A system, method and apparatus authenticates and protects an Internet
Protocol (IP) user-end device by providing a client-based security
software resident on the IP user-end device, authenticating the IP
user-end device using the client-based security software and a network
security node communicably coupled to the IP user-end device,
authenticating a user of the IP user-end device whenever a trigger
condition occurs using an in-band channel between the client-based
security software and the network security node, and protecting the IP
user-end device by: (a) screening incoming IP traffic to the IP user-end
device using the client-based security software, and (b) detecting an
attack or a threat involving the IP user-end device using the network
security node.