Manual Chapter : About access policy item configuration

Applies To:

  • BIG-IP APM

    15.1.8, 15.1.7, 15.1.6, 15.1.5, 15.1.4, 15.1.3, 15.1.2, 15.1.1, 15.1.0

About access policy item configuration

An access policy item is a small action, or rule, that serves a specific purpose in an access policy. Access policy items are all added to the access policy in the same way; but in most cases, each access policy item must be configured individually. In Access Policy Manager, an access policy item is one of five types.

Item type

Configuration details

Examples

Blank item

This type of access policy item has no explicit configuration on the configuration page, and can be configured to verify a wide range of conditions with Expression screens.

  • General Purpose: Empty action
  • Endpoint Security (Client-Side): Machine Info

Preconfigured branch rule item

This type of access policy item has no explicit configuration on the configuration page, and a preconfigured set of rules on the Branch Rules page.

  • Endpoint Security (Server-Side): IP Reputation
  • Endpoint Security (Client-Side): Windows Info

Properties page configuration item

This type of access policy has all standard configuration options on the configuration page, to verify the required information, prompt for information, or another action.

  • General Purpose: Logon Page action
  • Endpoint Security (Client-Side): Antivirus

Assignment item

An assignment action allows configuration on the configuration page, and contains a list of available resources of a certain type, and allows you to select one or multiple resources to assign. Some resource assignment actions, such as Webtop, Links and Sections Assign, allow you to assign multiple items of different types. Advanced Resource Assign is a special case that allows you to select and assign multiple resources of different types at once.

  • Assignment: Pool Assign
  • Assignment: Webtop, Links and Sections Assign

Mapping assignment item

A mapping assignment action allows you to assign one variable or resource to the value of another variable or resource. This kind of assign action includes the assignment of resources or variables on a separate page, linked from the main screen.

  • Assignment: AD Group Resource Assign
  • Assignment: Variable Assign

Note: When naming VPE objects, APM removes special characters such as exclamation marks, equal signs, and brackets before saving the objects. The following characters are allowed: ( ) - _ + [ ].