13.07.2015 Views

TRITON - Web Security Help, Version 7.7 - Websense

TRITON - Web Security Help, Version 7.7 - Websense

TRITON - Web Security Help, Version 7.7 - Websense

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Delegated Administration and ReportingPreparing for delegated administration<strong>TRITON</strong> - <strong>Web</strong> <strong>Security</strong> <strong>Help</strong> | <strong>Web</strong> <strong>Security</strong> Solutions | <strong>Version</strong> <strong>7.7</strong>.xRelated topics: The fundamentals of delegated administration, page 334 Creating a Filter Lock, page 342 Preparing delegated administrators, page 344 Managing delegated administration roles, page 345Before creating delegated administration roles, there are 2 key planning and setuptasks for the Super Administrator to perform:Review and edit the Filter Lock, which blocks specified categories and protocolsfor managed clients in all delegated administration roles. By default, the FilterLock blocks and locks several categories, so it is important to check the defaultsettings against the requirements of your organization. (See Creating a FilterLock, page 342.)• Filter Lock restrictions are automatically enforced for all filters created in orcopied to a delegated administration role, and cannot be modified by thedelegated administrator.• Delegated administrators can apply any filtering action to categories andprotocols not blocked and locked in the Filter Lock.• Changes to the Filter Lock are implemented for all managed clients as soon asthe changes are saved. Delegated administrators who are working in<strong>TRITON</strong> - <strong>Web</strong> <strong>Security</strong> when the changes take effect will not see thechanges in their filters until the next time they log on.• Filter Lock restrictions do not apply to clients managed by the SuperAdministrator role.Determine which Super Administrator policies and filters will be copied to eachnew role that you plan to create, and make adjustments to existing policies asneeded.• By default, each role is created with a single Default policy, created from theDefault category and protocol filter (not the Default policy) currentlyconfigured for the Super Administrator role.• Optionally, you can instead copy all policy objects (policies, filters, customcategories, and custom URLs) from the Super Administrator role to the newrole. The delegated administrator then starts with a complete set of policiesand policy components.• Copies of policies and filters in a delegated administration role are subjectto the Filter Lock, and are therefore not identical to the same policies andfilters in the Super Administrator role.<strong>TRITON</strong> - <strong>Web</strong> <strong>Security</strong> <strong>Help</strong> 341

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!