Creating a policy profile activation rule

Expand all | Collapse all

To create a policy profile activation rule:

  1. Proceed to the list of profiles of a policy that you want.

    The list of policy profiles appears.

  2. On the Policy profiles tab, click the policy profile for which you need to create an activation rule.

    If the list of policy profiles is empty, you can create a policy profile.

  3. On the Activation rules tab, click the Add button.

    The window with policy profile activation rules opens.

  4. Specify a name for the rule.
  5. Select the check boxes next to the conditions that must affect activation of the policy profile that you are creating:
    • General rules for policy profile activation

      For this option, specify at the next step:

      • Device status
      • Rule for Administration Server connection is active on this device
    • Rules for specific device owner

      For this option, specify at the next step:

      • Device owner
      • Device owner is included in an internal security group
    • Rules for hardware specifications

      For this option, specify at the next step:

      • RAM size, in MB
      • Number of logical processors
    • Rules for role assignment

      For this option, specify at the next step:

      Activate policy profile by specific role of device owner

    • Rules for tag usage

      For this option, specify at the next step:

      • Tag
      • Apply to devices without the specified tags
    • Rules for Active Directory usage

      For this option, specify at the next step:

      • Device owner's membership in Active Directory security group
      • Device membership in Active Directory security group
      • Device allocation in Active Directory organizational unit

    The number of additional pages of the Wizard depends on the settings that you select at the first step. You can modify policy profile activation rules later.

  6. Check the list of the configured parameters. If the list is correct, click Create.

The profile will be saved. The profile will be activated on the device when activation rules are triggered.

Policy profile activation rules created for the profile are displayed in the policy profile properties on the Activation rules tab. You can modify or remove any policy profile activation rule.

Multiple activation rules can be triggered simultaneously.

See also:

Policy setup and propagation: Device-centric approach

Scenario: Configuring network protection

Page top