Operating Configuration
In the operational settings, it manages the automatic deactivation of unused conditional policies and the control of files with unspecified ratings.
Overview of Settings
In the operational settings, the following two items are managed.
- Automatically Disable Unused Conditional Policies: Automatically set conditional policies with no application history during the specified period to 'Disabled'
- Control of Unclassified Files: Setting the upload (import) and download (export) processing method for files without a security classification level assigned (when using security classification labels)
1. Unused Conditional Policy Auto Deactivation
Automatically 'deactivates' conditional policies that have no history of being applied to users during the specified period. Policies that have never been applied during the set reference period are automatically 'deactivated' by the SHIELD Gate server scheduler, and the reason and timing of the action are recorded along with the policy history.
The configuration items are composed as follows:
- Automatic Deactivation Criteria Period
- Select the conditional policy to apply
1.1 Automatic Deactivation Criteria Period
The unused policy is determined based on the number of days elapsed since the last application history. Policies with no application (hitting) history during the entered number of days will be automatically deactivated.
| item | type | default value | Description |
|---|---|---|---|
| Deactivation Criteria Period | Number input (unit: day) | 60 | Days Elapsed Since Last Application |
Input validation conditions:
- Allowed value: Integer greater than or equal to 1
- Decimal points, negative numbers, and 0 are not allowed.
1.2 Applicable Conditional Policies
Select the types of conditional policies to which the automatic deactivation policy will be applied. Automatic deactivation will only be performed for the checked policy types, andat least 1 or moreYou must choose.
| Selection Item | Description |
|---|---|
| App Conditional Policy | Business System > Automatic Deactivation of Conditional Policies in App Menu |
| Conditional Policy for URL Input Field | Business System > Automatic Deactivation of Conditional Policies in the URL Input Field Menu |
Notice: Unchecked policy types are excluded from automatic deactivation even after the period has elapsed.
⚠️ Warning: Automatically disabled policies are not automatically reactivated by the system. To use again, the administrator must manuallyuseYou need to process it.
1.3 Automatic Deactivation Operation
Processing Flow
- SHIELD Gate server scheduler isevery dayDetects unused policies and automatically disables them.
- Policies that have not been applied even once during the reference period will be subject to processing.
- At the time of processing, the policy'sReason for DeactivationWowDeactivation PointThis will be recorded in the policy history.
Policy Status Classification
Conditional Policy List ScreenPolicy Activation StatusYou can check the current status of the policy at a glance in the column.
| Status Badge | Description |
|---|---|
| active | Current Policy |
| Manual Deactivation | Policy changed to not used directly by the administrator |
| Automatic Deactivation | Policies processed by the unused policy automatic deactivation scheduler |
Notice: The detailed reasons and processing time for the automatic deactivation policy can be checked by clicking on the policy and viewing the right detail panel. (1.4 Reference for Checking Deactivated Policies)
1.4 Check Inactive Policies
Business System >App Conditional PolicyorConditional Policy for URL Input FieldWhen you click on a policy in the list, the policy detail panel opens on the right. The panel'sSettingsYou can check the policy status and automatic deactivation information in the area.
Example of Display:
| item | value |
|---|---|
| Policy Status and Validity Period | Automatic Deactivation | Validity Period 2026-05-08 ~ Indefinite |
For policies that are automatically deactivated, an additional notification message will be displayed at the bottom of the above item.
ⓘ Automatically deactivated due to non-application of the policy for 60 days. Date of deactivation: 2026-05-11 18:00
ℹ️ Information: The number of days for the notification message (e.g., 60 days) is an operational setting of theDeactivation Criteria PeriodThis is reflected,Disabled Dateis the point in time when the scheduler actually performed automatic deactivation.
※ Automatic deactivation notification message is a policy thatAutomatic DeactivationDisplayed only in case. Please check the policy again.useIf you save by changing to __PH_0__, the notification message will no longer be displayed.
1.5 Reactivating Disabled Policies
If you need to reactivate a policy that has been automatically disabled, manually reactivate it using the following procedure.
- Business System >App Conditional PolicyorConditional Policy for URL Input FieldEntering the menu
- Policy Activation Statusin the columnAutomatic DeactivationCheck the policy indicated by the badge
- Click on the target policy to check the reason for deactivation and the processing time in the detail panel on the right.
- Detailed panel bottom**[Edit]**Button click → Enter edit screen
- usage 여부를useafter changing to**[Save]**Click
- After saving, the policy activation status isactiveIt will change to __PH_0__, and the automatic deactivation notification message will no longer be displayed. After that, when applying requests that meet the conditions, the policy will function normally.
1.6 Major Constraints
Mandatory Requirements
- ⚠️ Conditional policy to be appliedAt least one must be selected. You cannot save without selecting either of the two.
- ⚠️ The deactivation criteria period can only accept integers greater than or equal to 1. Inputs of 0, negative numbers, or decimals are not allowed.
Processing Related
- Automatic deactivation is performed by the SHIELD Gate server scheduler, so it will be reflected from the next scheduling cycle after the configuration change.
- Once a policy is automatically deactivated, the system does not automatically reactivate it, and it can only be manually re-enabled by an administrator.
2. Unclassified File Control
When using security classification labels (grades), set the handling method for uploading (importing) or downloading (exporting) files that do not have a security grade assigned to the business system.
This setting is only displayed when using the management center "Security Classification Label." If not in use, the item will not be exposed.
Each item is set with an allow (on) / block (off) toggle, and the default value isBlockis.
| item | type | default value | Description |
|---|---|---|---|
| Upload Unclassified File | Toggle (Allow / Block) | Block | This is the handling method when uploading files without a grade to the business system. If allowed, files without a grade can also be uploaded. If blocked, uploading files without a grade is not permitted, and only files with a grade can be uploaded. |
| Download Unclassified File | Toggle (Allow / Block) | Block | This is the handling method when downloading files without a designated grade from the business system. If allowed, files without a grade can also be downloaded. If blocked, downloading files without a designated grade is not permitted, and only files with a designated grade can be downloaded. |
※ The action of automatically assigning (changing) grades to files is scheduled for a future release. Currently, it operates for grade retrieval, judgment, display, and recording.