User And Permission Sets; Create And Define Mcafee Dlp Administrators - McAfee DTP-1650-MGRA - Network DLP Manager 1650 Appliance Installation Manual

Installation guide
Table of Contents

Advertisement

In the Enter the object name to select field, type Domain Computers, then click OK.
8
The Permission Entry dialog box is displayed.
In the Allow column, select:
9
Create Files/Write Data and Create Folders/Append Data for the evidence folder
List Folder/Read Data for the whitelist folder
Verify that the Apply onto option says This folder, subfolders and files, then click OK.
The Advanced Security Settings window now includes Domain Computers.
10 Click Add again to select an object type.
11 In the Enter the object name to select field, type Administrators, then click OK to display the Permission
Entry dialog box. Set the required permissions.
12 Click OK twice to close the dialog box.

User and permission sets

We recommend creating specific administrator roles and permissions in ePolicy Orchestrator for
McAfee DLP Manager and McAfee DLP Monitor. These roles can include creating and saving policies,
viewing (but not changing) policies, generating override, uninstall, and quarantine release keys,
viewing the McAfee DLP Monitor, and revealing sensitive fields in the monitor.
Sensitive data redaction and the McAfee DLP Monitor permission sets
To meet the legal demand in some markets to protect confidential information in all circumstances,
McAfee DLP Endpoint software offers a data redaction feature. Fields in the McAfee DLP Monitor
containing confidential information are encrypted to prevent unauthorized viewing. The feature is
designed with a "double key" release. This means that to use the feature, you must create two
permission sets: one to view the monitor and another to view the encrypted fields. Both roles are
required to use the feature.

Create and define McAfee DLP administrators

Administrative users can be created either before or after the permission sets assigned to them.
Task
For option definitions, click ? in the interface.
In McAfee ePolicy Orchestrator, select Menu | User Management | Users.
1
Click New User.
2
McAfee Data Loss Prevention 9.2.1
Adding administrators is required for the whitelist folder. It is optional for the evidence folder, but
can be added as a security precaution. Alternately, you can add permissions only for those
administrators who deploy policies.
Installing McAfee DLP Endpoint
User and permission sets
Installation Guide
5
57

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Data loss prevention 9.2.1

Table of Contents