Limitations of Isolation
- You can isolate either destinations or threat categories in a Secure Access policy Internet access rule. You cannot specify both in the same rule. You can create a separate rule for each type.
- Only top-level page requests can be isolated and pages can either be entirely isolated (top-level request and resource requests) or not.
- Isolation only functions for an entire application, not for specific actions such as uploads or posts. When an application is isolated, it can no longer be blocked, allowed, or warned, even at the action level. For example, if one rule in a policy is configured to block Box Cloud Storage uploads, but another rule is configured to isolate Box Cloud Storage for the same identities, uploads for Box Cloud Storage will not be blocked.
- 5 GB is the maximum file size that can be downloaded through the isolation environment when RBI is enforced on a browser connection.
- If your Secure Access package expires or downgrades, any rule with Isolate will no longer work as expected. You should review and update the Action setting for these rules as needed.