus to the virus. Other computers ensure network security within the LAN.
Copyright © Windows knowledge All Rights Reserved