The Umbrella Deployment Documentation Developer Hub

Welcome to the Umbrella Deployment Documentation developer hub. You'll find comprehensive guides and documentation to help you start working with Umbrella Deployment Documentation as quickly as possible, as well as support if you get stuck. Let's jump right in!

Get Started    

Configure Chromebook Policies

For the Cisco Umbrella Chromebook client

Before you configure policies, you must deploy the Cisco Umbrella Chromebook client. For more information, see Deploy the Chromebook Client.

Overview

The overall process is to create a Chromebook-specific policy that will work together with your "network usage" policy that applies to all devices connected to your networks. You place the Chromebook policy at the top of your policies list, so it will be invoked first. This ensures that the Chromebook policy is applied to your Chromebooks. Then your network policy comes into effect for all other devices connected to your network.

To maintain end-user privacy when Chromebooks are connected at remote locations, you can also disable Content Logging and include only security-related events in your reporting.

Use your existing network usage policy

Your network usage policy does not need to change at all because it will not be invoked for Chromebooks. For more information about creating Cisco Umbrella policies, see Create and Apply Policies.

Add a Chromebook-specific policy

Follow these steps to create a policy to apply to all Chromebook users when connected to your network as well as outside of your networks.

  1. Navigate to Policies > Management > All Policies and click Add.
    The Policy Wizard opens.
  1. Select some or all Chromebooks, GSuite Users, or GSuite OUs (Organizational Units). Do not select any networks.
  1. Click Next.
    Choose the content settings and security settings to apply to Chromebooks. A common practice is to enable the default security settings and disable content filtering to maintain user privacy.
  2. Expand Advanced Settings and disable Enable Intelligent Proxy.
    The intelligent proxy is not supported.
    Optionally, you can choose to log only Security Events to protect users' privacy.
  1. Click Next. Generally no changes are needed to the Security Settings.
  2. Click Next. Similarly, Content Access settings often remain the same.
  3. Click Next. Make any needed changes to Destination Lists.
  4. Click Next.
    The Custom block page, Bypass Users, and Bypass Codes features on this page are not yet supported by the Chromebook client.
  1. Click Next. Give your policy a name (the name is arbitrary), then click Save.

Your policy is automatically applied to Chromebooks. The process takes up to about 90 seconds.

Arrange policies in order

Policies in Cisco Umbrella are applied in sequence from the top of the Policy List down. Make sure that your Chromebook policy appears above your network usage policy. This ensures that your Chromebooks are protected by your Chromebook-specific policy and all devices on your network (that are not Chromebooks) are protected by your Network Access policy.


Deploy the Chromebook Client < Configure Chromebook Policies > Trusted Network Detection

Configure Chromebook Policies


For the Cisco Umbrella Chromebook client

Suggested Edits are limited on API Reference Pages

You can only suggest edits to Markdown body content, but not to the API spec.