IBM Tivoli and Cisco Network Card User Manual


 
Appendix A. Hints and tips 469
Since scenarios 5 and 6 are the most complex, the sequence of events for these
scenarios is depicted in Figure 8-43.
Figure 8-43 Sequence of Events for Scenarios #5 and #6
Scenario 7 - pre-admission, Security Compliance Manager running,
compliant client
NAC Appliance restarts admission process.
Security Compliance Manager Client is running and semaphore = 1
Admit client
Scenario 8 - post-admission, Security Compliance Manager running,
compliant client
In this case, the semaphore should start as 1 since we have been
admitted.
Windows Scheduler or cron job runs statuscheck.exe.
NAC Appliance AgentSemaphore TSCMAgent.exestatuscheck.exe TSCM ClientRemediation UI
pquery
Violations>0
NAC Appliance Manager
pnotify
Semaphore?
Semaphore=0
Semaphore=0
KickUser
Authenticate
Semaphore?
Semaphore<1
Quarantine
Execute
Semaphore=0
Semaphore=-1
Execute
pquery
Violations>0
pnotify
Semaphore?
Semaphore=-1
Execute
Remediate
Rescan
Semaphore=1
Semaphore?
Semaphore=1
Admit
#5
Starts
here