Table of Contents You are at the beginning of the document Go to the next page

Table of Contents

Overview
Forcepoint DLP basics
Forcepoint DLP appliances
Forcepoint DLP databases
What can I protect?
Data classification
Managing Forcepoint DLP
DLP in Forcepoint Web Security and Forcepoint Email Security
Navigating the System
Main options
Settings options
Deploy button
Global and status icons
Initial Setup
Entering a subscription key
Defining general system settings and notifications
Configuring system modules
Configuring the protector
Viewing Status
Viewing the Dashboard
Monitoring system health
Viewing endpoint status
Changing table properties
Viewing mobile device status
Applying column filters
Viewing deployment status
Viewing Incidents and Reports
The report catalog
Editing a report
General tab
Filter tab
Table Properties tab
Scheduling tasks
Scheduling a new task
Viewing the incident list
Previewing incidents
Managing incident workflow
Assigning incidents
Locking and unlocking incidents
Changing incident status
Changing incident severity
Ignoring incidents
Tagging incidents
Adding comments
Downloading incidents
Deleting incidents
Remediating incidents
Releasing incidents
Running remediation scripts on incidents
Escalating incidents
Emailing incidents to the manager of the person who generated the incident
Email incidents to another
Managing incident reports
Editing report filters
Editing table properties
Applying a column filter
Saving reports
Grouping incidents
Deleting incidents
Printing or exporting incidents to PDF
Tuning policies
Excluding source from rules
Disabling policies
Disabling rules
Data Loss Prevention reports
DLP dashboard
Top violated policies
User risk summary (all incidents)
User risk summary (data theft risk indicators)
Incident risk ranking
What factors affect risk scoring?
My cases
Violations by severity and action
Top sources and destinations
Incident trends
Incident status
Incidents by geographical location
Mobile devices reports
Top violated mobile policies
Top synced messages
Mobile PII violations
Mobile credit card violations
Discovery reports
Discovery dashboard
Sensitive data reports
Policies Overview
What's in a policy?
Viewing policies
Editing a policy
Update rules of current policy
Update exceptions of current rule
Update rules of multiple policies
Update exceptions of multiple rules
Delete policies
Policy levels
Adding or editing policy level
Deleting a policy level
Rearranging policy levels
Selecting items to include or exclude in a policy
Configuring the Email DLP Policy
Configuring outbound and inbound email DLP attributes
Defining email DLP policy owners
Identifying email DLP trusted domains
Configuring the Web DLP Policy
Configuring web DLP policy attributes
Selecting web DLP policy destinations
Defining web DLP policy owners
Configuring the Mobile DLP Policy
Configuring mobile DLP attributes
Mobile DLP attribute properties
Defining policy owners
Using Predefined DLP and Discovery Policies
Adding a predefined DLP or discovery policy
Welcome
Regions
Industries
Finish
Policy list
Changing the selected DLP or discovery policies
Changing policy industry or region settings
Creating Custom DLP Policies
Custom Policy Wizard - General
Custom Policy Wizard - Condition
Viewing or editing conditions and thresholds
Custom Policy Wizard - Severity and Action
Custom Policy Wizard - Source
Custom Policy Wizard - Destination
Rule Wizard - Finish
Selecting a content classifier
Patterns & Phrases
Properties tab
File Properties
Properties tab
Fingerprint
Properties tab
Machine Learning
Transaction Size
Number of Email Attachments
Number of Email Destinations
Managing rules
Managing exceptions
Rearranging exceptions
Adding a new exception
Exception Wizard - General
Exception Wizard - Properties
Exception Wizard - Severity & Action
Exception Wizard - Finish
Classifying Content
