RRAS NAP and Network Access Quarantine Control

Applies To: Windows Server 2008 R2

Network Access Protection (NAP) provides a platform to help ensure that client computers on a private network meet administrator-defined requirements for system health. NAP enforcement occurs at the moment client computers attempt to access the network through network access servers, such as a virtual private network (VPN) server running Routing and Remote Access, or when client computers attempt to communicate with other network resources.

Network Access Quarantine Control is similar in function to NAP VPN enforcement, but it provides added protection for remote access connections only. NAP provides added protection for Internet Protocol security (IPsec)-based communications, 802.1X authenticated connections, VPN connections, Dynamic Host Configuration Protocol (DHCP) configuration, and Terminal Services Gateway (TS Gateway) connections.

.

Events

Event ID Source Message

20210

RemoteAccess

The Network Access Protection (NAP) enforcement client failed to register with the Network Access Protection Agent (NapAgent) service. Some network services or resources may not be available. If the problem persists, disconnect and retry the remote access connection or contact the administrator for the remote access server.

20212

RemoteAccess

The request sent to the Network Access Protection Agent (NapAgent) failed. Some network services or resources might not be available. If the problem persists, disconnect and retry the remote access connection or contact the administrator for the remote access server.

20213

RemoteAccess

The Network Access Protection (NAP) enforcement client received an invalid request for the following remote access connection: %d. The connection does not exist. Retry the remote access connection. If the problem persists, make sure that you can connect to the Internet, and then contact the administrator for the remote access server.

20214

RemoteAccess

The Network Access Protection (NAP) enforcement client received an invalid request for the remote access connection. Some network services or resources may not be available. If the problem persists, disconnect and retry the remote access connection or contact the administrator for the remote access server.

20229

RemoteAccess

The remote access connection with the correlation ID %1 received an unexpected/mismatched response to its Statement of Health (SoH) from the server. The NAP correlation ID for this transaction is %2.

20230

RemoteAccess

The connection from user %1 on port %2 has been disconnected because the Session Timeout received from the RADIUS server has expired. This connection received only an IPv6 address from the RRAS server and it is invalid to configure the MS-Quarantine-Session-Timeout attribute on the NPS server for IPv6-only connections.

RRAS Server

Routing and Remote Access Service Infrastructure