Skip to main content

Conditional Policy

Control of Business SystemsConditional PolicyThe tab manages policies that limit the number of screens that can be opened simultaneously in the work system (app, URL input field) accessible by each member and in the isolated browser.

⚠️ Must Read: This policy applies to all access to work systems.Highest Priority Control PolicyIt is. The menus that are not allowed here cannot be accessed by the user, regardless of how the sub conditional policies (app conditional policies, URL input field conditional policies) are set.


Feature Overview​

Conditional policies limit the menus that users can access in SHIELDGate and efficiently manage isolated browser resources.Top-Level Permission ControlIt is a feature.

Controllable Items​

  • app: Access Permissions for Registered App List
  • URL input field: Direct URL input feature access permission
  • Number of Concurrent Screens: Limit on the number of screens that can be opened simultaneously in an isolated browser

Policy Application Structure​

Conditional Policy (Top Level)
├── Allow App → App conditional policy applicable
├── Allow URL Input Field → URL input field conditional policy applicable
└── Set Number of Simultaneous Screens → Limit number of screens per member

Example:

  • Conditional policy "URL input field" not allowed → URL input field conditional policy invalid
  • Conditional policy "app" not allowed → App conditional policy invalid
  • Set the number of simultaneous screens to 10 in the conditional policy → The corresponding member can use up to 10 screens only.

Policy Priorities​

If the same member is included in multiple policies,**Higher priority (smaller number) policies are applied first.**It is possible.

Example:

  • Priority 1: Member Hong Gil-dong / Work System앱Maximum allowed / Number of simultaneous usage screens 5
  • Priority 2: Member Organization / Work System앱andURL입력창Allowed / Unlimited number of concurrent screens
  • result: Hong Gil-dong has a priority 1 policy applied, making the URL input field unusable, and a maximum of 5 screens can be used.

Screen Composition​

Admin Page →Business System Control → Conditional PolicyMove to tab

Main Components​

1. Policy List

  • Priority: Policy Application Order (1 is the highest priority)
  • Policy Name: Unique name identifying the policy
  • Members: Users/Groups to Whom the Policy Applies
  • Target Business System: Allowed Menu (App, URL Input Field)
  • Number of Concurrent Screens: Number of screens that can be used simultaneously
  • Revision Date: Last modified date

2. Top Features

  • [+ Policy Registration]: Create a new control policy
  • Search: Policy name, members, target, usage status, and various other conditions can be searched.
  • Edit/Delete: Modify or delete the selected policy

You can search for policies based on various criteria, including policy name, members, target business systems, and usage.

Types of Search Filters​

FilterSearch MethodExplanation
Policy NameIncluded SearchSearch for policy names that include keywords
MembersInclude Search + Dropdown SelectionUser (Name·Email), Group, Department Search, Assignment/Exception Classification Selection, Multiple Selection Available
TargetDropdown SelectionApp, URL input field selection, multiple selection possible
UsageDropdown SelectionUse / Not Use Selection
conditionInclude Search + Dropdown SelectionSearch by location (IP), time, device conditions, multiple selections available
Execution PolicyDropdown SelectionAccess Allow/Deny, Select Additional Authentication Methods (Email·OTP), Multiple Selections Allowed

Member Search Details​

  • When you enter a name or email in the search box, results will be displayed in real-time dropdown.
  • Allocation / ExceptionYou can select a tab to distinguish between cases where the member is assigned to the policy and cases that are exceptions.
  • 모든 구성원is fixed at the bottom of the dropdown and is included in the search results only when selected directly.
  • Location: 위치 제한 없음or enter a registered location name to search. The results are위치명 | IP 범위It will be displayed in the format.
  • time: 시간 제한 없음You can search by entering the registered time name. The results are시간명 | 시간 범위It will be displayed in the format.
  • device: 모든 디바이스, Desktop, Tablet, MobileSelect 중.

Search Condition Combination Rules​

  • Between filters (AND condition): If you set multiple different filters, only the policies that satisfy all conditions simultaneously will be displayed.
  • In Filter (OR condition): If you select multiple items within the same filter, any policy that matches at least one will be displayed.
  • The set conditions are displayed in the form of tags, and the tags'×You can remove individual conditions with the button.

