All Products
Search
Document Center

WUYING Workspace:Create a basic policy

Last Updated:Feb 19, 2024

A basic policy in WUYING Workspace is a set of security rules that are used to manage the configurations of and permissions on cloud computers to improve user experience and data security. This topic describes how to create a basic policy.

Feature overview

A basic policy provides features such as Watermark, Anti-screenshot, Clipboard, Image Display Quality, Network Transmission, and web client file transfer.

Procedure

You can create a basic policy to manage security settings and permissions on cloud computers based on your business requirements. The following section describes how to create a basic policy:

  1. Log on to the WUYING Workspace console.

  2. In the left-side navigation pane, choose Operations > Policies.

  3. In the upper-left corner of the top navigation bar, select a region.

  4. On the Policies page, click Create Policy.

  5. In the Create Policy panel, enter the name of the policy that you want to create as prompted.

  1. Click Basic Policy and configure the following parameters based on your business requirements:

    Parameter

    Description

    Watermark

    After you enable the feature, watermarks are tiled across the screen of a cloud computer when it is connected to an end user.

    You can configure the display content and display style of watermarks.

    • Content

      • Username: the username of the end user who is connected to the cloud computer. Example: testuser01. By default, this option is selected.

      • Cloud Computer ID: the ID of the cloud computer to which the end user is connected. Example: desktopID001. By default, this option is selected.

      • Cloud Computer IP: the IP address of the cloud computer to which the end user is connected. Example: 192.0.2.0. By default, this option is not selected.

      • Client IP: the IP address of the client from which the end user is connected to the cloud computer. Example: 192.0.2.254. By default, this option is not selected.

      • Current Time: the current date when the end user is connected to the cloud computer. Example: 20230101. By default, this option is not selected.

      • Custom Text: the content that you want to display. By default, this option is not selected.

        Note

        You can enter 1 to 20 characters as the custom text. You can enter letters, digits, and the following special characters: ~ ! @ # $ % ^ & * ( ) - _ = + | { } ; : ' , < . ?. If you use line breaks or other special characters, the custom text may not take effect.

    • Display style

      • Font Size: the font size of watermarks. Valid values: 10 to 20. Default value: 12. Unit: pixels (px).

      • Font Color: the color of watermarks in hexadecimal color code of red, green, and blue (RGB). Default value: #FFFFFF. The color name of #FFFFFF is white.

      • Transparency: the transparency of watermarks. Valid values: 10 to 100. Default value: 25. Unit: percentage (%). If you set this parameter to 0, watermarks are opaque. If you set this parameter to 100, watermarks are completely transparent.

      • Slope: the slope of watermarks that are displayed on the cloud computer. Valid values: -30 to -10. Default value: -25.

    Important

    You must configure at least one content-related parameter. You can configure up to three content-related parameters.

    Anti-screenshot

    After you enable the feature, end users cannot use screenshot tools to capture the screens of cloud computers from on-premises devices.

    Important
    • The anti-screenshot feature is available only for Windows clients and macOS clients of Alibaba Cloud Workspace V5.2.0 and later.

    • The type of WUYING terminals may affect the anti-screenshot feature. If you set the Anti-screenshot parameter to Enable, we recommend that you also specify the client from which end users can connect to cloud computers on the Logon Method Control tab.

    Clipboard

    Specifies whether end users can copy and paste texts, images, and files between on-premises computers and cloud computers. Valid values:

    • Paste to Cloud Computer: End users can copy texts, images, and files only from on-premises computers to cloud computers.

    • Paste to Local Computer: End users can copy texts, images, and files only from cloud computers to on-premises computers.

    • Enable Two-way Transfer: End users can copy texts, images, and files between on-premises computers and cloud computers.

    • Disable Two-way Transfer: End users cannot copy texts, images, and files between on-premises computers and cloud computers.

    Allow Preemption

    To improve user experience and ensure data security, multiple end users are not allowed to connect to the same cloud computer at the same time.

    Image Display Quality

    Specifies the display quality of cloud computer screens. Valid values: LD, SD, HD, and Lossless.

    Network Transmission

    If you enable this feature, Adaptive Streaming Protocol (ASP)-based cloud computers use the UDP/TCP adaptive mode. By default, the ASP-based cloud computers use the User Datagram Protocol (UDP), which delivers better user experience in weak network conditions. If the UDP protocol fails to provide services, the Transmission Control Protocol (TCP) is automatically used.

    We recommend that you enable the feature for better user experience. If a protection mechanism, such as attack prevention and traffic throttling, is configured for the UDP ports of the network that is accessed by cloud computers, you can disable the feature based on your business requirements.

    Important
    • Only Adaptive Streaming Protocol (ASP)-based cloud computers support the Network Transmission feature.

    • Only cloud computers whose image version is V1.0.0 or later support the Network Transmission feature.

    • Only Windows clients, macOS clients, iOS clients, and Android clients support the Network Transfer (Adaptive UDP/TCP) feature. Web clients and WUYING terminals do not support the feature.

    Image Quality Control

    This feature improves the image quality of cloud computers. If your end users use Enterprise Graphics cloud computers in design scenarios, we recommend that you enable this feature to improve the performance and user experience of cloud computers.

    Important

    This feature takes effect only on High-definition Experience (HDX)-based cloud computers of the Enterprise Graphics type.

    Web Client File Transfer

    Specifies whether files can be transferred between on-premises computers and cloud computers when end users connect to the cloud computers from web clients.

    Valid values:

    • Disabled

    • Allow Upload

    • Allow Download

    • Allow Upload/Download

    Important

    If you set the Web Client File Transfer parameter to Allow Upload/Download when you create a custom policy, the setting does not take effect on HDX-based cloud computers that run Linux. If an end user connects to an HDX-based cloud computer that runs Linux from a Web client and wants to use the file transfer feature, the default system policy All enabled policy must be used.

  2. Click Create.

    After the policy is created, you can view the policy on the Policies page.

References