ControlOne Update: FQDN Policy-Based Routing, Global Policy Templates, and Stability Improvements
Policy-based routing now supports fully qualified domain names (FQDNs), making it easier to route traffic based on the destinations customers actually use. Device Posture Check (DPC) presets and global policy templates help standardize posture and agent settings across customers, endpoints, and zones without repetitive setup. Additional reliability updates improve licensing defaults, platform resiliency, reporting accuracy, and agent connectivity.
What’s New
- Policy-based routing now supports full FQDN matching for bridges and agents, expanding routing flexibility without relying on static IP lists.
- DPC presets are now available, making it faster to apply standardized posture policies without manual, per-policy setup.
- DPC templates now support global, reusable posture policy templates that can be created once and applied across customers, endpoints, and zones.
- Agent Control Policy templates now support global, reusable agent settings that can be created once and applied across customers and endpoints.
- Onboarding now disables auto-license assignment by default, reducing friction during initial setup.
- The platform now recovers more reliably from bridge tunnel configuration inconsistencies, reducing provisioning risk during drains and migrations.
- DNS static records now support underscores, improving compatibility with common naming patterns.
- Agent status indicators now display consistently across portal pages, reducing confusion during troubleshooting.
- Reporting exports now align blocked versus allowed status correctly for security information and event management (SIEM) workflows.
- Reporting now consistently displays blocked events with the correct red indicator.
- Authentication sessions are now more reliable by preventing cases where users appear signed in but cannot reconnect due to expired refresh tokens.
- Windows agents now block IPv6 traffic while connected, preventing IPv6 bypass scenarios.
Why You’ll Love It
FQDN-based routing reduces maintenance overhead by allowing policies to follow real-world destinations rather than shifting IP ranges. Presets and global templates help teams quickly standardize posture requirements and agent settings across many customers, improving consistency without repetitive configuration work. The stability and reporting fixes reduce troubleshooting time, improve confidence in enforcement and reporting signals, and remove common friction points in onboarding and daily operations.
How to Access It
- Policy-based routing with FQDN support is available now. Learn more: https://help.cytracom.com/hc/en-us/articles/35438291924493-ControlOne-Policy-Based-Routing
- DPC templates and Agent Control Policy templates are available now. Learn more: https://help.cytracom.com/hc/en-us/articles/42436217059469-ControlOne-Global-Policies-Overview-Configuration-Guide
- DPC presets are available now. Learn more: https://help.cytracom.com/hc/en-us/articles/42232146859149-Cytracom-ControlOne-Configure-DPC-process-presets-in-Device-Posture-Policies