CASB DLP policies with exposure types
search cancel

CASB DLP policies with exposure types

book

Article ID: 249349

calendar_today

Updated On:

Products

CASB Gateway Advanced

Issue/Introduction

Configuration example of an external and public exposure versus internal and unexposed exposure

Resolution

Scanfilters in DLP (Application detection) sets the scope of what files are sent to DLP for policy inspection.

Example: Policy violations for  Internal exposure:

  • Unique scanfilter
  • Unique exposure eg... internal \ unexposed
  • Unique Policy Group selected in the scanfilter
  • Unique Policy selected in the policy group.

Example: Policy violations for external exposure:

  • Unique scanfilter
  • Unique exposure eg... external \ public
  • Unique Policy Group selected in the scanfilter
  • Unique Policy selected in the policy group.

Having a policy that is selected for both scanfilters would cause all the policies to be check against the data and could result in the policy triggering regardless of the exposure type.

Customer should test the scenario for use cases  before implementing this type of configuration