Skip Navigation

Add a policy rule

You can create tags and tag rules to group devices within
CylanceON-PREM
. After this, you can create a policy rule that uses the Tag condition to apply a policy to the group of devices. See Add a device tag and Add a tag rule for more information.
Policies can only be associated with one rule. If the Add New Rule button is disabled, it means no policies exist or all policies are assigned to a rule and you will need to create a new policy. See Add a policy for more information. Policy rules are not evaluated until the rule set is saved.
  1. In the console, on the menu bar, click
    Rules > Policy Rules
    .
  2. Click
    Add New Rule
    . You can add multiple rules to the rule set at the same time. Rules run based on their order in the rule set. You can reorder the rule by clicking and dragging the rule to the correct location in the rule set.
  3. Enter a
    Rule Name
    .
  4. Optionally, you can enter a Rule Description.
  5. Select a policy for
    Devices affected will receive the following policy
    .
  6. Create a rule condition. Rule conditions contain three parts that are used to determine whether a policy rule will be applied: evaluation property, operator, and value. If the rule condition evaluates to
    True
    , the policy will be applied to a device.
    1. Click an evaluation property from the drop-down list beside
      Device Name
      .
    2. Click an operator from the drop-down list beside
      Starts With
      . See Policy rule operators for a description of all available operators.
    3. Enter or select a value for the conditions. This varies depending on the other conditions selected. For example, selecting Device Name will require entering some device name information; selecting Operating System will require selecting a target OS from a list.
  7. Click
    Add "And" condition
    or
    Add "OR" condition block
    to add another condition to the rule, then enter the condition information.
  8. Click
    Save
    .