Basic Policy
Basic Policy in TRASAGATE allows administrators to implement time and location-based access controls, manage two-factor authentication, enable session recording, and control file transfers. Here are the key features of the Basic Policy:
Second Factor Authentication:
- Enforce mandatory two-factor authentication (2FA) to enhance security.
Session Recording:
- Enable or disable session recording. This feature is only supported for SSH and RDP sessions.
File Transfers:
- Allow or disallow file transfers during SSH or RDP sessions.
IP Source:
- Whitelist specific IP sources for access. The default is
0.0.0.0/0, which allows access from all sources. - You can whitelist multiple IP sources by entering them as comma-separated values, e.g.,
192.168.0.1/24,192.168.0.10.
- Whitelist specific IP sources for access. The default is
Day and Time:
- Restrict access based on specific days and times.
- Example: Set policies such as "Sunday 11 AM - 4 PM" or "Monday 1 AM - 9 PM" to control access during those periods.
Expiry:
- Set an expiry time for the policy. This is especially useful for granting temporary access, such as for third-party support. The policy automatically revokes access after the set expiry time.