Add an application group
Create an application group policy object to manage related applications under one web policy.
If you're using Sophos ZTNA, you can add agentless RDP and SSH applications protected by ZTNA to an application group. This page explains how to add ZTNA resources to an application group policy object.
To add these ZTNA applications, you must meet the following requirements:
- You must have set up ZTNA. See About Zero Trust Network Access.
- You must have added resources in ZTNA. See Resources & Access.
- ZTNA gateways deployed on ESXi, Microsoft Hyper-V, or Sophos Firewall must run the latest version of their respective platform.
You can also add applications to a policy object from a Sophos-curated list of common applications.
To add an application group, do as follows:
- Go to My Products > Protected Browser > Policy objects.
- Click Add object and select Application group.
- Enter a name and description for the application group.
-
To add ZTNA resources, do as follows:
- Expand ZTNA resources.
-
Under Available, select the applications and move them to Assigned.
Note
This list includes only agentless SSH and RDP applications. To configure agentless web applications, add them to a Site list policy object. See Add a site list.
-
To add common applications from a Sophos-curated list, do as follows:
-
Click Save.

