12.07.2015 Views

McAfee Data Loss Prevention 9.2.2 Product Guide

McAfee Data Loss Prevention 9.2.2 Product Guide

McAfee Data Loss Prevention 9.2.2 Product Guide

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Managing <strong>McAfee</strong> DLP systemsManaging users and groups 13Generate audit log reportsGenerate audit log reports to save them for future reference. Reports are saved in CSV(comma‐separated values) format.Task1 Select one of these options:• In ePolicy Orchestrator, select Menu | <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> | DLP Sys Config | User Administration | AuditLogs.• On your <strong>McAfee</strong> DLP appliance, select System | User Administration | Audit Logs.2 Select Actions | Export as CSV.3 Open or save the log.If Microsoft Excel is installed and you select Open, the report will open in spreadsheet format.Filter audit logsFilter audit logs to troubleshoot systems that have been changed, or discover patterns in usage.Click on the Session ID link of a user to see what actions the user has taken.Task1 Select one of these options:• In ePolicy Orchestrator, select Menu | <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> | DLP Sys Config | User Administration | AuditLogs.• On your <strong>McAfee</strong> DLP appliance, select System | User Administration | Audit Logs.2 Determine which cell in the audit log table will act as the primary key.3 Click the cell to automatically create a filter in the Filter by pane.The dashboard data immediately changes to reflect the selection.4 Click Clear All in the Filter by pane before creating another filter.Sort audit logsSort audit logs to rearrange the entries so that you can discover usage patterns or troubleshoot thesystem if it has been reconfigured.Task1 Select one of these options:• In ePolicy Orchestrator, select Menu | <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> | DLP Sys Config | User Administration | AuditLogs.• On your <strong>McAfee</strong> DLP appliance, select System | User Administration | Audit Logs.2 Determine which column in the audit log table will act as the primary key.3 Click a column header to rearrange the log entries.For example, you might select the Timestamp column header to find out what actions were taken in aspecific time frame, or on the User column to find out who took those actions.<strong>McAfee</strong> <strong>Data</strong> <strong>Loss</strong> <strong>Prevention</strong> <strong>9.2.2</strong> <strong>Product</strong> <strong>Guide</strong> 279

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!