Manually deleting fingerprinting classifiers
Details pane
Machine learning details
Patterns & Phrases
Adding or editing a regular expression classifier
Adding a key phrase classifier
Adding a dictionary classifier
File Labeling
Adding or editing a file label
File properties
Adding a file-type classifier
Adding a file-name classifier
Adding a file-size classifier
Scripts
Editing a predefined script
File fingerprinting
File System Fingerprinting Wizard - General
File System Fingerprinting Wizard - Root Folder
File System Fingerprinting Wizard - Scanned Files
File System Fingerprinting Wizard - Scheduler
File System Fingerprinting Wizard - File Filtering
File System Fingerprinting Wizard - Export
File System Fingerprinting Wizard - Finish
SharePoint Fingerprinting Wizard - General
SharePoint Fingerprinting Wizard - Site Root
SharePoint Fingerprinting Wizard - Scanned Documents
SharePoint Fingerprinting Wizard - Scheduler
SharePoint Fingerprinting Wizard - File Filtering
SharePoint Fingerprinting Wizard - Export
SharePoint Fingerprinting Wizard - Finish
Domino Fingerprinting Wizard - General
Domino Fingerprinting Wizard - Server
Domino Fingerprinting Wizard - Scanned Documents
Domino Fingerprinting Wizard - Scheduler
Domino Fingerprinting Wizard - Document Filtering
Domino Fingerprinting Wizard - Attachment Filtering
Domino Fingerprinting Wizard - Export
Domino Fingerprinting Wizard - Finish
Database fingerprinting
Connecting to data sources
Preparing for database fingerprinting
Creating a Data Source Name (DSN) in Windows
Creating a validation script
Selecting the data to fingerprint
How matches are counted
Creating a database fingerprint classifier
Database Fingerprinting Wizard - General
Database Fingerprinting Wizard - Data Source/Site
Database table
Salesforce site
CSV file
Database Fingerprinting Wizard - Field Selection
Salesforce site
Database Fingerprinting Wizard - Scheduler
Database Fingerprinting Wizard - Fingerprinting Type
Database Fingerprinting Wizard - Export
Database Fingerprinting Wizard - Finish
Imported fingerprinting
Import Fingerprint Wizard - Import Source
Import Fingerprint Wizard - Properties
Import Fingerprint Wizard - Scheduler
Import Fingerprint Wizard - Finish
Machine learning
Machine Learning Wizard - General
Machine Learning Wizard - Credentials
Machine Learning Wizard - Scanned Folders
Machine Learning Wizard - Scheduler
Machine Learning Wizard - Finish
Creating a rule from a content classifier
Defining Resources
User directory entries
Custom user directory groups
Custom users
Custom computers
Networks
Domains
URL categories
Endpoint Applications
Business Units
Endpoint Devices
Endpoint Applications
Endpoint Application Groups
Applying a column filter
Adding custom application groups
Endpoint Printers
Remediation
Action Plans
Adding or editing an action plan
Possible actions for an action plan
Remediation scripts
Adding a new remediation script
Notifications
Adding a new message
Creating Discovery Policies
Creating a discovery policy
Scheduling the discovery scan
Performing file system discovery
Performing SharePoint discovery
Performing Domino discovery
Performing Box discovery
Performing database discovery
Performing Exchange discovery
Performing Outlook PST discovery
Performing endpoint discovery
Viewing discovery status
Viewing discovery results
Updating discovery
Configuring discovery incidents
Copying or moving discovered files
Preparing and running the remediation scripts
Scheduling Discovery Tasks
Sorting and filtering tasks
Manually deleting discovery tasks
Scheduling network discovery tasks
File System tasks
File System Discovery Task Wizard - Networks
File System Discovery Task Wizard - Scanned Folders
File System Discovery Task Wizard - Scheduler
File System Discovery Task Wizard - Policies
File System Discovery Task Wizard - File Filtering
File System Discovery Task Wizard - Advanced
