Data Loss Prevention

 View Only
  • 1.  Reporting of out of domain DLP Agents(mobile users) to the Enforce Server

    Posted Jan 10, 2014 01:03 AM

    Hi,

    Is there a way to configure Symantec DLP agent so that it can report to the management console even when it is out of the company's private network.

    For example: Agent on Laptop of users working from home will report to the server only when the user comes in the company's private network. I want to know whether we can configure the agent so that whenever it gets internet connectivity(even at remote locations) it should send immediate alerts on the management console.

    Can anybody help me with its solution ?



  • 2.  RE: Reporting of out of domain DLP Agents(mobile users) to the Enforce Server

    Broadcom Employee
    Posted Jan 10, 2014 01:19 AM

    why do you want to have this condfiguration?

    is it about incidents? if yes, even if the agents are not connected while outside the network the incidents are stored locally, when it connects to the server the incidents are sent to detection/prevention server.



  • 3.  RE: Reporting of out of domain DLP Agents(mobile users) to the Enforce Server

    Posted Jan 10, 2014 01:40 AM

    Appreciate your reply pete_4u2002   

    I want to know how to configure the DLP agent for instant reporting whenever it is connected to the internet 

    Example:

    A user is working from home. He violates a policy on 10th Jan 2014 at 11 am. He reports to office on 10th Feb 2014. So there is a gap of 1 month. In this scenario, the agent will report to the server after 1 month when the user goes to the office.

    My concern is, even if users are moving on field, working from home etc. the agent should be in sync with the server as soon as the machine is connected to the internet & alerts should flash on the console in minimum time frame. 

    Is it possible to configure ?



  • 4.  RE: Reporting of out of domain DLP Agents(mobile users) to the Enforce Server

    Broadcom Employee
    Posted Jan 10, 2014 01:57 AM

    you can have internet facing server in that case



  • 5.  RE: Reporting of out of domain DLP Agents(mobile users) to the Enforce Server

    Posted Jan 10, 2014 02:48 AM

    These servers should be inside the proxy or outside the proxy ?



  • 6.  RE: Reporting of out of domain DLP Agents(mobile users) to the Enforce Server

    Broadcom Employee
    Posted Jan 10, 2014 03:30 AM

    Basically client should be able to communicate. DMZ would be ideal.



  • 7.  RE: Reporting of out of domain DLP Agents(mobile users) to the Enforce Server

    Posted Jan 10, 2014 03:33 AM

    Alright. Thanks.
    Let me check the feasibility to implement this solution with my team.