Skip to main content

BlastShield Documentation

Create a policy for zero-trust access

Summary

To allow your users to connect to the protected servers then you must set up a policy to allow them to access the server. BlastShield™ is a zero-trust solution so the default behaviour is to block access until you apply a Policy.

Policies

Policies are a simple way to grant users access to a protected server by linking a group of users to a group of BlastShield™ Agents.  Policies work using a simple ‘From’ and ‘To’ methodology which links a group of users to a group of agents.  You must install one BlastShield™ Agent on each server that you want to provide secure access to.

The process of creating a Policy is summarised here:
  1. Create a group for your users and a group for your servers and endpoints.

  2. Create a policy to link your user group to your server group.

Procedure
  1. Create a group for your users and a group for your servers and endpoints.

    1. To learn how to create groups, watch the following video or read the steps below.

    2. Select "Groups" from the left menu.

    3. Select "Add New Group" from the Group List.

    4. Enter a name for the new Group.

    5. To add members to the new group, click the "Add Members" button.

    6. The "Add Group Members" menu will open.

      1. If you are creating a group of users then select the desired users which you want to be associated with the new Group from the "Users" box.

      2. Or, if you are creating a group of BlastShield™ Agents then select the desired agents which you want to be associated with the new Group from the "Agents" box.

      3. Alternatively, you can leave the members list empty and add/modify new members later.

    7. Click "Add Members" to save the members.

    8. Click "Save" to save the new group.

    9. Repeat for the other user and server groups which you require.

  2. Create a policy to link your user group to your server group.

  3. To learn how to add policies, watch the following video or read the steps below.

  4. Select "Policies" from the left menu.

  5. Select "Add New Policy" from the Policy List.

  6. Enter a name for the new Policy.

  7. Select desired "From" Groups to be associated with the new Policy.

  8. Select desired "To" Groups to be associated with the new Policy.

  9. Save the new Policy.

  10. Repeat the above steps if you require multiple policies.

Tip

With BlastShield™ STARTER you can have up to three policies in a protected network, at no cost. To use more than three policies, an upgrade is available. Contact us for details on upgrading.