19.1 Introduction

Secure Workstation is a post-login method that provides a mechanism to lock a workstation in events such as when an authentication device is removed or after a user inactivity timeout. You can configure secure workstation to lock the workstation, log out a user from Windows, log out a user from the network, or close a set of administrator-specified programs.

Secure workstation functions around the three factors:

Triggers

Actions

Policy Editors

Secure workstation uses two policies:

The secure workstation policy editor is a GUI feature, which you can use to edit the local policy and view the effective policy.

Secure workstation is integrated with Novell SecureLogin. It registers itself with LDAPAuth for various events. When an event occurs, the SWEvent handles the event and passes it on to the service.

NOTE:On Windows machines, the exe files that are set to run automatically cannot have administrator privileges. So, the secure workstation policy editor session that requires administrator privileges does not run automatically. To run the session as a standard user on Windows 7, find the secure workstation session management process file (wsaccsmp.exe) and manually start this service. On Windows Vista, select to run the session from the notification message, which informs that the session is blocked.