Migrate your existing data loss prevention policy rules from your old data loss
prevention service provider to Enterprise Data Loss Prevention (E-DLP).
On
May 7, 2025,
Palo Alto Networks is introducing new
Evidence Storage and
Syslog Forwarding service IP
addresses to improve performance and expand availability for these services
globally.
| Where Can I Use This? | What Do I Need? |
- NGFW (Managed by Strata Cloud Manager)
- Prisma Access (Managed by Strata Cloud Manager)
Prisma Browser
|
Or any of the following licenses that include the Enterprise DLP license
- Prisma Access CASB license
- Next-Generation
CASB for Prisma Access and NGFW (CASB-X) license
- Data Security license
|
Use the Enterprise Data Loss Prevention (E-DLP) Migrator to migrate your Symantec DLP policy rules
and convert them into SaaS Security Data Asset policy rules. This allows
you to quickly transition to Palo Alto Networks Enterprise DLP without the need
to manually recreate all your Data Asset policy rules designed to prevent
exfiltration of sensitive data.
To migrate your existing Symantec DLP policy rules, you simply need to export them
from Symantec DLP and import them into the Enterprise DLP migration tool. The
Enterprise DLP migration tool then evaluates the imported Security policy
rules to verify that they are compatible with Enterprise DLP and SaaS Security. Enterprise DLP creates a data pattern and a classic
data profile with names identical to the migrated Symantec DLP policy rule as part
of the migration to capture the traffic match criteria.
If Enterprise DLP detects an incompatible Security policy rule traffic match
criteria, you can choose to delete the incompatible match criteria from the Symantec
DLP policy rule before the migration begins or choose to exclude that specific
Symantec DLP policy from migration. Enterprise DLP adds a successfully migrated
Symantec DLP policy rule as a Disabled
SaaS Security Data Asset policy rule. You can then review the Data Asset
policy rule, make changes if needed, and enable the policy rule.
Enterprise DLP supports migration of Symantec DLP policy rules in
.xml format and with one or more of the following
match criteria: