Browser Isolation - Configuring Policies

This article contains information on configuring, creating, changing, and deleting Browser Isolation policies in Mimecast, including policy settings, and steps to manage user and group-specific isolation rules. This is achieved through policies that allow you to create rules:

  • For the websites considered suspicious.

    This only applies when a site is Uncategorized.

  • To regulate what users can do (e.g., view in read-only mode).

Policies covered:

Configuring Browser Isolation

Browser Isolation works in conjunction with your Targeted Threat Protection - URL Protection and Web Security policies. To use the browser isolation functionality, you must have configured either: 

Field / Option Value
Action Block
Disable Browser Isolation Disabled
Field / Option Value
Web Proxy Enabled
Antivirus Scanning Enabled
Browser Isolation Enabled

Creating a Browser Isolation Policy

You can create a Browser Isolation policy by using the following steps:

  1. Log in to the Mimecast Administration Console.
  2. Navigate to  Policies | Browser Isolation.
  3. Click on Create New Policy.
  4. Complete the Details dialog as follows:
Field / Option Description
Name Provide a name to identify the policy (e.g. Finance Dept Spoofing). This is a mandatory field.
Description Enter a description for the policy (e.g. "This policy protects members of the Finance Department from accessing spoofed websites.")
  1. Click on Next.
  2. Configure the Settings dialog as required:
Field / Option Description
Enter Text If enabled users can enter text into fields displayed on the website.
Paste Text In If enabled users can paste text into browser fields from their device's clipboard.
Copy Text Out If enabled users can copy text from the browser fields to their device's clipboard.
  1. Click on Next.
  2. Complete the Applies To dialog as follows:
Field / Option Description
Location

Click on the Select Location button to select one or more locations.

This field is only displayed if you've Mimecast Web Security enabled on your account. See Web Security - Configuring Locations.

Groups Click on the Select Groups button to select one or more Active Directory or local group.
Users Click on the Select Users button to select one or more user.

Click on the icon to remove a location, group, or user from the list.

  1. Click on Next. A summary of the policy is displayed.
  2. Click on Create Policy.

Changing a Browser Isolation Policy

You can change a Browser Isolation policy, including the default policy, by using the following steps:

  1. Log in to the Mimecast Administration Console.
  2. Navigate to  Policies | Browser Isolation.
  3. Click on the Policy to be changed.
  4. Click on Edit.
  5. Change the policy as required.
  6. Click on Save and Close.

Deleting a Browser Isolation Policy

You cannot delete the default Browser Isolation policy.

You can delete a Browser Isolation policy by using the following steps:

  1. Log in to the Mimecast Administration Console.
  2. Navigate to  Policies | Browser Isolation.
  3. Click on the Policy to be deleted.
  4. Click on Delete.
  5. Click on Delete in the confirmation dialog.

See Also...

Was this article helpful?
2 out of 4 found this helpful

Comments

2 comments
Date Votes
  • This page as well should change where it states “suspicious” as it's only engaged when a site is “uncategorized”. Stating suspicious is confusing when coming from the URL Protection definitions as “suspicious” means any of the actual categorized URLs are found.

    (I made mention of the above on the Browser-Isolation-Overview page)

    Unless I'm mistaken, or it could be part of the Advanced Security Web Security to which I don't currently subscribe to. If it is, it should be more clear on the use of suspicious, if it's just only uncategorized URLs.

    0
  • Thank you for your feedback. We have reviewed the article and updated it.

    0

Please sign in to leave a comment.