How to create a general segregation sudo rule

Prev Next

This tutorial guides you on how to create a sudo rule in EPM macOS with general segregation, applicable to all devices with the agent installed.

Access path

  1. In Segura, on the navigation bar, hover over the products menu and select EPM.
  2. In the side menu, select Policies > macOS > Sudo rules.
  3. Click Add to start creating a new rule.

Segregation screen

  1. On the segregation screen, select the General option.

This option ensures that the rule will be applied to all devices with the EPM agent active.

  1. Click Continue.

Sudo rules tab

  1. Fill in the following fields:
  • Identification Name*: define a representative name for the rule.
  • Enabled*: select Yes to activate immediately.
  • Commands for rule application (must be used the full path)*: enter the full path of the command to be controlled.
  • It should be NOPASSWD?*: select Yes if you want to allow execution without password request.
  • Description: enter additional notes about the rule.
  1. Click Continue to proceed to the next step.

Review tab

  1. Review all the information of the configured rule.
  2. If everything is correct, click Save to complete the registration.