⚠️ When search filters are applied, changing the priority (drag and drop) is not possible. To change the priority, please clear all search filters.

3. Policy Trends
If no policy is registered, the following message will be displayed:

  • "There are no registered work system control policies."
  • Policy Registration Guide Text:
    • You can control members' access to the business system (app and URL input field).
    • Even if you set conditional policies in the [App and URL Input Field] of the complete menu, assigned members cannot access the business system.

Add Policy​

1. Start Adding Policy​

  • **[+ Policy Registration]**Button Click
  • The policy addition slide panel opens from the right.

2. Policy Basic Information​

These are the default settings displayed at the top of the slide panel.

Policy Name​

  • Enter a unique name to identify the policy
  • Duplicate names cannot be used.
  • Example: "Development Team", "Basic Policy", "Executive Only" etc.

Members​

Select the target to which the policy will be applied.

Select allocation method:

  • All users: Apply policy to all users
  • Select User or Group: Specify specific users or groups

When selecting user/group:

  1. Select Target in the Allocation Tab
  2. Select exception target in the exclusion tab (optional)
  3. Search for username or group name through the search bar
  4. The selected members can be confirmed in the box below.

Target Business System​

Select the allowed menu with checkboxes:

  • app: Allow access to the list of registered apps
  • URL input field: Allow direct URL input feature access
  • You can select both or only one.

3. Conditions​

You can set conditions for location, time, and device to restrict the policy to apply only in specific environments.

Location (IP)​

No location restrictionsWhen selected:

  • Apply policies at all locations

Location restrictions applyWhen selected:

  • Select from the locations registered in the Security365 condition items.
  • Apply the policy only at the selected location
  • If a new location condition is required**[+Location Registration]**Click

time​

No time limitWhen selected:

  • Policy application at all times, 24 hours a day

time limit existsWhen selected:

  • Select from the registered time in the Security365 condition items.
  • Apply the policy only to the selected time zone
  • If new time conditions are needed**[+Time Registration]**Click

device​

No device restrictionsWhen selected:

  • Apply policies on all devices

Device restrictions applyWhen selected:

  • Select from the devices registered in the Security365 condition items.
  • Apply the policy only to the selected device
  • If new device conditions are required**[+Device Registration]**Click

4. Control Policy​

Number of Concurrent Screens​

Set the maximum number of screens that can be opened simultaneously in the isolation browser.

Setting Options:

  • No limit on the number of screens(Default): Unlimited use without screen number restrictions
  • Specify maximum number of screens: Enter the number of simultaneous screens directly
    • Input format: Integer greater than or equal to 1 (at least 1)
    • For example: When entering 10 → The member can use a maximum of 10 screens only.

ℹ️ The number of screens that can be set isCompany-specific upper limitis limited. Below the input box1개~N개까지 설정 가능합니다.A guide will be displayed, and if you enter a value that exceeds the upper limit,Automatic adjustment with upper limitIt is possible. The upper limit is set by SOFTCAMP on a company basis, and even if the upper limit is lowered, the values of the policies that have been previously saved will remain unchanged and will be applied at the time the policy is modified.

Effect of Screen Count Limit:

  • Preventing Excessive Use of System Resources
  • Fair Resource Allocation
  • Ensuring overall system performance stability
  • Flexible resource management with differential restrictions by member

5. Settings​

Policy Settings​

Set whether the policy is activated.

  • use: Activate the policy immediately and apply it to members
  • Not in use: Save the policy but keep it in a disabled state

6. Save Policy​

  • After completing all settings**[Save]**Button Click
  • The policy is applied immediately and reflected to the respective members.

Policy Modification​

Correction Method​

  1. Policy Selection: Select a single policy to edit from the list.
  2. Edit Button: Activated at the top**[Edit]**Button Click
  3. Content modification: Change necessary items on the policy modification slide
  4. Save: **[Save]**Apply changes with the button

Editable Items​

  • Policy Name (No Duplicates Allowed)
  • Member Assignment/Exclusion
  • Allowed Work System (App/URL Input Field)
  • Setting Conditions (Location/Time/Device)
  • Set the number of screens for simultaneous use
  • Policy Settings

Change Priority​

After selecting a policy, you can change the priority using the following method.

