Conditional Policy for Managing Sensitive Input Information
Basic Screen Layout
The conditional policy screen is composed as follows:
- Conditional Policy Tab: A tab where you can apply conditional policies to apps created on the home page.
- Priority: Display policy priorities (the smaller the number, the higher the priority)
- Add Policy: Top left**[➕ Add Policy]**Create a new policy with a button
- Search: Policy name, members, target domain, usage status, and various other conditions can be searched.
Policy Search
You can search for policies based on various criteria, including policy name, members, target domain, conditions, and usage status.
Types of Search Filters
| Filter | Search Method | Description |
|---|---|---|
| Policy Name | Included Search | Search for policy names containing keywords |
| Members | Inclusive Search + Dropdown Selection | User (Name·Email), Group, Department Search, Assignment/Exception Classification Selection, Multiple Selection Available |
| Target | Inclusive Search + Dropdown Selection | Search within a specific domain address,모든 도메인Selectable fixed values, multiple selections possible |
| Usage | Dropdown Selection | Use / Not Use Selection |
| condition | Inclusive Search + Dropdown Selection | Search by location (IP), time, and device conditions, multiple selections available |
Target Search Details
- If you enter the domain address directly, a list will be displayed at the bottom as a partial search.
모든 도메인is fixed at the bottom of the dropdown and is included in the search results only when selected directly.- When searching for a specific domain, only the policies directly set for that domain will be searched, and
모든 도메인Policies are not included.
Member Search Details
- When you enter a name or email in the search box, results are displayed in real-time in a dropdown.
- Allocation / ExceptionYou can search by distinguishing between cases where a tab is selected and cases where exceptions are handled.
모든 구성원is fixed at the bottom of the dropdown and is included in the search results only when selected directly.
Detailed Condition Search
- Location:
위치 제한 없음or enter a registered location name to search. The results are위치명 | IP 범위It will be displayed in the format. - time:
시간 제한 없음You can search by entering a registered time name. The results are시간명 | 시간 범위It will be displayed in the format. - Device:
모든 디바이스,Desktop,Tablet,MobileSelect 중.
Search Condition Combination Rules
- **Between filters (AND condition)**If you set multiple different filters, only the policies that satisfy all conditions simultaneously will be displayed.
- **Within Filter (OR Condition)**If you select multiple items within the same filter, any matching policies will be displayed.
- Each set condition is displayed in the form of tags, and the tags'
×You can remove individual conditions with the button.
⚠️ Priority changes are not possible when search filters are applied. To change the priority, please clear all search filters.
Fetch Policy
- You can import and register a backup JSON file (single policy) or a ZIP file (multiple policies) for the conditional policy.
[How to Use]
- Download: Check the item checkbox > Click the [Download Policy] button on the top button bar.
- Download JSON file when selecting 1 item
- When selecting 2 or more: Download as a ZIP file.
- Import: Click the [Import Policy] button to select and register the backed-up JSON file or ZIP file.
➕ Add Policy
**[➕ Add Policy]**Clicking will take you to the new conditional policy page, where you can set the following items:
- Basic Policy Information
- condition
- Execution Policy
- Settings
📌 Basic Policy Information
Policy Name
- Name(required): Up to 20 characters can be entered
- Description(Optional): Up to 200 characters can be entered.
- The conditional policy name is a required field, and you must enter a unique name to identify the policy.
Members
Set users or groups to include or exclude in this conditional policy.
Allocation
- All Users: Apply policies to all users
- Select User or Group: Search and select a specific user or group
- Search by entering a username or group name in the search box.
- The selected user or group can be confirmed in the box below.
Exclusion
- Specify users or groups to exclude from the policy
- Excluded members are not subject to the policy regardless of allocation.
- The 'All Users' option cannot be used in exclusions.
- You can check the list of excluded members in the box below by selecting the members to exclude.
Target Domain
Select which domain to apply this conditional policy to.
Determining the Scope of Application
All Domains
- Apply policies to all websites
specific domain
- If you want to apply this policy only to a specific domain, register the domain.
Regular Expression
Select a regular expression to inspect the target domain.
Registered Regular Expression
- Select the regular expression registered in the list of regular expressions.
condition
Set conditions such as location and time to be used for policy judgment. Based on the assigned conditions, determine the user's access environment and decide whether to apply the policy.
Location Conditions
You can choose from the following two items for the location (IP) condition:
- All Locations(default): Apply policy at all locations without specific location conditions
- Exception Selection: To exclude only specific locations among all locations, specify the locations to be excluded through 'Exception Selection'.
- Select Registered LocationSelect from the locations registered in the Security365 Management Center's condition items.
- Click 'Select a Location' to view the list of registered locations.
- [+Register Location]: Click to add a new location condition
- Exception Selection: Use 'Exception Selection' to exclude specific locations from the selected locations.
Time Conditions
You can choose from the following two time conditions:
- all time(default): Always apply the policy without any specific time limit.
- Exception Selection: To exclude only specific time zones among all times, specify the time to be excluded through 'Exception Selection'.
- Registered Time Selection: Select from the registered time in the conditions section of the Security365 Management Center.
- Click 'Select a time' to check the list of registered times.
- [+Register Time]: Click to add a new time condition
- Exception Selection: Use 'Exception Selection' to exclude a specific time zone from the selected time.
Condition Management Notes
- The location and time conditions can be registered/deleted/edited in the [Condition Items] menu of the Security365 Management Center.
- Use exception selection for detailed settings when complex conditions are required.
Thank You Policy
Save Options
- all cases: Stores all allowed/blocked cases for the target domain.
- Only in case of being blocked: Only save if blocked by a regular expression in the target domain.
Log Detail Settings
- User input content: Choose whether to include the text entered by the user in the log.
Settings
You can set the usage and validity period of this conditional policy.
Usage status
- use: The policy is activated and works immediately
- Not in use: The policy is disabled and not functioning.
Expiration Date
- When not set: Operate indefinitely
- Expiration Date Usage:
- Checking the 'Expiration Date' item activates the calendar.
- Set the period by selecting the start date and end date.
- Policy operates only during the set period.
💡 Policy Application Priority
- When multiple policies conflict, the policy with the higher priority (the smaller number) is applied.
- You can adjust the priority by dragging and dropping in the policy list.
- If multiple policies are set for the same conditions, the most restrictive policy takes precedence.
- Policy priorities should be set carefully as they are important for the effective management of policies.
Priority Quick Navigation
After selecting a policy, you can quickly change the priority using the following method.
- Move to top / Move to bottom: Move immediately to the top or bottom
- Priority Move Dropdown: Select the desired number to move directly to a specific location.