Events
19 min
Events drive Secure Work from Home in terms of actions taken, supervisor feedback, and historical reporting and analysis. As described earlier, Event Sources monitor the agent's environment according to the agent's assigned Feature Template and, if the appropriate situation is encountered, one of the appropriate Events below is generated and any Event Actions defined for that event are taken. Note that the Secure Work from Home client application must be running for these events to be generated.
AuthenticationFailureDetected
- Generated when initial face authentication fails.
- Typical Event Actions: insertToDB, lockScreen
AuthenticationSucceeded
- Generated when initial face authentication succeeds.
- Typical Event Actions: insertToDB
AuthenticationFaceMismatch
- Generated when face authentication and background authentication both fail
- Typical Event Actions: insertToDB, lockScreen,
BackgroundAuthenticationFailureDetected
- Generated when on-going background face authentication fails.
- Typical Event Actions: insertToDB, lockScreen
BackgroundAuthenticationSucceeded
- Generated each time the on-going background face authentication succeeds.
- Typical Event Actions: insertToDB
BlacklistedKeyStrokeDetected
- Generated each time agent selects Ctrl-C (copy) or PrintScreen.
- Typical Event Actions: insertToDB
CameraBlockDetected
- Generated when a USB camera is detached.
- No Feature Settings. Always enabled.
- Typical Event Actions: insertToDB
ExternalMonitorDetected
- Generated when an external monitor is connected to the agent's system.
- Typical Event Actions: insertToDB
GadgetDetected
- Generated when some or all of a gadget (e.g., a mobile phone) is detected within the camera's view.
- Typical Event Actions: insertToDB, lockScreen
LivenessFailureDetected
- Generated when the system detects that it is not looking at a live person's face (i.e., it is a picture).
- Typical Event Actions: insertToDB, lockScreen
MultipleFaceDetected
- Generated when more than 1 face is detected in the camera's view.
- Typical Event Actions: insertToDB, lockScreen
NetworkConnectionDetected
- Generated whenever the agent's computer reconnects to the network after being disconnected.
- Typical Event Actions: insertToDB
NetworkDisconnectionDetected
- Generated whenever the agent's computer disconnects from the network after being connected.
- Typical Event Actions: insertToDB
NoFaceDetected
- Generated after a successful face authentication when no human face is detected in the camera's view.
- Typical Event Actions: insertToDB, lockScreen
RemovableDriveDetected
- Generated when a removable storage device (e.g., USB drive, mobile phone in storage mode) is initial connected to an agent's system.
- Typical Event Actions: insertToDB
SCREENBLOCK
- Generated when a supervisor raises a screen block on an agent.
- Typical Event Actions: insertToDB
UnauthorizedProcessDetected
- Generated if an unauthorized process is detected (and killed) by the system.
- See Event Sources in Remote Security Rules and MONITORPROCESSES in Event Sources -- processes to be killed are configured in "Blacklist"
UNBLOCKSCREEN
- Generated when a supervisor raises a screen unblock for an agent.
- Typical Event Actions: insertToDB