User guide
35
4.1.3.2 Adding Device control rules
A Device control rule defines the action that will be taken when a device meeting the rule criteria is connected to
the computer.
Enter a description of the rule into the Name field for better identification. Selecting the check box next to Enabled
disables or enables this rule; this can be useful if you don't wish to delete the rule permanently.
Device type
Choose the external device type from the drop-down menu (Disk Storage / CD/DVD...). The types of devices are
inherited from the operating system and can be seen in the system Device manager providing a device is connected
to the computer. The CD/DVD device type in the drop-down menu refers to the storage of data on an optically
readable medium (e.g. CDs, DVDs). Storage devices cover external disks or conventional memory card readers
connected via USB or FireWire. Smart card readers encompass readers of smart cards with an embedded integrated
circuit, such as SIM cards or authentication cards. Examples of imaging devices are scanners or cameras, these
devices do not provide information about users, only about their actions. This means that imaging devices can only
be blocked globally.
Rights
Access to non-storage devices can be either allowed or blocked. By contrast, rules for storage devices allow for
selecting one of the following rights:
Block – Access to the device will be blocked.
Read Only – Only reading access to the device will be allowed.
Read/Write – Full access to the device will be allowed.
Other parameters that can be used to fine-tune rules and tailor them to devices. All parameters are case-
insensitive:
Vendor – Filtering by vendor name or ID.
Model – The given name of the device.
Serial number – External devices usually have their own serial numbers. In the case of a CD/DVD, this is the serial
number of the given media, not the CD drive.
Note: If the above three descriptors are empty, the rule will ignore these fields while matching. Filtering
parameters in all text fields are case-sensitive and no wildcards (*, ?) are supported. They must be written exactly










