Copying filters and policies to roles

Super Administrators can use the Filters > Copy Filters To Role and Policies > Copy Policies To Role pages to copy one or more filters or policies to a delegated administration role. Once the filter or policy has been copied, delegated administrators can apply the filters or policies to their managed clients.

  • In the target role, the tag “(Copied)” is added to the end of the filter or policy name. A number is added if the same filter or policy is copied multiple times. For example, “(Copied 2).”
  • Delegated administrators can rename or edit filters or policies that have been copied to their role.
  • Category filters copied to a delegated administration role set the action to Permit for custom categories created in the role. Delegated administrators should update the copied category filters to set the desired action for their role-specific custom categories.
  • Changes made by a delegated administrator to a filter or policy copied to their role by a Super Administrator do not affect the Super Administrator’s original filter or policy, or any other role that received a copy of the filter or policy.
  • Filter Lock restrictions do not affect the Super Administrator’s original filter or policy, but they do affect the delegated administrator’s copy of the filter or policy.
  • Because delegated administrators are affected by Filter Lock restrictions, the Permit All category and protocol filters cannot be copied to a delegated administration role.

To copy a filter or policy:

Steps

  1. On the Copy Filters to Role or Copy Policies to Role page, verify that the correct policies or filters appear in the list at the top of the page.
  2. Use the Select a role drop-down list to select a destination role.
  3. Click OK.

    A popup dialog box indicates that the selected filters or policies are being copied. The copy process may take a while.

    The changes are not implemented until you click Save and Deploy.

Next steps

After the copy process is complete, the copied filters or policies will be available to delegated administrators in the selected role the next time they log on to the Forcepoint Security Manager. If a delegated administrator is logged on to the role with policy access when the filters or policies are copied, they will not see the new filters or policies until they log off and log on again.