Edit policy rule Form

Toolbar

Fields

Name

Data type

Description

Name

string

The name identifier for this policy rule.

Color identifier

oneOf NestedIdentifier

Color identifier assigned to visually distinguish this rule.

Description

string

Additional description for the policy rule.

Enabled

boolean

Whether this policy rule is active and evaluated during authorization.

Policy

The parent policy this rule belongs to.

Policy category

oneOf NestedIdentifier

The category of this policy rule for organizational purposes.

Action type

enum ActionType2

The action to take when rule conditions are met (access, reject, VLAN assignment).

Object type

enum USER, HOST, TEAP

The type of object this rule applies to (Identity, Endpoint, MAC address).

Method types

enumArray TLS, PEAP, MSCHAP, FAST, GTC, PAP, CHAP, TTLS_TLS, TTLS_PAP, TTLS_CHAP, TTLS_MSCHAP, MAB, TEAP_USER, TEAP_HOST

Authorization methods this rule applies to (EAP, PEAP, TLS, TTLS, PAP, MAC, Captive Portal).

Identity conditions

string

Conditions based on identity attributes (specific identities, groups, organizational units).

Endpoint device conditions

string

Conditions based on endpoint device attributes (device type, MAC address, NACVIEW Scout status).

Network device conditions

string

Conditions based on network device attributes (specific devices, ports, device groups).

VLAN

oneOf NestedIdentifier

The VLAN to assign when this rule grants access.

Captive portal

oneOf NestedIdentifier

The captive portal to use for authentication when this rule is triggered.

Captive portal result

enum ActionType2

The result action after captive portal authentication.

Wired

boolean

Whether this rule applies to wired network connections.

Wireless

boolean

Whether this rule applies to wireless network connections.

WiFi networks

array of entity preview

Specific WiFi networks this rule applies to.

Policy options

array of entity preview

Additional policy options and advanced settings.

Policy profile actions

array of entity preview

Profile-based actions and post-authentication attributes.

Policy time

oneOf NestedIdentifier

Time-based conditions when this rule is active (weekdays, time ranges, date ranges).

VPN reply message

string

Reply message displayed to VPN users.

VPN SMS message

string

SMS message sent to VPN users for verification.

VPN timeout

number

Timeout duration for VPN authentication.

VPN type

enum VpnType

The type of VPN connection this rule applies to.

VPN verification type

enum VpnVerificationType

Verification method for VPN authentication (none, SMS, email).

Auto learn device

boolean

Enable automatic device learning for unrecognized endpoints.

Auto learn object groups

array of entity preview

Object groups to assign automatically learned devices to.

Administration groups

array of entity preview

Administration groups that can manage this policy rule.

Panels