SOLUTION
NEED
NAC Network Access Control
NAC uses an agentless architecture powered by patented packet analysis and intelligent device identification technologies. Without installing agents or changing the existing network architecture, it automatically discovers and inventories a wide range of IT, IoT, OT, and IoMT devices, providing 100% asset visibility. By combining Zero Trust access control, IP/MAC address management, and device allowlist management, UPAS NAC automatically verifies device identities based on corporate security policies. Devices that violate policies or are not authorized can have their access restricted, quarantined, or blocked. This significantly reduces the risks of Shadow IT and lateral movement while creating a secure, efficient, and compliant corporate network environment.
ITAM IT Asset Management
ITAM provides automated endpoint security management around the clock. It continuously monitors device status and automatically detects vulnerabilities, unusual behavior, and compliance risks. With patch management, AD/GPO hardening, USB control, and remote maintenance capabilities, it can automatically remediate risks and apply security measures. Unlike traditional ITAM solutions that are limited to monitoring, UPAS ITAM works together with NAC to provide integrated device management. Based on security policies and risk levels, endpoints with potential threats can automatically have their access restricted, quarantined, or blocked. This enables threats to be addressed as soon as they are detected and provides Zero Trust device governance across the entire process—from monitoring and detection to remediation and access blocking.
IAM Identity & Access Management
Through binding AD accounts and computers, forbidden local login, forbidden unauthorized domain exit, etc., UPAS forces all computers to follow companies’ security policies and use specific AD accounts for logging in specific PC, integrates AD information and device information, and provides account use records.
IPAM IP Address Management
IPAM can automatically identify device attributes, show IP/MAC information, has the function of multiple binding of IP/MAC/DHCP section/computer name/hardware fingerprint (UUID) for all accessed devices to realize IP protection, IP retention, IP reclamation, and prevent IP conflict and MAC simulation, etc.
Mobile Device Management
UPAS MDM goes beyond device management by bringing smartphones and tablets within the security boundaries of the corporate network. It automatically inventories device information, manages applications and security policies, and provides remote operation, device locking, data wiping, patch deployment, and application allowlist and blocklist management. Together, these capabilities provide continuous security management for mobile devices and applications. When a device does not comply with corporate security policies, UPAS MDM can automatically restrict its functions, reduce its permissions, or block access, significantly strengthening mobile security across the organization.