Skip to main content

Network Policy Server

Updated May 12, 2011

Network Policy Server (NPS) is the Microsoft implementation of a Remote Authentication Dial-in User Service (RADIUS) server and proxy in Windows Server 2008. NPS is the replacement for Internet Authentication Service (IAS) in Windows Server 2003.

As a RADIUS server, NPS performs centralized connection authentication, authorization, and accounting for many types of network access, including wireless and virtual private network (VPN) connections. As a RADIUS proxy, NPS forwards authentication and accounting messages to other RADIUS servers. NPS also acts as a health evaluation server for Network Access Protection (NAP).

Featured Resources

Network Access Protection Policies in Windows Server 2008
Download only. Read this white paper for a description of the different settings of NPS for NAP and how the different settings are related to create a customized health determination and enforcement solution.
NPS Fast Facts
Read this topic for a quick introduction to NPS in Windows Server 2008.
Foundation Network Companion Guide: Deploying Computer and User Certificates
Download only. Use client computer and user certificates to allow NPS and RRAS to authenticate users and computers when you deploy EAP-TLS or PEAP-TLS on Windows Server 2008.
Best Practices for NPS
Read this topic for NPS implementation and configuration best practices based on recommendations from Microsoft Customer Service and Support.
Forum thread: IAS to NPS Migration Problems
Query resolved: Trying to use the iasmigreader.exe tool and Connection Request policies to move authentication settings from IAS on Windows 2000 Server to NPS on Windows Server 2008 R2.
Hotfix for migrating IAS settings to NPS
This hotfix helps you change MDB files used by IAS in Windows Server 2003 to XML files used by NPS in Windows Server 2008.

Windows Server 2008 Product Documentation

NAP Step-by-Step Guides