Consents
Overview
Consents are a core component of zero-trust web browsing. They give end-users the ability to override specific security decisions, reduce policy enforcement friction, and lower the volume of helpdesk tickets. Rather than treating every blocked action as a hard stop, consents enable a self-enforced security posture where users acknowledge and accept the risk before proceeding.
Consents are configured on two levels: a global configuration that sets the baseline for the whole tenant, and policy-based overrides that adjust that baseline for individual policies.
Block Page Consent Behavior
When a policy blocks an action, the end-user may be presented with a consent prompt on the block page, depending on which consent types are enabled.
Consent Logs
If the user chooses to proceed, DefensX logs the event as a consent decision. All consent activity is recorded and accessible under Logs → Consents, where each entry provides per-user visibility into individual risk behavior across the organization.
Global Consent Configuration
To enable or disable consents, navigate to Policies → Consents and set the desired consent types based on the organization’s risk tolerance and policy requirements.
Settings on this page are the baseline for the entire tenant: they apply to every policy and every user, unless a policy-based override changes them.
The available consent options are:
-
Disabled: The consent option is not offered.
-
Enabled: Users can accept the risk and proceed.
-
Enabled only Low-Risk Sites: Users can accept the risk and proceed only when the risk score is Low.
Policy-Based Consent Overrides
Consent Overrides allow admins to configure policy-based exceptions for specific user groups.
For example, an organization may enforce stricter global consent settings while allowing selected groups to see consent options under specific policies.
Use Consent Overrides when different teams, roles, or user groups require consent behavior that differs from the global configuration.
To configure an override, open the policy you want to change, enable the Consent Overrides toggle, and set a Policy Value for the relevant consent types.
Web Filters:
Credential Filters:
File Filters:
Summary
Consents give organizations a flexible way to balance security enforcement with end-user autonomy. By selectively enabling consent types and monitoring activity through Consent Logs, admins gain both control and visibility over how users interact with security decisions in their day-to-day browsing.