Skip to main content

Web Page Access

Access Policies are grouped by Tenancy:

  • Company
  • Policy Group
  • Universal
  • System

See Article on Tenancy and Heirarchy under Essential Concepts for more information.

Company Access Policy record

  • Company: the Company associated with the Access Policy
  • Policy: the Accountibility Policy (if any) associated with the Access Policy (If there is none, this field will not appear)
  • Status: this record is Active or Inactive
  • Canonical ID: the global unique identifier for this Access Policy; used for synchronization
  • Company Policy Dashboard [link]: jump to the Access Policy Dashboard of the associated Company (above)
  • Type: the tenancy type of the Access Policy
  • Hits Today: a counter of how many times web traffic has triggered this policy on this DrawBridge
  • Device Group: the associated Device Group: who the Access Policy is applied to
  • Action Group: the associated Action Group: what the Access Policy is enforcing
  • Time Group: the associated Time Group: when the Access Policy is effective. Optional: if no Time Group is configured, the Access Policy applies all the time.
  • Application Group: the associated Application Group: which application traffic the Access Policy acts upon. Optional: if no Application Group is configured, the Access Policy will apply to the traffic from all applications.
Informational Tabs
  • Devices: List view of the member devices in the associated Device Group
  • Categories: List view of the Categories contained in the associated Action Group.
    • Add an additional Category to the Action Group with the Add Category Action Pair button, or add multiple Categories at once with the Bulk Assign Categories button.

    • Edit the Action (Allow/Ignore/Block) of a listed Category by clicking the pencil Update Record button on the specific Category line desired.

    • Remove a Category from the Action Group with the trashcan Delete button.

      Note: removing a Category from an Action Group will return the Action setting for that particular Category to the Action assigned to it in the default DrawBridge configuration (unless another Action Group includes that Category).

    • The Record Activity Stream button on each line provides an audit history log of changes to the association of this Category to the Action Group, as well as the assigned Action

  • Times: List view of the Time Range(s) when this Policy is effective.
    • Add a Time Range with the Add Time Range button. *Note: this tab only displays if a Time Group is assigned to the Policy.
      • Add a Time Range with the Add Time Range button.
      • Edit a Time Range with the pencil Update Record button on the time range line in focus
      • Delete a Time Range with the trashcan Delete Record button on the time range line in focus
      • The Record Activity Stream button on each line provides an audit history log of changes to the association of this Time Range to the Time Group, as well as the specified Times.
    • ACL Actions: Special access control list actions that are assigned to this access policy.
      • Add an ACL action with the Add ACL Action button
      • Edit an ACL Action with the pencil Update Record button on the ACL Action line in focus
      • Delete an ACL action with the trashcan Delete Record button on the ACL Action line in focus
    • Permissions: The permission level required to edit the patterns or the category association actions and the ability to enter the policy or exit the policy.
      • The ACL enter and exit group sets whether a company owner permission level user can turn this policy On/Off
      • The enter and exit actions the alternative to company owner is accountability if a particular policy is required by an accountability policy then the option displayed will be accountability which prevents the company owner from making those changes.

    Record menu options

    The "hamburger" menu located in the upper right of the Access Policy record page offers several actions:

    • Record Activity Stream: view the changelog for this Access Policy record

    Access Policy Group record

    • Policy: the Accountibility Policy (if any) associated with the Access Policy (If there is none, this field will not appear)
    • Status: this record is Active or Inactive
    • Canonical ID: the global unique identifier for this Access Policy; used for synchronization
    • Type: the tenancy type of the Access Policy
    • Hits Today: a counter of how many times web traffic has triggered this policy on this DrawBridge
    • Device Group: the associated Device Group: who the Access Policy is applied to
    • Action Group: the associated Action Group: what the Access Policy is enforcing
    • Time Group: the associated Time Group: when the Access Policy is effective. Optional: if no Time Group is configured, the Access Policy applies all the time.
    • Application Group: the associated Application Group: which application traffic the Access Policy acts upon. Optional: if no Application Group is configured, the Access Policy will apply to the traffic from all applications.
    Informational Tabs
    • Device Groups: List view of the member device groups in the associated Device Group collection.
    • Categories: List view of the Categories contained in the associated Action Group.
      • Add an additional Category to the Action Group with the Add Category Action Pair button, or add multiple Categories at once with the Bulk Assign Categories button.

      • Edit the Action (Allow/Ignore/Block) of a listed Category by clicking the pencil Update Record button on the specific Category line desired.

      • Remove a Category from the Action Group with the trashcan Delete button.

        Note: removing a Category from an Action Group will return the Action setting for that particular Category to the Action assigned to it in the default DrawBridge configuration (unless another Action Group includes that Category).

      • The Record Activity Stream button on each line provides an audit history log of changes to the association of this Category to the Action Group, as well as the assigned Action

    • Times: List view of the Time Range(s) when this Policy is effective. Note: this tab only displays if a Time Group is assigned to the Policy.
      • Add a Time Range with the Add Time Range button.
      • Edit a Time Range with the pencil Update Record button on the time range line in focus
      • Delete a Time Range with the trashcan Delete Record button on the time range line in focus
      • The Record Activity Stream button on each line provides an audit history log of changes to the association of this Time Range to the Time Group, as well as the specified Times.
    • ACL Actions: Special access control list actions that are assigned to this access policy.
      • Add an ACL action with the Add ACL Action button
      • Edit an ACL Action with the pencil Update Record button on the ACL Action line in focus
      • Delete an ACL action with the trashcan Delete Record button on the ACL Action line in focus
    • Permissions: The permission level required to edit the patterns or the category association actions and the ability to enter the policy or exit the policy.
      • The ACL enter and exit group sets whether a company owner permission level user can turn this policy On/Off
      • The enter and exit actions the alternative to company owner is accountability if a particular policy is required by an accountability policy then the option displayed will be accountability which prevents the company owner from making those changes.