How to create custom web content policies
4:47 · Published September 11, 2023
See how dope.security applies custom web and cloud application policies to different teams, including finance and marketing examples.
This recording shows the product as demonstrated at the time. The current interface and available features may differ.
In this demo
- 00:00 Custom policies and inheritance
- 00:54 A finance-team policy
- 01:50 Cloud application controls
- 02:41 Restrict Dropbox to business accounts
- 03:17 A marketing-team policy
- 04:14 Consumer login controls
- 04:22 Recap
Read the full transcript
00:00Welcome back to our Dope SWG demos. Today we're gonna talk about custom web content policies. My name is Ashley.
00:06I am a product marketing manager here at dope.security. Web Protection is not a one size fits all. Let's look at custom policies,
00:15what they are and when you would use them. Custom policies allow you to manage your organization's different needs, whether it be geographical or specific user groups that require customization.
00:28Legacy solutions make this pretty complex, but we simplified it in dope SWG. Categories are inherited from the base policy,
00:37so you don't need to rebuild from scratch. This doesn't happen with legacy Solutions usually have to rebuild every single
00:44time. So once you've configured your base policy to how you want it across your organization, let's create some custom policies.
00:54Our first example is gonna be finance, so I'm gonna name it finance policy. And I'm going to go into our users and immediately assign it to our finance
01:04group. Every user under the finance group will automatically be assigned to this policy and move from the base policy to the finance policy.
01:21Next, we'll wanna go into content and start to customize. For finance, let's block all file storage, for example, as we wanna reduce the of financial data leaks.
01:39You can test this out by going to Dropbox and you'll see that it's blocked because of file storage. Next,
01:50we wanna customize the policies further with cloud app controls and bypass lists Under cloud app controls, I want to activate my Google apps,
02:03so I'm gonna enable Google and allow for my domain to log in, but I wanna make sure that consumer login is off to block personal email login.
02:14This is gonna keep Access company only, and now you'll find even though Google Drive is a fine, uh, a file storage,
02:27you should be able to access this because we are logged into our company account and we have just enabled Google Cloud app control.
02:41And you'll see that we have, um, support for Dropbox. Even though Dropbox was blocked because of file storage, we can go ahead and bypass this,
02:50enable Dropbox here and put in the business Id allowing your users to be able to access only the specific business account,
03:00not anyone else's organizations or their own personal account. On a similar note, let's go and create a policy for marketing.
03:17I'm gonna go into our policies tab, create a new policy, And call this marketing policy. If you remember, in the base policy, we have social media blocked,
03:38and this was because of productivity reasons. If we go into Facebook, you'll find this blocked here, but in a marketing policy,
03:51we wanna turn this on so that the marketing team can browse social media for research purposes. We're gonna hit save,
04:02and now that you'll see that Facebook is allowed in our cloud op controls, we're gonna go in and do the same thing.
04:14We're gonna go into Google enable this, but this time we're gonna make sure that consumer login stays on so that social
04:22logins can occur regardless of whether or not your company has an account. You can create these types of policies by region or for additional teams or
04:35anything else that you need across your organization. It's that easy. So have fun customizing policies, and we're gonna see you for the next demo on admin settings.
Keep exploring
We made it dope.

