App Control: What Is The Process For Setting Up Automatic Policy Assignment Using AD Mapping?
search cancel

App Control: What Is The Process For Setting Up Automatic Policy Assignment Using AD Mapping?

book

Article ID: 286437

calendar_today

Updated On:

Products

Carbon Black App Control (formerly Cb Protection)

Issue/Introduction

What is the process for setting up Automatic Policy Assignment using Active Directory mapping?

Environment

  • App Control Server: All Supported Versions

Resolution

To make use of Active Directory based Policy Assignment you must:
  • Install the App Control Server in an Active Directory Domain.
  • Enable the Active Directory Mapping Interface.
  • Create AD-mappable Target Policies.
  • Create Mappings.
  • Install, or move, Agents to AD-mappable Policies.
Detailed instructions for each part of this process can be found in the section, "Assigning Policy by Active Directory mapping" of the User Guide chapter, "Managing Computers".

Additional Information

  • AD-mappable Policies are compatible for any Computer configured through your Active Directory server, including non-Windows platforms.
  • AD-mappable Policies are indicated by the Column, "Automatic" in the Console > Rules > Policies.
  • If an AD-mappable Policy is deleted while an Agent is offline, the Agent will move to the Default Policy Group.
  • Automatic Policy Assignment is off by default and existing Policies will need to be configured with new mapping rules after enabling Automatic Policy Assignment.