Skip to main content

Problem

Security teams need predictable control over app and web usage to reduce policy bypass and data-risk exposure.

Benefits

You can enforce policy decisions consistently with SafeSquid while preserving legitimate business workflows.

Advantages

You keep actionable policy control close to operations, with verifiable outcomes in logs and policy behavior.

Call to action

Use the steps in this guide to implement the control, then validate behavior with a real user-flow test.

Problem: Social networking access must be bounded by time

Unrestricted social networking during work hours can reduce productivity and create policy risk. Many organizations block social networking on network computers. Some organizations allow access during lunch or defined windows to balance productivity and morale. SafeSquid time profiles allow social networking sites only during configured hours (e.g. lunch); outside that window access is blocked.

Key benefits

Social networking is allowed only during the configured time window. Outside that window users receive a block template. Administrators set the LUNCH (or custom) time profile once; policy applies consistently. Productivity controls remain while offering limited access.

Prerequisites

Call to action

Select Configure section to allow social networking sites in lunch hours Open the Search icon (bottom right of SafeSquid Web GUI) to search by keyword or profile name. View default policies under policies and profiles

Search default policy: LUNCH.

Enter LUNCH in the value field of the search dialog and click Search. Search for default policy Lunch The default policy for the LUNCH profile appears in the Time Profile section.

Go to Time Profiler

Open the default policy from the Time Profiler section having a LUNCH profile. Open the default policy from Time Profiler section having LUNCH profile

Edit LUNCH policy

Set the lunch time (Hour Range and Minute Range) and save the policy. Modify lunch time (Hour Range and Minute Range) and save the policy Also, ensure the Global part of the Time Profiler Section is Enabled with TRUE. Global part of Time Profiler Section is Enabled with TRUE to allow social networking sites in lunch hours By default, Global Part of Time Profiler is FALSE. Save the policy after making Global part of Time Profiler as TRUE. Save the policy after making Global part of Time Profiler as TRUE. Save the policy after making Global part of Time Profiler as TRUE.

Go to Access Profiles

Open Access Profiles from the Restriction Policies side menu. Open Access Profiles from Restriction Policies side menu to allow social networking sites in lunch hours

Create new policy

Create a new policy under the Access Profiles section for incorporation of the default LUNCH profile from the Time Profiler section. Create new policy under Access Profiles section for incorporation of default LUNCH profile from Time Profiler section. Select the default Category Socialnetworks from the Categories Field. Select the default Category Socialnetworks from Categories Field. Select ALLOW in the Action field to allow Social Networking sites during lunch hours. Select ALLOW in Action field to allow Social Networking sites in lunch hours. Specify a unique profile name in the Added Profiles field (e.g. SOCIAL NETWORKING SITE). Click on the top right Icon to save the policy. Specify unique profile name inside Added Profiles field and click on top right Icon to save the policy.

Verification and Evidence

  • During the configured lunch window: access a social networking site; access is allowed.
  • Outside the lunch window: access a social networking site; the BLOCK template appears.
  • Interface: Time Profiler shows LUNCH with the correct hour/minute range; Access Profiles shows the policy with Category Socialnetworks, Action ALLOW, and the added profile. Global for Time Profiler is TRUE.

Troubleshooting