McAfee Data Loss Prevention 9.2.2 Product Guide

McAfee Data Loss Prevention 9.2.2 Product Guide McAfee Data Loss Prevention 9.2.2 Product Guide

kb.mcafee.com
from kb.mcafee.com More from this publisher
12.07.2015 Views

13Managing McAfee DLP systemsManaging users and groups2 Click Details for the Administrator group.3 Edit the Group Name, Description, and Email address as required.4 From the Available Users menu, select the users to be added to the group.5 Click Apply.Activate a failover accountFailover accounts allow back door access to McAfee DLP Monitor and McAfee DLP Manager in case thesystem goes down.If the link between McAfee DLP Manager and McAfee DLP Monitor is open, the default failover accountcould be used to logon to the system, so failover accounts are disabled by default.Task1 Select one of these options:• In ePolicy Orchestrator, select Menu | Data Loss Prevention | DLP Sys Config | User Administration | FailoverAccount.• On your McAfee DLP appliance, select System | User Administration | Failover Account.2 Type in a Login ID for the failover account administrator.3 Type in a Password for the failover account administrator.4 Set Allow Login to On.5 Click Update.Customize logon settingsCustomize logon settings to discourage unauthorized logons. Lockout is disabled by default, but shouldbe enabled to prevent cracking attempts.Task1 Select one of these options:• In ePolicy Orchestrator, select Menu | Data Loss Prevention | DLP Sys Config | User Administration | UserSettings.• On your McAfee DLP appliance, select System | User Administration | User Settings.2 Select the Enable lockout box.3 Type in the Maximum number of failed attempts to be allowed.4 Set the Mode of disabling lockout to Automatic or Manual.5 Set the time frame (in minutes) to reset login for locked‐out users.6 Click Submit.Customize password settingsCustomize password settings to discourage unauthorized logins.Lockout is disabled by default, but should be enabled to prevent cracking attempts.274 McAfee Data Loss Prevention 9.2.2 Product Guide

Managing McAfee DLP systemsManaging users and groups 13Task1 Select one of these options:• In ePolicy Orchestrator, select Menu | Data Loss Prevention | DLP Sys Config | User Administration | UserSettings.• On your McAfee DLP appliance, select System | User Administration | User Settings.2 Type in the minimum and maximum length of characters allowed for passwords.3 Type in the minimum number of upper‐ and lowercase alphabetic, numeric and special charactersto be allowed.4 Click Submit.Managing user groupsMcAfee DLP systems user Role‐Based Access Control (RBAC) to match the rights of individual users totheir roles, which are defined by user group permissions.Administrators can utilize the default pre‐configured groups, edit them, or create new groups asneeded.Add user groupsAdd user groups to define user roles, and assign permissions to the groups that propagate to theusers who are group members.Permissions that are checked on the Task Permissions and Policy Permissions pages affect what is displayedin the user interface.Task1 Select one of these options:• In ePolicy Orchestrator, select Menu | Data Loss Prevention | DLP Sys Config | User Administration | Groups.• On your McAfee DLP appliance, select System | User Administration | Groups.2 From the Actions menu, select Create New Group.Alternatively, select Details and rename a pre‐configured group.3 Type in a Group Name and optional description.4 Type in an Email address for the group.5 From the Available Users box, select users and Add them to the Current Members box.Remove or Remove All users as needed.6 Click Apply.7 Click the Task Permissions tab, open each category, and select the checkboxes of task permissions tobe assigned to the group.View Dashboard permission is required to see the Incidents dashboard.8 Click Apply.9 Click the Policy Permissions tab, open the Policies category, and select the checkboxes of permissionsfor each policy to be assigned to the group.10 Click Apply.McAfee Data Loss Prevention 9.2.2 Product Guide 275

Managing <strong>McAfee</strong> DLP systemsManaging users and groups 13Task1 Select one of these options:• In ePolicy Orchestrator, select Menu | <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> | DLP Sys Config | User Administration | UserSettings.• On your <strong>McAfee</strong> DLP appliance, select System | User Administration | User Settings.2 Type in the minimum and maximum length of characters allowed for passwords.3 Type in the minimum number of upper‐ and lowercase alphabetic, numeric and special charactersto be allowed.4 Click Submit.Managing user groups<strong>McAfee</strong> DLP systems user Role‐Based Access Control (RBAC) to match the rights of individual users totheir roles, which are defined by user group permissions.Administrators can utilize the default pre‐configured groups, edit them, or create new groups asneeded.Add user groupsAdd user groups to define user roles, and assign permissions to the groups that propagate to theusers who are group members.Permissions that are checked on the Task Permissions and Policy Permissions pages affect what is displayedin the user interface.Task1 Select one of these options:• In ePolicy Orchestrator, select Menu | <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> | DLP Sys Config | User Administration | Groups.• On your <strong>McAfee</strong> DLP appliance, select System | User Administration | Groups.2 From the Actions menu, select Create New Group.Alternatively, select Details and rename a pre‐configured group.3 Type in a Group Name and optional description.4 Type in an Email address for the group.5 From the Available Users box, select users and Add them to the Current Members box.Remove or Remove All users as needed.6 Click Apply.7 Click the Task Permissions tab, open each category, and select the checkboxes of task permissions tobe assigned to the group.View Dashboard permission is required to see the Incidents dashboard.8 Click Apply.9 Click the Policy Permissions tab, open the Policies category, and select the checkboxes of permissionsfor each policy to be assigned to the group.10 Click Apply.<strong>McAfee</strong> <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> <strong>9.2.2</strong> <strong>Product</strong> <strong>Guide</strong> 275

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!