8 Index

A

Abstract data model

   client (section 3.1.1, section 3.3.1)

   server (section 3.1.1, section 3.2.1)

Applicability

Attributes details

   server

C

Capability negotiation

Change tracking

Client

   abstract data model (section 3.1.1, section 3.3.1)

   higher-layer triggered events

      overview (section 3.1.4, section 3.3.4)

   initialization (section 3.1.3, section 3.3.3)

   local events (section 3.1.7, section 3.3.7)

   message processing

      implementation - RADIUS attributes

      overview

      processing RADIUS attributes

      RADIUS

         access-accept messages - processing

         access-reject messages - processing

         access-request messages - creating

      VSA support - RADIUS messages

   other local events

   sequencing rules

      implementation - RADIUS attributes

      overview

      processing RADIUS attributes

      RADIUS

         access-accept messages - processing

         access-reject messages - processing

         access-request messages - creating

      VSA support - RADIUS messages

   timer events (section 3.1.6, section 3.3.6)

   timers (section 3.1.2, section 3.3.2)

D

Data model - abstract

   client (section 3.1.1, section 3.3.1)

   server (section 3.1.1, section 3.2.1)

DHCP NAP example

E

Examples

   DHCP NAP example

   Health Registration Authority (HRA) example

   overview

   VPN connection with RQC/RQS quarantine example

   VPN NAP example

F

Fields - vendor-extensible

G

Glossary

H

HCAP-Location-Group-Name vendor-specific attribute

HCAP-User-Groups vendor-specific attribute

HCAP-User-Name vendor-specific attribute

Health Registration Authority (HRA) example

Higher-layer triggered events

   client

      overview (section 3.1.4, section 3.3.4)

   server

      overview

HRA example

I

Implementer - security considerations

Index of security parameters

Informative references

Initialization

   client (section 3.1.3, section 3.3.3)

   server (section 3.1.3, section 3.2.3)

Introduction

L

Local events

   client (section 3.1.7, section 3.3.7)

   server (section 3.1.7, section 3.2.7)

M

Message processing

   client

      implementation - RADIUS attributes

      overview

      processing RADIUS attributes

      RADIUS

         access-accept messages - processing

         access-reject messages - processing

         access-request messages - creating

      VSA support - RADIUS messages

   server

      implementation - RADIUS attributes

      processing RADIUS attributes

      RADIUS

         access-accept messages - creating

      VSA support - RADIUS messages

Messages

   Microsoft Vendor-Specific Attributes (VSAs)

   syntax

   transport

Microsoft Vendor-Specific Attributes (VSAs) message

MS_IPv6_Filter packet

MS_Quarantine_IPFilter packet

MS-AFW-Protection-Level (section 3.2.5.2.7, section 3.3.5.2.7)

MS-AFW-Protection-Level vendor-specific attribute

MS-AFW-Zone (section 3.2.5.2.6, section 3.3.5.2.6)

MS-AFW-Zone vendor-specific attribute

MS-Extended-Quarantine-State vendor-specific attribute

MS-Identity-Type (section 3.2.5.1.4, section 3.3.5.1.4)

MS-Identity-Type vendor-specific attribute

MS-IPv4-Remediation-Servers (section 3.2.5.2.9, section 3.3.5.2.9)

MS-IPv4-Remediation-Servers vendor-specific attribute

MS-IPv6-Filter (section 3.2.5.2.8, section 3.3.5.2.8)

MS-IPv6-Remediation-Servers (section 3.2.5.2.10, section 3.3.5.2.10)

MS-IPv6-Remediation-Servers vendor-specific attribute

MS-Machine-Name (section 3.2.5.1.7, section 3.3.5.1.7)

MS-Machine-Name vendor-specific attribute

MS-Network-Access-Server-Type (section 3.2.5.1.6, section 3.3.5.1.6)

MS-Network-Access-Server-Type vendor-specific attribute

MS-Quarantine-Grace-Time (section 3.2.5.2.5, section 3.3.5.2.5)

MS-Quarantine-Grace-Time vendor-specific attribute

MS-Quarantine-IPFilter (section 3.2.5.2.1, section 3.3.5.2.1)

MS-Quarantine-Session-Timeout (section 3.2.5.2.2, section 3.3.5.2.2)

