Edit the Enterprise DLP Data Filtering Settings on Cloud Management
Edit the
Enterprise data loss prevention (DLP)
data filtering settings for Prisma Access Prisma Access
(Cloud Management)
and SaaS Security on Cloud Management
.Edit the
Enterprise data loss prevention (DLP)
data filtering settings for Prisma Access
(Cloud Management)
and SaaS
Security. These network settings are applied for files scanned by the DLP cloud
service and specify the actions Prisma Access
(Cloud Management)
and SaaS Security take when
using Enterprise DLP
. - Selectand edit the Data Transfer settings.ManageConfigurationSecurity ServicesData Loss PreventionSettingsData Transfer
- Edit the File Based Settings.
- Specify theMax Latency (sec)for a file upload before an action is taken byCloud Management.For inspection of files greater than 20 MB, Palo Alto Networks recommends setting the max latency to greater than60seconds.
- Specify theAction on Max Latency(AlloworBlock)Cloud Managementtakes if no verdict was received for a file upload due to the upload time exceeding the configuredMax Latency.SelectingBlockapplies only to Enterprise DLP data profiles configured to block files. This setting doesn’t impactEnterprise DLPdata profiles configured to alert when traffic containing sensitive data is scanned.
- Specify theMax File Size (MB)to enforce the maximum file size for files uploaded to the DLP cloud service for inspection.
- Specify theAction on Max File Size(BlockorAllow)Cloud Managementtakes if no verdict was received for a file upload due to the file size being larger than the configuredMax File Size.SelectingBlockapplies only to Enterprise DLP data profiles configured to block files. This setting doesn’t impactEnterprise DLPdata filtering profiles configured to alert when traffic containing sensitive data is scanned.
- Check (enable)Log Files Not Scannedto generate an alert in the DLP incident when a file can’t be scanned to the DLP cloud service.
- Save.
- Edit the Non-File Based Settings.
- Enable non-file based DLP.Enable this setting to prevent exfiltration of sensitive data in non-file format traffic for collaboration applications, web forms, cloud and SaaS applications, and social media on your network
- Specify theMax Latency (sec)to configure the allowable time for a non-file data uploads to determine the allowable time before an action is taken byCloud Management.
- Specify theAction on Max Latency(AlloworBlock)Cloud Managementtakes if no verdict was received for a non-file traffic data upload due to the upload time exceeding the configuredMax Latency.SelectingBlockapplies only to Enterprise DLP data profiles configured to block non-file data. This setting doesn’t impactEnterprise DLPdata profiles configured to alert when traffic containing sensitive data is scanned.
- Specify theMin Data Size (B)to enforce a minimum size for non-file data to be scanned by the DLP cloud service.
- Specify theMax Data Size (KB)to enforce a maximum size for non-file data to be scanned by the DLP cloud service.
- Specify theAction on Data File Size(AlloworBlock)Cloud Managementtakes if no verdict was received for a non-file traffic data upload due to the traffic data size being larger than the configuredMax Data Size.SelectingBlockapplies only to Enterprise DLP data profiles configured to block non-file data. This setting doesn’t impactEnterprise DLPdata profiles configured to alert when traffic containing sensitive data is scanned.
- Check (enable)Log Data Not Scannedto generate an alert in the DLP incident when non-file data can’t be scanned by the DLP cloud service.
- Save.
- In the DLP Settings, specify the actionCloud Managementtakes when an error is encountered while being scanned by the DLP cloud service.SelectAllowto allow the file upload to continue when an error is encountered orBlockto block the upload.Saveto apply the setting.
- Push your data filtering profile.
- Push ConfigandPush.
- Select (enable)Remote NetworksandMobile Users.
- Push.
Most Popular
Recommended For You
Recommended Videos
Recommended videos not found.