ZENworks 11 Endpoint Security Management - Sample Policies

November 2014

Policy

Type

Description

Scenarios

policykey.txt

 

The policy encryption key required to import sample policies into a Management Zone.

All scenarios.

Location-Assignment.xml

Location Assignment

Includes six test locations.

All scenarios that use location-based policies.

Scripting-Enforce-App-Running.xml

Scripting

Monitors an application to ensure that it is running. If the application is not running, restarts the application and displays a message to the user explaining that the application is required to be running at all times.

Enforcing the Running of a Required Application

USB-MassStorageClass-Disabled.xml

USB Connectivity

Disables access to all USB devices that enumerate as Mass Storage class (08h).

Disabling Access to USB Mass Storage Devices

USB-MassStorageDevices-Allowed.xml

USB Connectivity

Enables access only to specific USB mass storage devices.

Enabling Users to Access Specific USB Mass Storage Devices

VPN-Firewall.xml

Firewall

Restricts network access to a defined VPN server address and required ports and protocols.

Enforcing a Restrictive Firewall During the VPN Session

VPN-Session-Launch.xml

VPN Enforcement

Prompts users to launch a VPN client whenever their device enters the Unknown location.

Launching a VPN Client to Initiate a VPN Session When in an Unknown Location

VPN-Session-Prompt.xml

VPN Enforcement

Launches a VPN client whenever a device enters the Unknown location.

Prompting the User to Initiate a VPN Session When in an Unknown Location

Wireless-Minimum-WiFi-Security-WPA.xml

Wi-Fi

Prevents devices from connecting to wireless networks with security levels less than WPA.

Preventing Devices from Connecting to Unsecure Wireless Networks

Wireless-Minimum-WiFi-Security-WPA2.xml

Wi-Fi

Prevents devices from connecting to wireless networks with security levels less than WPA2.

Preventing Devices from Connecting to Unsecure Wireless Networks

Wireless-Work-WiFi-SSID-Filtering.xml

W-Fi

Allows devices to connect only to wireless networks Access Points (SSIDs) that are explicitly approved.

Allowing Access to Approved Wireless Network Access Points (SSIDs) Only