12.07.2015 Views

McAfee Data Loss Prevention 9.2.2 Product Guide

McAfee Data Loss Prevention 9.2.2 Product Guide

McAfee Data Loss Prevention 9.2.2 Product Guide

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

13Managing <strong>McAfee</strong> DLP systemsAdding servers to <strong>McAfee</strong> DLP systemsUse the filtering process to locate user attributes in dashboard results.Figure 13-1 Filter for user attributesBefore filtering, add columns to the dashboard to display the user attribute results you are looking for.Task1 Select one of these options:• In ePolicy Orchestrator, select Menu | <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> | DLP Reporting | Incidents.• On your <strong>McAfee</strong> DLP appliance, select Incidents.2 At the top of the Incidents page, select a vector: <strong>Data</strong>‐in‐Motion, <strong>Data</strong>‐at‐Rest, or <strong>Data</strong>‐in‐Use.These dashboards display incidents or events from <strong>McAfee</strong> DLP Monitor, <strong>McAfee</strong> DLP Discover, or<strong>McAfee</strong> DLP Endpoint, respectively.3 In the Filter by pane, select a time frame.4 Click + to add a filter.5 From the filter list, select a user attribute from the list.If customized attributes are used on the directory server, they must be mapped to those in this list.6 Select a comparator, such as equals or not equal, and enter required information in the value field.7 Click Apply.LDAP columns available for displayThe columns available reflect the scope of data available. Not all of these parameters can be used forsearching captured data or implementing rules. In an ad hoc search, some Active Directory attributes(user names, companies, email, managers, titles) are not displayed.There are many more columns available than there are searchable network elements — many wereadded to the <strong>McAfee</strong> DLP product suite interfaces to support <strong>McAfee</strong> DLP Endpoint. You can use themto display additional attributes that are reported, but not displayed by default.The following columns are available.• User Custom • UserManager• UserCity • UserName• UserCompany • UserGroup268 <strong>McAfee</strong> <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> <strong>9.2.2</strong> <strong>Product</strong> <strong>Guide</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!