Data Loss Prevention

 View Only

Configuring a Tagging Response Rule for Box.com in DLP 14 

Aug 17, 2015 10:40 AM

Overview

New in DLP 14 is the ability to scan Box.com for confidential data that may be stored in an enterprise's Box.com envrionment (See https://www-secure.symantec.com/connect/blogs/configuring-boxcom-network-discover-scan-dlp-14 for more information.). Once a Network Discover Scan has been ryun and a policy is violated an autoamtica response rule can visually tag a file within Box.

This post will cover creating this response rule

Configuring the Response Rule

The first step to confiugre the response rule is to enable the response rules for scanning with the Discover Target.  If the checkbox is not enabled th response rule will not trigger.

box remediation.png

The response rule then needs to be created and also assigned to the policy in order for it to work.  Within the system add a new response rule and select the type "Automatic"

box response rule.png

Under the "Tag" section of this response rule, add whatever your company would like to display within Box.com

What this looks like

When an incident is generated within the system it will generate the response rule.  The incident report will look like:

incident report.png

The "tag" icon next to the Box.com icon shows the resposne rule has been applied.

The incident snapshot shows a more detailed view of this, including the response rule:

incident detail.png

And then within Box.com itself one can see the tag applied

visual tag.png

Statistics
0 Favorited
0 Views
0 Files
0 Shares
0 Downloads

Tags and Keywords

Related Entries and Links

No Related Resource entered.