Classifying files manually

Prev Next

Users can manually apply or remove classifications or content fingerprinting to files.

The manual classification feature applies file classification. That is, the classifications applied do not need to be related to content. For example, a user can place a PCI classification on any file even if the file does not contain credit card numbers. Manual classification is embedded in the file. In Microsoft Office files, the classification is stored as a document property and as a clear text in header, footer, and watermark. In other supported files, it is stored as an XMP property. For email, it is added as markup text.

When setting up manual classification, you can also allow a user to manually apply content fingerprints.

Support for manual classification is as follows:

  • Trellix DLP Endpoint users (on both Windows and Mac endpoints) can add visual label and classify files and emails manually.

  • Trellix DLP Endpoint clients (on both Windows and Mac endpoints), Trellix DLP Network Prevent, and Trellix DLP Network Monitor can detect manually classified files (in email attachments, for example) and take appropriate action based on the classification.

  • Trellix DLP Discover can detect manual classifications in classification and remediation scans and can take appropriate action in remediation scans.

By default, users do not have permission to view, add, or remove classifications, but you can assign specific classifications to specific user groups, or to Everyone. The assigned users can then apply the classification to files as they work. Manual classification can also allow you to maintain your organization’s classification policy even in special cases of sensitive or unique information that the system does not process automatically.

When setting up permission for manual classification, you have the option of allowing content classifications, content fingerprints, or both to be applied manually.

Support for manual classification

Trellix DLP offers two types of support for manual classifications: one for Microsoft Office files, and one for all supported file types.

Microsoft Office applications (Word, Excel, and PowerPoint) and Microsoft Outlook are supported at the file creation level. By clicking manual classification icon, you can add visual labeling and classify files. You can also set options to force users to classify or visual label files by activating the manual classification pop-up when files are saved, or Outlook emails sent. Additionally, you can configure the system to enable borders, border size, and change fonts, in Policy CatalogWindows Client ConfigurationUser Interface ComponentsVisual Labeling and also you can allow only single classification selection by unchecking the Allow end users to ..... checkbox option. Simultaneously you can apply secondary classification labels for applicable Microsoft office applications.

For Microsoft Word, Excel, PowerPoint, and Outlook, manual classification is supported directly at the point of file creation and communication.

  • Activation: You can access Manual Classification in Microsoft office application via a dedicated icon to apply visual labeling and classify files.

  • Enforcement: You can also set options to force users to classify or visual label files by activating the manual classification pop-up when files are saved, or Outlook emails sent.

  • Customization and selection control: Customize the appearance of visual labels in Policy CatalogWindows Client ConfigurationUser Interface ComponentsVisual Labeling . Options include setting borders, border size, and changing fonts. You can limit users to a single classification selection by unchecking the Allow end users to... checkbox.

Manual classification of an email is relevant for a specific thread only. If you send the same email twice in different threads, you have to classify it twice. For emails, information can only be added to the header or footer as a visual label. (set on the manual classification General Settings page).

Note

For Microsoft Office documents independent selection of Classify option is supported in the toolbar.

All supported file types can be classified from Windows Explorer or Mac Finder using the right-click (Mac Ctrl-click) menu.

GUID-E7681663-DCF6-4B24-95FE-D55EE6A28FCF-low.png

Limitations

There are some limitations to using visual labeling:

  • Using the right-click menu, you cannot visually label Microsoft Office applications (Word, Excel, and PowerPoint).

  • Documents that are visually labeled by Trellix DLP can lose visual labeling when a third party visual classification or labels are applied, as the third party tool will delete the original label which cannot be controlled by Trellix DLP - SaaS.

  • A shared document can overlap with different visual labels when two users add them simultaneously.