Follow these general rules for creating the different types of device rules.
In ePO - SaaS , select Menu → Data Protection → DLP Policy Manager → Rule Sets.
Select Actions → New Rule Set, or edit an existing rule set.
Click the rule set name to open the rule set for editing. Click the Device Control tab.
Select Actions → New Rule and select the type of rule you want to create.
Enter a unique Rule Name.
(Optional) Change the status and select a severity.
(Removable storage and plug-and-play device rules only) Deselect the Trellix DLP Endpoint for Windows or Trellix DLP Endpoint for macOS checkbox if the rule applies to only one operating system.
On the Condition tab, select one or more items or groups.
Some device rules allow you to optionally assign user groups or a Process Name. Citrix rules have resources rather than items. TrueCrypt rules only have optional user groups.
Note
When saving the rule, the device template used to create the items or groups is validated against the operating systems selected in the Enforce on field. If they don't match, an error message appears. You must correct the error by deleting templates or changing the selected Enforce on operating system selected before you can save the rule.
(Optional) On the Exceptions tab fill in the required fields.
For some rules you have to select an exclude template, then fill in the details.
On the Reaction tab, select an Action. Optional: add a User Notification, and Report Incident.
If you don't select Report Incident, there is no record of the incident in the incidents list.
(Optional) Select a different action when the user is working outside the corporate network.
Click Save.