Data Loss Prevention

 View Only
  • 1.  Restrict browser upload to certain folders.

    Posted May 31, 2017 02:18 AM

    Hello everyone,

     

    I have found this : https://www.symantec.com/connect/articles/dlp-policy-block-uploading-file-type-web-httphttps

    My question for you is, can i restrict users from being able to upload files via browser to certain webpages so that they can only upload these files from certain folders with read only access ? I want to be able to know if they data that is uploaded is legitimate and not tempered with.

     

    Thanks.



  • 2.  RE: Restrict browser upload to certain folders.

    Posted Jun 01, 2017 10:11 AM

    Not easily. You can enable Application File Access monitoring which will monitor the files that the browsers read/open from a specific directory (via the filters in System > Agent > Agent Configuration), but this can degrade performance of the browser and won't help if the source read-only folder is different for all users.

    Instead I'd recommend you index the document you want to ensure are not tampered with, with Indexed Document Matching (IDM) located in Manage > Data Profiles > Indexed Documents and set the threshold to 100% when referencing the index in policies. This will ensure the document 100% matches the index.