MS-Quarantine-Session-Timeout vendor-specific attribute

MS-Quarantine-SoH (section 2.2.1.19, section 3.2.5.1.8, section 3.3.5.1.8)

MS-Quarantine-State (section 3.2.5.2.4, section 3.3.5.2.4)

MS-Quarantine-State vendor-specific attribute

MS-Quarantine-User-Class (section 3.2.5.2.3, section 3.3.5.2.3)

MS-Quarantine-User-Class vendor-specific attribute

MS-RAS-Client-Name (section 3.2.5.1.1, section 3.3.5.1.1)

MS-RAS-Client-Name vendor-specific attribute

MS-RAS-Client-Version (section 3.2.5.1.2, section 3.3.5.1.2)

MS-RAS-Client-Version vendor-specific attribute

MS-RAS-Correlation-ID vendor-specific attribute

MS-RDG-Device-Redirection vendor-specific attribute

MS-Service-Class (section 3.2.5.1.5, section 3.3.5.1.5)

MS-Service-Class vendor-specific attribute

MS-User-IPv4-Address vendor-specific attribute

MS-User-IPv6-Address vendor-specific attribute

MS-User-Security-Identity (section 3.2.5.1.3, section 3.3.5.1.3)

MS-User-Security-Identity vendor-specific attribute

N

Normative references

Not-Quarantine-Capable (section 3.2.5.2.11, section 3.3.5.2.11)

Not-Quarantine-Capable vendor-specific attribute

O

Other local events

   client

   server

Overview

Overview (synopsis)

P

Parameters - security index

Preconditions

Prerequisites

Product behavior

R

References

   informative

   normative

Relationship to other protocols

S

Security

   implementer considerations

   parameter index

Sequencing rules

   client

      implementation - RADIUS attributes

      overview

      processing RADIUS attributes

      RADIUS

         access-accept messages - processing

         access-reject messages - processing

         access-request messages - creating

      VSA support - RADIUS messages

   server

      implementation - RADIUS attributes

      processing RADIUS attributes

      RADIUS

         access-accept messages - creating

      VSA support - RADIUS messages

Server

   abstract data model (section 3.1.1, section 3.2.1)

   attribute details

   higher-layer triggered events

      overview

   initialization (section 3.1.3, section 3.2.3)

   local events (section 3.1.7, section 3.2.7)

   message processing

      implementation - RADIUS attributes

      processing RADIUS attributes

      RADIUS

         access-accept messages - creating

      VSA support - RADIUS messages

   other local events

   sequencing rules

      implementation - RADIUS attributes

      processing RADIUS attributes

      RADIUS

         access-accept messages - creating

      VSA support - RADIUS messages

   timer events (section 3.1.6, section 3.2.6)

   timers (section 3.1.2, section 3.2.2)

Standards assignments

Syntax

   MS-Quarantine-SoH

T

Timer events

   client (section 3.1.6, section 3.3.6)

   server (section 3.1.6, section 3.2.6)

Timers

   client (section 3.1.2, section 3.3.2)

   server (section 3.1.2, section 3.2.2)

Tracking changes

Transport

Triggered events - higher-layer

   client

      overview (section 3.1.4, section 3.3.4)

   server

      overview

Tunnel-type RADIUS attribute vendor-specific value

V

Vendor_Specific_Attributes packet

Vendor-extensible fields

Vendor-specific

   attributes

      HCAP-Location-Group-Name

      HCAP-User-Groups

      HCAP-User-Name

      MS-AFW-Protection-Level

      MS-AFW-Zone

      MS-Extended-Quarantine-State

      MS-Identity-Type

      MS-IPv4-Remediation-Servers

      MS-IPv6-Remediation-Servers

      MS-Machine-Name

      MS-Network-Access-Server-Type

      MS-Quarantine-Grace-Time

      MS-Quarantine-Session-Timeout

      MS-Quarantine-State

      MS-Quarantine-User-Class

      MS-RAS-Client-Name

      MS-RAS-Client-Version

      MS-RAS-Correlation-ID

      MS-RDG-Device-Redirection

      MS-Service-Class

      MS-User-IPv4-Address

      MS-User-IPv6-Address

      MS-User-Security-Identity

      Not-Quarantine-Capable

   values

      tunnel-type RADIUS attribute

Versioning

VPN connection with RQC/RQS quarantine example

VPN NAP example