File System Discovery Task Wizard - Finish
SharePoint tasks
SharePoint Discovery Task Wizard - Site Root
SharePoint Discovery Task Wizard - Scanned Documents
SharePoint Discovery Task Wizard - Scheduler
SharePoint Discovery Task Wizard - Policies
SharePoint Discovery Task Wizard - File Filtering
SharePoint Discovery Task Wizard - Advanced
SharePoint Discovery Task Wizard - Finish
Box tasks
Box Discovery Task Wizard - Permissions
Box Discovery Task Wizard - Scanned Accounts
Box Discovery Task Wizard - Scheduler
Box Discovery Task Wizard - Policies
Box Discovery Task Wizard - File Filtering
Box Discovery Task Wizard - Advanced
Box Discovery Task Wizard - Finish
Database tasks
Database Discovery Task Wizard - General
Database Discovery Task Wizard - Data Source Name
Database Discovery Task Wizard - Scheduler
Database Discovery Task Wizard - Policies
Database Discovery Task Wizard - Table Filtering
Database Discovery Task Wizard - Advanced
Database Discovery Task Wizard - Finish
Exchange tasks
Exchange Discovery Task Wizard - Exchange Servers (online)
Exchange Discovery Task Wizard - Mailboxes
Exchange Discovery Task Wizard - Scheduler
Exchange Discovery Task Wizard - Policies
Exchange Discovery Task Wizard - Filtering
Exchange Discovery Task Wizard - Advanced
Exchange Discovery Task Wizard - Finish
Outlook PST tasks
Outlook Discovery Task Wizard - Scanned Folder
Outlook Discovery Task Wizard - Scheduler
Outlook Task Discovery Wizard - Policies
Outlook Discovery Task Wizard - Filtering
Outlook Discovery Task Wizard - Advanced
Outlook Discovery Task Wizard - Finish
Domino tasks
Domino Discovery Task Wizard - General
Domino Discovery Task Wizard - Server
Domino Discovery Task Wizard - Scanned Documents
Domino Discovery Task Wizard - Scheduler
Domino Discovery Task Wizard - Policies
Domino Discovery Task Wizard - Document Filtering
Domino Discovery Task Wizard - Attachment Filtering
Domino Discovery Task Wizard - Advanced
Domino Discovery Task Wizard - Finish
Emailing discovery task status reports
Configuring cloud discovery scans
Adding or editing a cloud discovery scan
Scheduling endpoint discovery tasks
Endpoint Discovery Task Wizard - Endpoints
Endpoint Discovery Task Wizard - Scheduler
Endpoint Discovery Task Wizard - Policies
Endpoint Discovery Task Wizard - File Filtering
Endpoint Discovery Task Wizard - Advanced
Endpoint Discovery Task Wizard - Finish
Viewing Forcepoint DLP Logs
The Forcepoint DLP traffic log
The Forcepoint DLP system log
The Forcepoint DLP audit log
General System Settings
Setting reporting preferences
Setting general reporting preferences
Setting preferences for data loss prevention reports
Setting preferences for Incident Risk Ranking reports
Setting preferences for discovery reports
Setting preferences for mobile incident reports
Backing up the system
Scheduling backups
Backup folder contents
Restoring the system
Exporting incidents to a file
Configuring endpoint settings
Endpoint settings: the Email Domains tab
Endpoint settings: the Detection tab
Endpoint settings: the Disk Space tab
Endpoint settings: the Advanced tab
Mobile device settings
Remediation
Mail servers
Alerts
Setting up email properties
Archive storage
Services
Configuring Linking Service
Configuring Microsoft RMS
Configuring the DLP Cloud Service
Configuring file labeling
Configuring Boldon James classifier
Configuring Microsoft Information Protection
Risk-Adaptive Protection
Configuring Risk-Adaptive Protection
Analytics
Adding a high-risk resource
User directory settings
Adding or editing user directory server information
Rearranging user directory servers
Importing users
Importing user entries from a CSV file
Archiving incident partitions
Remote SQL Server machines
Archiving a partition
Restoring a partition
Deleting a partition
Archive threshold
Updating predefined policies and classifiers
Viewing your update history
Installing policy updates
