Device policies
Apply fleet-wide agent connectivity and security settings.
Device policies configure agent behavior; they do not evaluate device health.
Create a policy#
- Open Network → Devices → Device Policies.
- Choose Add Device Policy.
- Select the tenant, role, group, or device scope.
- Configure connectivity options such as auto-connect and startup.
- Configure security options such as kill switch, disconnect, and tamper protection.
- Add network and management settings only where required.
- Set priority and save.
Use User Choice where the organization does not need to force a setting. More specific targeting and policy priority determine the effective configuration.
For disk encryption, firewall, OS, screen lock, or EDR checks, use Device posture. For who can reach an application, use Access policies.