Device policies

Device policies control how the Aurora Protect Desktop and Aurora Focus agents monitor endpoints, store data, and respond to suspicious activity on devices.

Note:
  • Every device registered with Aurora Endpoint Security services must have a device policy. All devices receive the default device policy, unless another policy is assigned to the device.

  • A device can only have one policy assigned at a time.

  • To manage device policy templates instead of individual device policies, see Managing device policies.

  • For more information about device policy settings, see Device policy settings.

By default, execution control is enabled in all device policies, allowing the Aurora Protect Desktop agent to alert the Aurora Endpoint Security console when unsafe or abnormal files attempt to run.

Create a device policy

  1. In the Aurora Endpoint Security console, click Policies > Device Policy.
  2. Click Add Policy.
  3. On the General Info tab, enter a unique name for the policy.
  4. Configure the settings for the device policy.

    For more information about policy settings, see Device policy settings.

  5. Click Save.

Edit a device policy

  1. In the Aurora Endpoint Security console, click Policies > Device Policy.
  2. Click the name of the device policy that you want to edit.
  3. Edit the device policy settings.

    For more information about device policy settings, see Device policy settings.

  4. Click Save.

Copy a device policy

  1. In the Aurora Endpoint Security console, click Policies > Device Policy.
  2. Click the name of the device policy that you want to copy.
  3. Click Copy.
  4. On the General Info tab, enter a unique name for the device policy.
  5. Configure the settings for the device policy.

    For more information about device policy settings, see Device policy settings.

  6. Click Save.

Assign a device policy to a device

Instead of manually assigning a device policy to individual devices, you can associate a device policy with a zone. When devices are added to the zone, they are automatically assigned the associated device policy. For more information, see Add and configure a zone.

  1. In the Aurora Endpoint Security console, click Assets > Devices.
  2. Select the devices that you want to assign a device policy to.
  3. Click Assign Policy.
  4. Select the device policy that you want to assign.
  5. Click Save.