  • Drag and Drop: Drag and drop the policy directly from the list to the desired location
  • Move to top / Move to bottom: Move instantly to the top or bottom
  • Priority Move Dropdown: Select the desired number to move directly to a specific location

⚠️ Priority changes are not possible when search filters are applied. Please proceed after clearing all filters.


Download Policy Status​

You can download the list of conditional policies as an Excel (.xlsx) file. This is provided separately from the existing JSON backup feature.

  • Download All: Save all registered policy information to an Excel file
  • Download Search Results: Save only the results with the current search filter applied as an Excel file

💡 JSON download is for policy backup and restoration, while Excel download is used for status analysis and reporting purposes.


Delete Policy​

Deletion Method​

  1. Policy Selection: Select one or more policies to delete from the list
  2. Delete Button: Activated at the top**[Delete]**Button Click
  3. Delete Confirmation: Confirmation modal window in**[Check]**Button Click

Caution​

  • Deleted policies cannot be restored.
  • Members of the policy are subject to the basic policy or other policies.

User Experience​

When the screen limit is reached​

When the user reaches the set number of concurrent screens and opens a new screen, a "Maximum Concurrent Screen Limit Reached" window will be displayed.

CompositionContent
Guide text"The isolation browser screen can be opened simultaneously up to N times." "To open a new screen, please select and close an open screen."
Open ScreenThe list of titles and addresses of the currently open screens. The screen the user was viewing is at the top.현재 화면is indicated. Next to the address복사You can copy the address.
Screen SelectionChecking the screen to close. Multiple selections and select all are possible.
선택한 화면 닫고 새 화면 열기Closes the selected screen and opens the screen you were about to open. You cannot press it if no screen is selected.
취소No screen will be closed. A new screen will not open.
  • The N in the guidance message refers to the number of concurrent screens applied to the user.
  • The window will display a message saying "If you close the screen, unsaved work may be lost."

Problem Solving​

Common Issues​

When a conditional policy is set but the user cannot access it:

⚠️ Most common causes: The menu is not allowed in the conditional policy.

  1. Check Order:
  • 1st priority: Check whether the menu (app/URL input field) is allowed in the conditional policy.
  • 2nd priority: Check if the user is included in the conditional policy.
  • 3rd place: Check the settings for subordinate conditional policies (app conditional policies, URL input field conditional policies)
  1. Solution: Allow the necessary menu in the conditional policy first, then set the sub-policy.

When the user can no longer open the screen:

  • Check the number of simultaneous usage screens set in the conditional policy.
  • Check the priority of the policies applied to the user
  • Modify the policy to increase the number of simultaneous use screens or change to unlimited if necessary.

When the policy is not applied:

  • Check Priority (whether there is a higher priority policy)
  • Check member settings (whether included in the exclusion list)
  • Check Condition Settings (Time/Location Condition Fulfillment Status)

When the menu is not visible:

  • Check the policies applied to the user
  • Check if the necessary menus are checked in the business system selection options.

Setting condition error:

  • Check if the location/time/device conditions are correctly registered in the Security365 condition items.
  • Check if the required condition is set to "Limit Exists"

Policy Configuration Order​

Step 1: Set Conditional Policy

  • Basic Menu Access Permission Settings (App/URL Input Field)
  • Setting the number of simultaneous screens used by each member

Step 2: Set App Conditional Policy

  • Detailed permission settings for individual apps

Step 3: Set Conditional Policy for URL Input Field

  • Detailed Permission Settings by URL

⚠️ Caution: The menus not allowed in step 1 make the settings in steps 2-3 meaningless.

Priority Management​

  • Set exceptional policies to high priority
  • Set general policies to low priority
  • Regular review of priority system
  • Development Team/Designer: 30~50 items (multiple references needed)
  • General Office Position: 10~20 items (work documents and system access)
  • Executives/Management: Unlimited or high limits (flexible work environment needed)
  • External Partners/Contract Workers: 5~10 items (limited access recommended)

Monitoring Methods​

  • Session ManagementCheck real-time screen usage status in the tab
  • Excessive Screen User Identification and Policy Adjustment
  • Regular Policy Effectiveness Review