Applying Policy using Tags

The purpose of this function is to assign tags to targets that generate specific logs and then apply policies by creating groups based on these tags.

How to Use Tag Function

  1. Create a tag.
  2. Use Configuring Tags in Search Filter to search for targets to tag, then assign tags.
  3. Create a node group for tag assignment.
  4. Apply policies using the node group.

Creating Tags

Refer to Node Tag Assignment.

Tag Assignment for Targets Searched via Search Filter

The search conditions for targets to which tags will be assigned must be precise.

  1. Create a search filter by referring to Configuring Tags in Search Filter.
  2. Verification
    • Generate an audit log that matches the search filter conditions.
    • Select the created search filter and click on the IP that generated the audit log.
    • In the node list view, select the node's IP.
    • In the Node Information tab, confirm the tag assigned to the target.

Note

To delete a tag, select Remove instead of Tag Settings.

Creating Node Groups for Tag Assignment

Node Group Conditions:

  • Item: Tag
  • Condition: If exists
  • Setting: [Tag Name]

Refer to Managing Node Groups.

Applying Policy Using Node Group

Refer to Creating and Viewing Enforcement Policy for Nodes.