12.07.2015 Views

McAfee Data Loss Prevention 9.2.2 Product Guide

McAfee Data Loss Prevention 9.2.2 Product Guide

McAfee Data Loss Prevention 9.2.2 Product Guide

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

5Integrating5<strong>McAfee</strong> DLP Endpoint<strong>McAfee</strong> DLP Endpoint is integrated into the network product suite through the ePolicy Orchestrator or<strong>McAfee</strong> DLP Manager management console. <strong>McAfee</strong> DLP Endpoint adds protection for <strong>Data</strong>‐in‐Use tothe product suite by monitoring and managing devices and user activities at network endpoints.What is <strong>McAfee</strong> DLP Endpoint?<strong>McAfee</strong> DLP Endpoint is an agent solution that monitors enterprise users’ actions through thecomputers and devices they use in the course of their work. It prevents compromise of sensitive dataat a variety of network endpoints — not only on computers, but on removable media, printers,clipboards, screens, windows, and defined shares and paths. Through <strong>McAfee</strong> DLP Manager, significantevents that occur at those endpoints can be delivered to the unified product suite, integrated into theincident workflow, and resolved with appropriate actions.The software is managed by ePolicy Orchestrator and deployed through a DLP client of <strong>McAfee</strong> Agent,which distributes policies to endpoints and enforces them by generating and storing significant eventsin an evidence folder. After the events are accessed by <strong>McAfee</strong> DLP Manager, they are displayed on theePolicy Orchestrator and <strong>McAfee</strong> DLP Manager <strong>Data</strong>‐in‐Use dashboards.ContentsHow <strong>McAfee</strong> DLP Endpoint works with <strong>McAfee</strong> DLP ManagerTypical scenariosViewing eventsConfiguring <strong>McAfee</strong> DLP Endpoint in <strong>McAfee</strong> DLP ManagerMaintaining compatibility with installed agentsUnified policies and <strong>McAfee</strong> DLP EndpointTagging and trackingControlling devicesHow <strong>McAfee</strong> DLP Endpoint works with <strong>McAfee</strong> DLP ManagerIntegration of <strong>McAfee</strong> DLP Endpoint into the network product suite begins when a trust relationship isestablished between ePolicy Orchestrator and <strong>McAfee</strong> DLP Manager. After credentials are used toauthenticate the connection, ePolicy Orchestrator extensions for <strong>McAfee</strong> DLP Endpoint and the networkproduct suite cooperate to allow communication with <strong>McAfee</strong> Agent (through a client plugin).When the unified policy is distributed through ePolicy Orchestrator to endpoints and a match isdetected, an event is generated at the endpoint. It is encrypted, then delivered through the <strong>McAfee</strong>DLP client to an evidence folder that is usually located on ePolicy Orchestrator. At pre‐defined posting<strong>McAfee</strong> <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> <strong>9.2.2</strong> <strong>Product</strong> <strong>Guide</strong> 129

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!