Cisco Cisco Web Security Appliance S690 User Guide

Page of 784
 
7-29
Cisco IronPort AsyncOS 7.0 for Web User Guide
OL-23079-01
Chapter 7      Identities
Configuring Identities in Other Policy Groups
Figure 7-5
Multiple Identities in a Policy Group
This Identity uses an authentication sequence and this policy group 
applies to one realm in the sequence.
All authenticated users in this Identity are authorized for this policy 
group.
The specified user groups in this Identity are authorized for this 
policy group.
Note
If an Identity group becomes disabled, then that Identity group is removed (not 
disabled) from any non-Identity policy group that used it. If the Identity group 
becomes enabled again, the non-Identity policy groups that previously used the 
Identity do not automatically include the enabled Identity. Identity groups become 
disabled due to a deleted authentication realm or sequence.
To configure Identity group information in a policy group:
Step 1
Create a new policy group or edit the membership of an existing policy group for 
Access, Decryption, Routing, Data Security, or External DLP Policy.
Step 2
Scroll down to the Identities and Users section.