
S W G U s e r G u i d e
127
Chapter 21: Implementing Cloud Security
9. Configure Provisioning parameters, and perform downloads, in the
Provisioning
tab, as follows:
a. In the
Agent
Installer
URL
field specify the address chosen by the administrator where the
Agent Installation Package is saved.
b. If the Policy Server should automatically send emails with needed enabling instructions to
new cloud users, select the
Automatically
send
an
with
provision
instructions
to
new
cloud
members
checkbox.
c. If the Policy Server should automatically send emails to existing cloud users notifying them
that configuration changes have been committed, select the
Send
an
update
upon
configuration
changes
checkbox.
d. In the
Mobile
User
Private
Key
Password
field, specify the password that the end user will
use when installing the certificate. Specifying the password is mandatory.
e. Confirm the password.
f. Click
Save
.
g. Click
.
h. Download the appropriate Agent Installer, for Windows or Mac, so that you can later distribute
it for installation.
i. If you cleared the
Enforce
PAC
file
usage
via
the
Mobile
security
Client
checkbox in the
Client
Configuration
tab, you can optionally download and modify the PAC file for later
distribution.
Configuring Cloud Settings in PKI Mode
NOTE:
Before
configuring
cloud
settings,
ensure
that
you
have
added
the
needed
cloud
scanning
servers.
For
instructions,
see
Chapter 2: Configuring / Adding Scanning Servers
.
Â
To configure Cloud Settings in PKI Mode
1. Select
Administration
Æ
Cloud
Æ
Configuration
.
2. Click
Edit
.
3. If the
Cloud
Configuration
title bar does NOT end with
(PKI
Mode)
, change the mode as follows:
a. Click the
Change
Certification
Management
Mode
button.
b. In the displayed Certification Management Mode window, choose the
Enterprise
PKI
option.
c. Click
Save
. Then confirm the change.
NOTE:
Before
you
can
download
these
files,
you
must
ensure
that
you
have
saved
and
committed
the
mandatory
information
in
the
other
tabs.
Download
buttons
in
the
Provisioning
tab
are
disabled
until
all
mandatory
information
in
the
other
tabs
is
saved
and
successfully
committed.
Warning
icons
and/or
yellow
field
backgrounds
in
the
other
tabs
indicate
which
fields
are
mandatory.
• If
you
are
using
a
third
party
PAC
file,
ensure
that
the
Enforce
PAC
file
usage
via
the
Mobile
Security
Client
checkbox
in
the
Client
Configuration
tab
is
cleared,
and
that
the
local
host
proxy
within
the
PAC
file
belongs
to
M86.
WARNING:
If
you
change
the
Certificate
Management
mode,
your
previous
Certificate
Authority
definitions
will
not
be
saved.