Data Loss Prevention

 View Only
  • 1.  DLP Discover

    Posted May 07, 2015 04:19 AM

    Hi All,

     

    Does anyone have an SOP document( Standard Operating Procedure) or a step by step guide to Configure DLP discover on Symantec V 10?

     

    Thanks,

    Avinash



  • 2.  RE: DLP Discover

    Posted Jul 01, 2015 11:45 AM

    Hello,

     

    First of all version 10 is a very old product and should be upgraded if possible.  If I remember correctly v10 was supported on Windows Server 2003 ends this month (July 15 if I remember correctly) so it should be time to move (Drop me a note with information on how to do that).

    Secondly I'll share how I start an implementation of Network Discover:

    I like to start with the public drive or public folder, every company has them, the place where everyone dumps all the data, etc. And start the scan on that folder.... At my company it is the G: drive \\server\public\ is the share name.  I work with backup team or server team to figure out any pauses that need to be done for processing.

    Once I have that Target configured I get a hold of the Network Team or the Server Team and start a test scan to monitor traffic, usage, metrics, etc. on that server.  If everything is working out then I will continue to let the scan run as is with the various pauses, etc. built in.

    Then it's time to start reviewing the incidents and make changes or resolve the incidents, etc. for that Public folder.

    Once that public share is done, it's time to tackle the departmental shares.

     

    Does this make sense?  We can talk more offline.