1. To create a policy, go to Zero Trust Access and click on Create Policy button.
2. Enter all the details and click Create.
You can create 5 types of restrictions by expanding sections:
IP Restrictions – Add range of IP addresses (IPV4, IPV4 CIDR or IPV6) allowed or denied.
Device Restrictions – Define optional device level restrictions.
A. Minimum OS Version - Select minimum operating system version that will be allowed across Windows, MacOS and Linux.
Operating system version can be defined in Major-Minor-Patch format.
B. Antivirus - Select the Antivirus from the list that will be allowed.
C. Device Password - Select "Enforce" from dropdown to allow users devices with Password Protection. Password age limit in days and password length also can be set.
D. Device Idle Timeout - Enter the device idle timeout in minutes the users devices should have.
E. Disk Encryption - Select "Enforce" from dropdown to allow users devices with Disk Encryption.
Location Restrictions – Define location and access time restrictions in this section.
Session Management – Define duration of the user session in Zaperon. After expiry of the session, user will be re-authenticated. Enter time in the unit selected from the dropdown menu.
Data Protection –
A. Select "disabled" from dropdown to block data transfers through USB Ports, Bluetooth, AirDrop on users devices.
B. Clipboard Protection: Select content type to block users from copying and pasting sensitive data.
3. On successful creation of policy, confirmation message will appear.
4. New policy created will appear in the policy list.
Device Restrictions – Define device level restrictions based on antivirus and operating system version.