You can apply application access control and request processing rules to applications and their resources. These instructions describe how to create, apply, organize, and remove application rules.

  1. Click Applications and then go to Applications > Applications.
  2. Click to expand an application in the list.
  3. Click the Pencil icon.
  4. Optional: Manage the policies for a resource.
    1. Click the Resources tab.
    2. Click to expand the resource you want to edit.
    3. Click the Pencil icon.
    4. Make the desired changes to the resource.
    5. To confirm your changes, click Save.
  5. Select the applicable tab.
    • For Web applications, select the Web Policy tab.
    • For API applications, select the API Policy tab.
    • For Web + API applications, you can configure both Web Policy and API Policy on separate tabs, as required.
  6. Using the radio selection, filter by Rules, Rule Sets, Rule Set Groups, or Rule Type.
  7. To create a new rule, click Create Rule.
  8. To apply a rule, rule set, or rule set group, drag a rule from Available Rules onto the policy bar.
  9. Drag items to change the order in which they are evaluated at runtime.
    Note:

    Rule ordering can affect PingAccess performance. If an access control rule is more likely to reject access, it should appear near the top of the list to reduce the amount of processing that occurs before that rule is applied. This can be more noticeable if, for example, access control policies are applied along with processing rules. Applying access control policies first ensures that no processing happens on responses unless the user is allowed access.

  10. To remove an item from an application or resource, click - next to the item you want to remove.