How to Use Scope Settings in Secure Access Gateway - AnySecura Manual
Welcome! This guide will help you understand how to define the operational boundaries for your AnySecura Secure Access Gateway. You'll learn how scope settings let you focus on the specific computers and devices that matter most for both application and file protection.
We'll explore how to set a management scope to simplify monitoring, define a control scope to enforce security policies, and configure a whitelist for trusted devices like printers. By the end, you'll know how to precisely tailor the gateway's protection to your network's unique needs.
Set the relevant scope for the Secure Access Gateway functionality. The scope settings here apply to both application system protection and file sharing protection.
39.6.1 Management Scope
Go to "Scope Settings -> Management Scope" to set the management scope of the Secure Access Gateway device.
The management scope is empty by default, meaning all computers that communicate through the Secure Access Gateway device will appear in the corresponding "Status Information" view of the device. Once the management scope is set, only computers within the management scope will appear in the "Status Information" view if they communicate through the device.
39.6.2 Control Scope
Go to "Scope Settings -> Control Scope" to set the control scope of the Secure Access Gateway device.
The control scope is empty by default, meaning no computers are controlled. Once the control scope is set, machines within this scope that use non-secure processes to access protected application system servers will be blocked.
39.6.3 Whitelist
For network terminal devices that cannot install the client, such as network printers, you can allow these devices to access protected servers by configuring the whitelist in "Scope Settings -> Whitelist." The whitelist supports IP address and MAC address control.
Note
Only machines within the same VLAN as the Secure Access Gateway can be added to the MAC address whitelist.
