Configuring Action Planshttp://www.websense.com/content/support/library/data/v76/help/Action plans.aspx

TRITON - Data Security Help

Action plans

Use this page to define the plan of action to take when various breaches are discovered. Four action plans are provided by default.

Audit only - This action plan, the default, is designed for mild breaches. It permits all activity on all channels and logs incidents in the audit log. If configured, it also generates notifications.

Audit and Notify - Audit incidents from all channels, and if configured, generate notifications.

Block all - This action plan is designed for severe breaches. It blocks all incidents on all channels, audits them, and if configured, generates notifications. It requires a subscription to Websense Data Protect.

Drop Email Attachments - Drop email attachments that breach policy.

Note: The predefined action plans use the Default notification. You can edit the action plans to use a different notification—see Notifications and Adding a new message for details.

When you add rules or exceptions to a policy, you select the action plan to use.

To create a new action plan, click New. To delete an action plan, select it and click Delete.

Click View Complete Document for more.