Complete visibility. Dynamic control. Faster response.

Identify connected devices, evaluate security posture and apply granular access policies using context from users, endpoints and applications. Open integrations extend enforcement across switching, Wi-Fi, next-generation firewalls and security operations tools.

Discover and classify every endpoint

Profiler identifies and classifies managed, unmanaged and IoT devices, providing visibility, reporting and behavior analytics. Automatic and custom classification help teams understand what is connected before access decisions are made.

a group of three is looking at a laptop monitor

Enforce least-privilege access

Validate user identity and device security posture, then connect each endpoint with an access policy based on role, device class, location, time and other context.

a hand is typing into a mobile device

Contain risk with dynamic segmentation

Apply dynamic network segmentation based on user role or device class to limit access and reduce the risk of threats spreading laterally across the network.

two administrators looking at a desktop monitor in a server room

Automate threat response

Use alerts from next-generation firewalls and SIEM solutions to trigger mitigating actions at the device-connection level, based on threat severity and policy context.

an admin user is looking at data displayed on a monitor while typing on a keyboard

Features and capabilities

Network access control for users, devices and IoT

Endpoint posture assessment

Assess device security before access and support pre- and post-admission controls through agent and agentless options.

Automated remediation

Dynamically assess and remediate device security before connection to help prevent unauthorized or infected endpoints from reaching enterprise resources.

RADIUS and 802.1X

Use integrated RADIUS to authenticate users and devices forwarded from standards-based 802.1X functions on switches and wireless controllers.

TACACS+ support

Distribute policies to access infrastructure using TACACS+ and support two-factor authentication with smart cards.

BYOD onboarding

Enable self-service onboarding for personal laptops and mobile devices, with integration options for Ivanti Neurons for Workspace or third-party EMM.

Guest access

Provide a customizable self-service portal with administrator- or sponsor-approved guest access.

Identity-based admission control

Share identity context with supported next-generation firewalls so they can serve as policy-enforcement points at the network perimeter.

Centralized policy management

Implement and enforce common remote and local access-control policies across a distributed enterprise.

Auditing and logging

Record system, user and device events for local analysis or sharing with external syslog and SIEM solutions.

REST API integration

Connect Policy Secure and Profiler with infrastructure and security systems such as switches, wireless LAN controllers, firewalls and SIEM tools.

Wizard-based configuration

Simplify common configuration tasks through guided administration.

Flexible deployment

Run Policy Secure and Profiler on physical, virtual and cloud platforms.

Ready to strengthen network access control?

Improve endpoint visibility, automate policy enforcement and support zero trust network access for managed, unmanaged and IoT devices.