Skip to main content
Cisco Meraki

Applying Group Policies to Systems Manager (MDM) Devices using Tags

Group policies on Security Appliance and Wireless networks can be automatically applied to Systems Manager MDM clients based on available tags. This allows even the network's treatment of a device to be handled from within the MDM platform.

Creating MDM Sentry Policies

  1. Configure a group policy (or policies) on the desired Security Appliance or Wireless network.
    2017-07-20 09_03_39-Group policies configuration - Meraki Dashboard.png
     
  2. Navigate to Network-wide > Configure > Sentry policies.
  3. Click Add a new group policy MDM scope.
    f20e79b8-43a7-4be0-93f5-342ed2b9829d
     
  4. Select the Systems Manager network that contains that devices and tags to be used.
  5. Choose the Tag scope that determines how the specified Tags will be used. For more information, refer to the article on using tags in Systems Manager.
  6. Select any desired Tags that will be matched against. These can be manual or auto tags.
  7. Select the Policy which should be applied to devices matching these criteria.
  8. If additional policies need to be created, repeat steps 3-7 as needed. 
  9. Click Save Changes.

2017-07-20 09_44_34-Sentry Policies - Meraki Dashboard.png


Keep in mind that policies are processed in descending order and only apply the first match. Thus if a device is within scope for two policy mappings, only the first will be used. To reorder the policies, simply drag the move icon (four directional arrow) in the Actions column.

 

Deleting or Modifying Sentry Policies

To delete a Sentry policy:

  1. Click the X in the Actions column for the desired policy.
  2. Click Save Changes.

 

To modify a Sentry policy:

  1. Make any desired changes to any of the columns.
  2. Click Save Changes.
  • Was this article helpful?