Applying security policies to agents

You must apply at least one security policy to every agent group. Several secondary policies can also be added, and will apply when certain conditions are met.

EXAMPLE
You can add a conditional policy for mobile users, which applies when some workstations are no longer located within the internal corporate network. You could also define a quarantine policy that applies as soon as an agent's health indicators reach unsatisfactory levels.

To apply one or several security policies to an agent group:

  1. Go to the Policies tab in an agent group.
  2. In the Policies drop-down list, select the main security policy to be applied to all the agents in the group.

    TIP
    A blank policy is offered in the drop-down list. When one is used, the protection of an agent group (except self-protection) can be temporarily disabled, for example for tests and troubleshooting.

  3. If necessary, click on Add a conditional policy. For more information, refer to Adding a conditional policy.
  4. By default, the Switch policies to detection mode option is enabled: the policy rules do not apply a block but generate a log. Disable this option to switch the policies to Protection mode.

EXAMPLE 1
Quarantining a workstation if its health indicators are unsatisfactory.

In this example, every 10 minutes, a script will run on the agents and check their health status. If an agent's results are unsatisfactory, the Quarantine policy will be applied to the agent and a second repair script will run. A quarantine policy isolates an agent by blocking, for example, its communications over the network and all removable devices, except those used by administrators.
Example of a Mobility conditional policy

EXAMPLE 2
Applying a specific policy for laptop computers.

In this example, every time a network event occurs on a workstation, SES Evolution will launch all the tests defined for this condition:
  • The workstation is not connected to its domain network,
  • The agent handler cannot be reached.

If the results of the tests are positive, the Mobility policy will be applied.
Example of a Quarantine conditional policy