// artifact family
network access control (nac) forensics
10 browser-only forensics tools in this catalog group — browse by artifact family when you know the kind of evidence you are working with, not the investigation pattern.
tools in this family
ordered as in the forensics catalog. every tool runs locally — no upload, no account.
- cisco ise radius log forensic analyzerdrop cisco ise radius log export · parse endpoint + policy + result · runs locally
- aruba clearpass auth log forensic analyzerdrop clearpass auth export · parse device + role + enforcement · runs locally
- forescout counteract event log forensic analyzerdrop forescout event export · parse endpoint + compliance + action · runs locally
- portnox nac audit log forensic analyzerdrop portnox audit export · parse device + vlan + posture · runs locally
- extremecontrol nac log forensic analyzerdrop extremecontrol nac export · parse port + mac + policy · runs locally
- nac quarantine bypass detectordrop nac enforcement log export · detect quarantine bypass attempts · runs locally
- rogue endpoint admission detectordrop nac admission log export · detect unauthorized endpoint joins · runs locally
- dot1x failure burst anomaly detectordrop dot1x auth log export · detect burst authentication failures · runs locally
- multi nac endpoint posture correlatordrop 2+ nac posture exports · correlate endpoint compliance drift · runs locally
- cross nac wifi identity correlatordrop nac + wlan exports · correlate mac to identity + ssid · runs locally