The only place to create the location policy is through the endpoint
security wizard...( well, the only way I found anyway )

Tthat's pretty dumb from the perspective that many of us have opted to
NOT use endpoint security and therefor more or less disregards those

Still, just wanting to verify, is this the proper way to define the
location policy since the option clearly IS there ?

Also, wil this remain active even though the "eval" part of endpoint.s
runs out ?