Workflow for new users
For new users, the Forcepoint ONE | Firewall service involves the following high-level steps:
- Add administrator
- Add user and groups
- Create sites and connections
- Connect your sites to Forcepoint ONE Cloud
- Create objects
- Create a policy
- Configure an identity provider
Add administrator
Add user and groups
In order to be identified and authenticated by your policy rules, users must exist in the Forcepoint ONE user directory.
- On how to add a user, refer to the Creating a local administrator account topic in the Forcepoint ONE SSE Deployment Guide.
- On how to add groups, refer to the Creating a local user group topic in the Forcepoint ONE SSE Deployment Guide.
- On how to provision users, refer to the Provisioning users topic in the Forcepoint ONE SSE Deployment Guide
Create sites and connections
Connect your sites to Forcepoint ONE Cloud
To forward traffic to Forcepoint ONE Cloud, you must configure IPsec or GRE tunnels between your site and Forcepoint ONE Cloud (Cloud Firewall service).
Create objects
Objects are reusable elements that can be assigned to policies to create traffic filtering rules and inspection rules. You can create objects from the Objects page in the Forcepoint ONE | Firewall application. To navigate to the Objects page, on the Navigation pane, click Objects.
You can only create the following objects from the Objects page in the Forcepoint ONE | Firewall application:
- Network Services
- Source IP Address Lists
- Destination IP Address Lists
- Domain Name Lists
Create a policy
Create a policy to configure rules that are used to control access to objects, inspect and secure the traffic that is routed through the firewall.
For more details on policy, refer to the Policy topic in the Forcepoint ONE | Firewall online help documentation.