Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Working With Websense Data Security
Working With Websense Data Security
Help | Content Gateway | Version 7.8.x
Related topics:
 
Websense Content Gateway works together with Websense Data Security components to support:
*
*
Threats dashboard with Web Security Gateway
When Content Gateway is deployed with Web Security Gateway, several Data Security components are installed on the Content Gateway and TRITON management servers to support the Web Security Threats dashboard (see Web Security Help). Components include the Data Security Policy Engine (on the Content Gateway machine), and the Data Security Forensics Repository (on the TRITON management server).
Content Gateway registers with these components when it's first configured and then checks registration status upon restart, automatically re-registering if necessary.
Web DLP and the Threats dashboard with Web Security Gateway Anywhere
When Content Gateway is deployed with Web Security Gateway Anywhere (or with Web Security Gateway and a full Data Security subscription), capabilities include forensics data in the Threats dashboard and data loss prevention (DLP) over Web channels such as HTTP, HTTPS, FTP, and FTP over HTTP. (A full Data Security deployment can extend Web DLP to include channels such as mobile devices, removable media, and printers. For a complete description of Websense Data Security, visit the Data Security product page at www.websense.com.)
Web DLP, as well as extended Data Security configurations, require separate installation of Data Security and other Data Security components. Before configuring Content Gateway to work with Data Security, see the deployment and installation information hosted in the Websense Technical Library.
Content Gateway supports 2 methods of working with Data Security:
*
*
Only one method can be used at a time.
How Web DLP works
In addition to the Web DLP data flow described below, enabling a special analytic engine causes outbound traffic to be analyzed for data theft. In the Web Security manager, see the Outbound security options on Scanning > Scanning Options.
Web DLP data flow works as follows:
1.
2.
*
*
*
3.
a.
b.
 
Note 
Transactions over HTTP, HTTPS, FTP, and FTP over HTTP can be examined.
Transaction details are logged by Data Security, per its configuration.
Data Security components on-box with Content Gateway
When Content Gateway is installed, a small number of Data Security components are installed on the same box. Content Gateway registers with these components when it's first configured and then checks the registration status whenever it's restarted, automatically re-registering if necessary. For more information about Data Security registration, see Registering and configuring Data Security.
After policies have been created and deployed in the Data security manager, Content Gateway sends content, such as postings and uploads, to Data Security for analysis and policy enforcement.
Content Gateway collects and displays Data Security transaction statistics, such as:
*
*
*
*
*
These statistics can be viewed in the Content Gateway manager by navigating to Monitor > Security > Data Security. For a complete list of statistics, see Data Security.
Data Security over ICAP
When the Data Security policy engine is located on a separate host, Content Gateway can communicate with Data Security over ICAP v1.0. For configuration details, see Configuring the ICAP client. Note that integration with on-box components is the preferred deployment.

Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Working With Websense Data Security
Copyright 2016 Forcepoint LLC. All rights reserved.