Define Endpoint Groups
To easily apply policy rules to specific endpoints, you can define an endpoint group. There are two methods you can use to define an endpoint group: you can create a static group by defining a list of endpoints using the endpoint’s hostname or alias or you can allow Traps management service to populate your endpoint group dynamically using endpoint characteristics such as a partial hostname or alias; full or partial domain or workgroup name; IP address, range or subnet; installation type (VDI, temporary session, or standard endpoint); agent version; endpoint type (workstation, server, mobile); or operating system version.
After you define an endpoint group, you can then use it in your policy rules to narrow the scope of the rule so it applies only to the endpoints in the group. The Endpoint Groups page displays all endpoint groups along with the number of endpoints and policy rules linked to the endpoint group.
- From Traps management service, select.EndpointsEndpoint Groups
- Createa new endpoint group or hover over an existing group and edit ( ) it.
- Enter aNameandDescriptionto identify the endpoint group. The name you assign to the group will be visible when you create new policy rules.
- To determine the endpoint properties for creating a group, select theMembership Type:
- Static—Add endpoints by the endpoint hostname or alias. After a Traps agent checks in with Traps management service, you can add the endpoint to an endpoint group. To narrow the list of endpoints, begin typing its name or alias in the search field—Traps management service provides autocompletion as you type. In a multi-domain environment, you can also filter the list of endpoints byDomain.
- Dynamic—Dynamically populate a list of endpoints that match one or more endpoint characteristics. If you specify more than one characteristic, the endpoint must match all characteristics to be included in the group.Currently due to a known issue, when you specify more than one characteristic, the group will include endpoints that match any of the specified characteristics.
- EnableEndpoint Name / Aliasto match endpoints using a full or partial hostname. Use?to match a single character or*to match any string of characters. For example, to match any endpoint whose hostname begins with enghost, enterenghost*.
- EnableDomain / Workgroupto match endpoints which belong to a specific domain or workgroup. Use?to match a single character or*to match any string of characters.
- EnableIPto match endpoints with a specific IPAddress,Range, orSubnet. Traps management service supports only IPv4 addresses.
- EnableInstallation Typeto include Virtual Desktop Instances (VDIs), temporary sessions (TS), or standard endpoints that are neither VDI nor temporary sessions (Non VDI/TS) in the endpoint group.
- EnableAgent Versionto select one or more specific versions of the Traps agent that runs on the endpoint as match criteria. Traps management service automatically populates two lists of agent versions: Installed Versions based on the Traps agents that have registered with Traps management service and Other Versions that you haven’t installed.
- EnableEndpoint Type/OSto select one or more endpoint types (Workstation,Server, orMobile) or operating system versions (for example, Windows 8). For operating system versions, Traps management service automatically populates two lists of operating systems: Installed Versions (as reported by the Traps agent on your endpoints) and Other Versions on which a Traps agent has not been installed.
- Savethe endpoint group.After you save your endpoint group, it is ready for use in policy rules and other places where you can use endpoint groups.A new endpoint which matches the characteristics of an endpoint group can take up to an hour to receive applicable rules. Traps management service can also take up to an hour to reflect changes in dynamic group membership when the characteristics of an endpoint change.
Recommended For You
Recommended videos not found.