Skip to content

Add an application group

Create an application group policy object to manage related applications under one web policy.

If you're using Sophos ZTNA, you can add agentless RDP and SSH applications protected by ZTNA to an application group. This page explains how to add ZTNA resources to an application group policy object.

To add these ZTNA applications, you must meet the following requirements:

  • You must have set up ZTNA. See Set up Zero Trust Network Access.
  • You must have added resources in ZTNA. See Resources & Access.
  • ZTNA gateways deployed on ESXi, Microsoft Hyper-V, or Sophos Firewall must run the latest version of their respective platform.

You can also add applications to a policy object from a Sophos-curated list of common applications.

To add an application group, do as follows:

  1. Go to My Products > Protected Browser > Policy objects.
  2. Click Add object and select Application group.
  3. Enter a name and description for the application group.
  4. To add ZTNA resources, do as follows:

    1. Expand ZTNA resources.
    2. Under Available, select the applications and move them to Assigned.

      ZTNA resources picker, showing assigned resources.

      Note

      This list includes only agentless SSH and RDP applications. To configure agentless web applications, add them to a Site list policy object. See Add a site list.

  5. To add common applications from a Sophos-curated list, do as follows:

    1. Expand Built-in applications.
    2. Under Available, select the applications and move them to Assigned.

      Add built-in applications.

  6. Click Save.