12.07.2015 Views

McAfee Data Loss Prevention 9.2.2 Product Guide

McAfee Data Loss Prevention 9.2.2 Product Guide

McAfee Data Loss Prevention 9.2.2 Product Guide

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

5Integrating <strong>McAfee</strong> DLP EndpointTypical scenariosintervals, <strong>McAfee</strong> DLP Manager gets events from the evidence folder and displays the objects andattributes (including paths) found on the <strong>Data</strong>‐in‐Use dashboards. The columns of the display containspecific event attributes and can be rearranged to display only the most significant information.<strong>McAfee</strong> DLP Endpoint must be registered to <strong>McAfee</strong> DLP Manager through ePolicy Orchestrator, and auser account must be created to access the evidence folder.Any attribute of any event might be used to create a new rule with actions that might find similarevents in the future. When the rules are redefined, they are transferred through the unified policy tothe global policy, and the updates are then deployed to endpoints through a secure channelmaintained by the <strong>McAfee</strong> DLP client.Location of <strong>McAfee</strong> DLP Endpoint featuresIn <strong>McAfee</strong> DLP Manager, <strong>McAfee</strong> DLP Endpoint functionality is located either on the system EndpointConfiguration page, or on the rules pages.Endpoint configuration in <strong>McAfee</strong> DLP Manager includes tools for setting up the system, controllingdevices, and managing application tagging.Rules pages contain an Endpoint category that has parameters that can be added to every rule in thenetwork product suite. After they are configured, the rules are deployed to the network extension,which integrates the global policy into the unified policy design.Endpoint parameters in unified rulesBecause unified policy rules can contain parameters that are deployed separately by all of the <strong>McAfee</strong>DLP, a single unified rule can be used to monitor traffic, scan repositories, and manage data atendpoints in the same operation. For example, a Payment Card Industry policy that has been deployedthrough <strong>McAfee</strong> DLP Manager can be used to identify privacy violations in network traffic, in datarepositories, and on endpoints.Multiple endpoints can be added to a rule as a group by creating a template, then selecting it from themenu before saving the rule. Adding frequently used collections of endpoints to a rule increases itsefficiency and scope.Typical scenariosWhen used with <strong>McAfee</strong> DLP Manager, <strong>McAfee</strong> DLP Endpoint can be used to control data at networkendpoints. Some typical use cases follow.ContentsKeep data from being copied to removable mediaKeep data from being cut and pastedProtect data with Document Scan ScopeKeep data from being printed to fileProtect data from screen captureProtect data by identifying text in title barsKeep data from being printed on network printersCreate user list templates to control accessKeep data from being printed on local printersProtect data using specific encryption types130 <strong>McAfee</strong> <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> <strong>9.2.2</strong> <strong>Product</strong> <strong>Guide</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!