Next Topic

Previous Topic

Book Contents

Policy Management (v1.0.0.0) - 6 June 2011

Policy Management

This is the first release of the Kaseya Policy Management (KPM) add-on module. The Policy Management module manages agent settings by policy.

  • Once policies are assigned to machines, policy changes are propagated automatically, without further user intervention.
  • Policies can be assigned by machine ID, machine group, or organization. A view definition must be used to filter the machines affected by the policy.
  • Changes to a machine's association with a machine group, organization, or view, causes the appropriate policies to be automatically re-deployed.
  • Multiple policies can be assigned to each machine. If policies conflict, policy assignment rules determine the policies that are obeyed or ignored.
  • A compliance cycle checks that each machine is in compliance with assigned policies. VSA users can check the status of each machine to ensure it is in compliance with assigned policies.
  • A policy can be overridden. A KPM policy override condition exists if agent settings for a machine have been set manually, outside of the KPM module. For example, making changes to the agent menu of a machine using the Agent Menu page in the Agent module sets up an override condition for that agent machine. KPM policies will be ignored from then on.

Dashboard

Provides a dashboard of Policy Management activities. Metrics include:

  • Policy Status
  • Agent Policy Status
  • Pending Events

Logs

Logs all Policy Management activity for future reference.

Policy Matrix

Displays the status of all machines your scope authorizes you to see. Policy status values include:

  • In Compliance
  • Marked for Deployment
  • No Policy Attached
  • Out of Compliance
  • Overridden
  • Inactive

Policies

Defines agent setting policies. Agent settings include:

  • Agent Menu
  • Agent Procedure
  • Alerts
  • Check-in
  • Credential
  • Distribute File - This policy object is not available for cloud-based versions of the VSA.
  • Logging
  • Machine Profile
  • Monitor Sets
  • Patch Settings
  • Protection
  • Remote Control
  • Working Directory

Each policy can be associated with a view. A view filters the machines affected by a policy.

Settings

Configures settings affecting all policies:

  • Schedule the interval for automatic deployment of all policies to all assigned machines.
  • Schedule compliance checks for machines assigned policies.

Organizations / Machine Groups

Assigns policies by organization and machine group.

Machines

Assigns policies by individual machine. Also clears policy overrides.

Clearing Policy Overrides

A policy override can be cleared using the Machines page.

Reprocess Policies

All policy objects assigned to a machine can be re-marked for deployment and reprocessed as though they were assigned to that machine for the first time. To reduce unnecessary server activity and network traffic, each policy object is deployed only once to a machine, even if additional policies are assigned to that machine that include the same policy object. If agent settings for a machine are unexpected, use this option to re-deploy all policy objects assigned to a machine.

Policy Import/Export

Policies can be imported and exported using System > Import Center.