Restoring policies to a previous version
Entering subscription settings
Subscription alerts
Configuring Authorization
Defining administrators
Viewing administrators
Editing administrators
Select Incidents
Select Policies
Select Business Units
Working with roles
Adding a new role
Customizing your own administrator account settings
Managing Forcepoint DLP System Modules
Adding Forcepoint DLP system modules
Configuring Forcepoint DLP system modules
Configuring the Forcepoint DLP management server
Configuring a supplemental Forcepoint DLP server
Configuring the fingerprint repository
Configuring the endpoint server
Configuring the crawler
Configuring the forensics repository
Configuring the policy engine
Configuring the OCR server
Adding or editing an OCR server
Configuring the protector
Edit Protector: General tab
Edit Protector: Networking tab
Edit Protector: Local Networks tab
Edit Protector: Services tab
Configuring ICAP
Edit ICAP: General tab
Edit ICAP: HTTP tab
Edit ICAP: FTP tab
Configuring the Web Content Gateway module
Edit Content Gateway: General tab
Edit Content Gateway: HTTP/HTTPS tab
Edit Content Gateway: FTP tab
Configuring the Forcepoint Email Security module
Configuring Forcepoint DLP Email Gateway
Configuring the integration agent
Configuring the mobile agent
Edit Mobile Agent: General tab
Edit Mobile Agent: Connection tab
Edit Mobile Agent: Analysis tab
Configuring the analytics engine
Configuring protector services
Protector: Configuring SMTP
Protector SMTP service: Traffic Filter tab
Protector SMTP service: SMTP Filter tab
Protector SMTP service: Mail Transfer Agent (MTA) tab
Protector SMTP service: Encryption & Bypass tab
Protector: Configuring HTTP
Protector HTTP service: Traffic Filter tab
Protector HTTP service: HTTP Filter tab
Protector HTTP service: Advanced tab
Protector: Configuring FTP
Protector FTP service: Traffic Filter tab
Protector: Configuring plain text
Protector plain text service: Traffic Filter tab
Protector plain text service: Advanced tab
Removing Forcepoint DLP modules
Balancing the load
Defining load balancing distribution
Configuring Endpoint Deployment
Viewing and managing endpoint profiles
Adding an endpoint profile
Endpoint profile: Servers tab
Endpoint profile: Properties tab
Endpoint profile: Encryption tab
Configuring encryption for removable media
Backing up encryption keys
Restoring encryption keys
Selecting endpoint destination channels to monitor
Bypassing endpoint clients
Rearranging and deploying endpoint profiles
Using the endpoint client software
Troubleshooting
Discovery
Endpoint
Endpoint Status page does not show user name
Endpoint system icon does not display on the client computer
Failed to deploy endpoint configuration
Fingerprinting
File has no fingerprint
Validation script timeout
No connectivity to fingerprint database
Other fingerprinting errors
Incidents
Cannot clear ignored incidents from the Discovery Dashboard
Traffic log shows audited events, but no incident is created
Incident export lacks Discovery incidents
NLP policy isn't being triggered, and events are undetected
Miscellaneous
Failed user directory import
Wrong default email address displays
Error 400, bad request
Invalid Monitoring Policy XML File
Performance
Linking Service
Linking Service stops responding
System alerts that Linking Service is not accessible
Buttons in Forcepoint Security Manager tray return error
Online Help
Technical Support
How Do I...
Archive my incident data?
Configure a DLP policy?
Define an exception?
Filter incidents?
Fingerprint data?
Ignore sections of my document when fingerprinting?
Fingerprint specific field combinations in a database table?
Mitigate false positives in pattern or dictionary phrases?
Move from monitor to protect?
Glossary

Table of Contents You are at the beginning of the document Go to the next page
Copyright 2020 Forcepoint. All rights reserved.