Best Practices for Use Cases

Terrazone Documentation

Policies allow configuring access to applications and services.

This section is about creating and managing security policies that protect the system and its resources. This section provides detailed instructions on various aspects of setting up a policy:

  • Add, Edit, and Delete a Policy – This subsection provides step-by-step guidance on creating new security policies, modifying existing ones, and removing policies that are no longer needed. It ensures that administrators can effectively manage the policy lifecycle to maintain system security.

  • Authentication and Authorization Methods – This part focuses on configuring the methods used to verify user identities and control access to system resources. It includes setting up different authentication mechanisms and defining authorization rules to ensure only authorized users can access sensitive information and functionalities.

  • Constraints and Conditions – This subsection outlines the various restrictions that can be applied to security policies to refine and enhance access control. It includes the following specific constraints:

    • User Groups Restrictions – Instructions on setting up policies that limit access based on user group memberships, ensuring that only specified groups have access to certain resources.
    • Day and Time Restrictions [optional] – Optional configurations for restricting access based on specific days and times, providing an additional layer of security by limiting access to predefined time frames.
    • Geographical and Location Restrictions [optional] – Optional settings to restrict access based on geographical location, enhancing security by preventing access from unauthorized or high-risk locations.