Creating a policy profile activation rule

Expand all | Collapse all

To create a policy profile activation rule:

  1. In the console tree, select the administration group for which you have to create a policy profile activation rule.
  2. In the workspace of the group, select the Policies tab.
  3. Select a policy and switch to the policy properties window using the context menu.
  4. Select the Policy profiles section in the policy properties window.
  5. Select the policy profile for which you need to create an activation rule, and click the Properties button.

    The policy profile properties window opens.

    If the list of policy profiles is empty, you can create a policy profile.

  6. Select the Activation rules section, and click the Add button.

    The New Policy Profile Activation Rule Wizard starts.

  7. In the Policy profile activation rules window, select the check boxes next to the conditions that must affect activation of the policy profile that you are creating:
    • General rules for policy profile activation
    • Rules for Active Directory usage
    • Rules for a specific device owner
    • Rules for hardware specifications

    The number of additional windows of the Wizard depends on the settings that you select at this step. You can modify policy profile activation rules later.

  8. In the General conditions window, specify the following settings:
    • In the Device is offline field, in the drop-down list specify the condition for device presence on the network:
      • Yes
      • No
      • No value is selected
    • In the The device is in the specified network location box, use the drop-down lists to set up the policy profile activation if the Administration Server connection rule is executed / not executed on this device:
      • Executed / Not executed
      • Rule name

    The General conditions window is displayed if the General rules for policy profile activation check box is selected.

  9. In the Conditions using tags window, specify the following settings:
    • Tag list
    • Apply to devices without the specified tags

    The Conditions using tags window is displayed if the General rules for policy profile activation check box is selected.

  10. In the Conditions using Active Directory window, specify the following settings:
    • Device owner's membership in Active Directory security group
    • Device membership in Active Directory security group
    • Device allocation in Active Directory organizational unit

    The Conditions using Active Directory window is displayed if the Rules for Active Directory usage check box is selected.

  11. In the Conditions using the device owner window, specify the following settings:
    • Device owner
    • The device owner is included in an internal security group
    • Activate policy profile by specific role of device owner

    The Conditions using the device owner window opens if the Rules for a specific device owner check box is selected.

  12. In the Conditions using equipment specifications window, specify the following settings:
    • RAM size, in MB
    • Number of logical processors

    The Conditions using equipment specifications window is displayed if the Rules for hardware specifications check box is selected.

  13. In the Name of policy profile activation rule window, in the Rule name field, specify a name for the rule.

The profile will be saved. The profile will be activated on the device when activation rules are triggered.

Policy profile activation rules created for the profile are displayed in the policy profile properties in the Activation rules section. You can modify or remove any policy profile activation rule.

Multiple activation rules can be triggered simultaneously.

See also:

Policy setup and propagation: Device-centric approach

Page top