Other resources

Release Notes

Support Knowledge Base
(login required)

Network Quarantine overview

With Network Quarantine, you can use your existing network access control (NAC) solution to control the communication of both managed and unmanaged endpoints.

NAC devices

With the Network Quarantine service, Tanium products can communicate with a NAC to isolate endpoints. The following NAC devices are supported:

Palo Alto Networks Layer 3 Firewall

Supports blocking of IP addresses with Dynamic Address Groups (DAG).

Cisco Identity Services Engine (ISE)

Supports blocking by MAC address.

Product integration

Tanium™ Discover

When the Network Quarantine service is configured with Tanium Discover, you can quarantine a MAC or IP address directly from the Interfaces pages. For more information, see the Tanium Discover User Guide.

Tanium™ Connect

Network Quarantine generates events when the NAC starts or stops, or when an endpoint is quarantined. You can send notifications about these events to destinations such as email, security information and event management (SIEM) software, or a file by creating a connection in Connect. For more information, see Configuring notifications.

Last updated: 8/14/2018 12:43 PM | Feedback