Preventing file uploads from non-compliant computers to SharePoint Web applications in IAG SP2

Applies To: Intelligent Application Gateway (IAG)

This topic describes how you can use the application's Upload policy so that, unless the end user's computer meets the security policy requirements that you define, end users cannot do the following:

  • Upload files to the SharePoint Web application

  • Save files from Microsoft Office applications to the SharePoint Web application

Users who are blocked are notified accordingly.

To prevent file upload operations

  1. On the desktop of the computer running IAG, click Start, point to All Programs, point to Whale Communications IAG, and then click Configuration.

  2. If a password is required, enter it, and then click OK.

  3. In the Configuration console, on the Application Properties dialog box, click Manage Policies.

  4. On the Manage Policies and Expressions dialog box, under the Policies group, select the SharePoint 2007 Upload Checkin policy, and then click Edit Policy.

  5. On the Policy Editor dialog box, you can edit the policy in order to comply with your corporate policy, so that noncompliant computers, such as computers that don't run an up-to-date antivirus program, are blocked. You can use the Default Web Application Upload policy as a basis for your definitions. For more information, see Managing client endpoint policies_IAG.

    On the Policy Editor dialog box, click OK, and then on the Manage Policies and Expressions dialog box, click Close.

  6. On the Application Properties dialog box, on the General tab, in the Upload list, click the SharePoint 2007 Upload Checkin policy, and then click OK.

  7. On the toolbar of the Configuration console, click the Activate Configuration icon, and then on the Activate Configuration dialog box, click Activate.

    When the configuration is activated, the message "IAG configuration activated successfully" appears. The upload operations described in this topic's introduction will be blocked on the client side and on the server side, for endpoint computers that do not comply with the security policy that you define here.

    Note

    This procedure ensures full correlation of the SharePoint 2007 Upload Checkin policy on both the client and server sides. If you want to cancel the policy, you must take the following steps in order to ensure that the same conditions apply to both the client and the server:

    • To cancel enforcement of the policy on the server side, on the Application Properties dialog box, on the General tab, select an Upload policy other than SharePoint 2007 Upload Checkin.

    • To cancel enforcement of the policy on the client side, redefine the value of the policy SharePoint 2007 Upload Checkin as True.