Video Screencast Help

DLP detects anything opened in Chrome as data loss

Created: 15 Jul 2014 • Updated: 16 Jul 2014 | 2 comments
IT_'s picture

i have tons of false positive. If a PDF is opened in Chrome, pop up appears on my users. When a PDF is open and download, pop up alerts appear too.

I wish to only monitor ONLY uploads and NOT downloads. What is wrong in the policy setup?

Operating Systems:
Discussion Filed Under:

Comments 2 CommentsJump to latest comment

IT_'s picture

2 work arounds that are similiar do not work.

i added HTTP and HTTPS condition to either the detection rule or the response, both added as "AND", the policy will stop working and attachment will passed through to Gmail.

I have to remove the HTTP/HTTPS and back to false positive. Are there something else that was not purchased to work with DLP so that the PC's http or https access can be detected with DLP?

haroldvm89's picture

I have duplicates incidents with Chrome. I mean, I can detect and block stuff, but most of the time get this duplicate incidents.

Seems like it's not fully compatible with Chrome yet, not even in version 12.5