12.07.2015 Views

McAfee Data Loss Prevention 9.2.2 Product Guide

McAfee Data Loss Prevention 9.2.2 Product Guide

McAfee Data Loss Prevention 9.2.2 Product Guide

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

5Integrating <strong>McAfee</strong> DLP EndpointTagging and trackingTask1 Select one of these options:• In ePolicy Orchestrator, select Menu | <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> | DLP Policies.• On your <strong>McAfee</strong> DLP appliance, select Policies.2 Add a new policy and rule, or open existing ones.Make sure the policy is active and the Inherit Policy State state of the rule is set to Enabled.The Edit Rule page appears.3 Open the Endpoint category and select Network Path or Tag ‐ Location Path, then click ?.The LDAP server menu appears.4 Select the directory server, click Find on the AD pop‐up, and select a network location.5 Click Apply.6 Click the Action tab, Add Action, and select an action from the <strong>Data</strong>‐in‐Use list.In this case, you might want to block the documents, whether they are found online or offline (incomputers that are on‐site, or disconnected from the network), and notify a manager.7 Click Apply, then Save.Protect data using a location-based tagYou can use location‐based tags to ensure the protection of privileged information on a local share.If you use a location tag to protect a location, you must define two Endpoint parameters: the tag and thelocation path.For example, a manufacturing organization might have process engineers working on designdocuments on computers that are accessed through a share on a Microsoft Windows server. If userswho attempt to access and email those documents are not authorized members of that group, theirattempts would be tagged and might be blocked, reported to a manager, or protected frommodification.Task1 Select one of these options:• In ePolicy Orchestrator, select Menu | <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> | DLP Policies.• On your <strong>McAfee</strong> DLP appliance, select Policies.2 Click a policy and a rule, or create new ones.Make sure the policy is active and the Inherit Policy State state of the rule is set to Enabled.3 On the Add Rule or Edit Rule page, select User Groups from the Source/Destination menu, select sender is noneof and click ?.The directory server pop‐up appears.4 Select a directory server, click Find from the AD pop‐up, and click the process engineers' user group.5 Click Apply.158 <strong>McAfee</strong> <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> <strong>9.2.2</strong> <strong>Product</strong> <strong>Guide</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!