Configuration & Policy Orchestration

ZT-NAC policies define how devices are evaluated and what network access is granted.

NAC Policy Navigation

Navigation: Sidebar → Organization → NAC → Policy → Add Policy

NAC Policy Creation

Step-by-Step Configuration

  1. Name: Enter the name of the policy

  2. Targets: Users / Groups

  3. Click Add

Created NAC policy will be visible in the table

Policy Evaluation Logic

When a device connects:

  1. Agent identifies user

  2. Device posture is validated

  3. Policy engine evaluates conditions

  4. Firewall rules are dynamically applied

If no policy matches → Deny by Default

NAC Policy Management

Navigation: Sidebar → Organization → NAC → Policy

Available Actions

  1. Search:Find policy by name

  2. Refresh: Reload policy list

  3. Download: Export policy list

  4. View: Inspect policy configuration

  5. Edit: Modify rule parameters

  6. Delete: Remove policy

  7. Enable/Disable : Toggle enforcement

Best Practices

  • Use group-based policies

  • Avoid overly broad access rules

  • Keep deny-by-default as baseline

  • Regularly review unused policies