DLP Incident Manager details page

Prev Next

This page displays detailed information for the selected incident. Some information is for display only, other information can be modified.

Note

The option definition table displays only those items that can be changed by the user.

Option definitions

Section or tab

Option

Definition

General Details

Severity

Specifies the severity. Select a value from the drop-down list to change.

Status

Specifies the status. Select a value from the drop-down list to change.

Resolution

Specifies the resolution. Select a value from the drop-down list to change.

Reviewer

Displays the assigned reviewer. Click the Edit button (GUID-48F0BA2A-5E0A-4652-AB28-768626FD7198-low.gif) to open the Set Reviewer window to change the assignment.

Endpoint Details

User Principal Name

Click the link to view more detail.

Source Application

Click the link to view more detail.

Additional Information

Access Control List

Click the link to view which Active Directory users and groups have access to files.

Tabs

Evidence

Click the link to view the evidence file in an appropriate program

Rules

Classifications

Stakeholders

Audit Log

Comments

Cases

Actions

Add Comment

Opens a text window to add a comment. Maximum comment length is 500 characters.

Email Event

Opens a window to send an email containing the incident.

Manage Labels

Opens a window to add or remove labels to the incident.

Release Redaction

Opens a Release Redaction window. Enter a user name and password of a user with sufficient permissions to display the event in clear text.

Stakeholders

Adds a stakeholder to selected incidents. You can add yourself, or specify another stakeholder. Stakeholders receive an email notification every time an incident is modified.

Case Management

Adds the incident to a new or existing case.

OK

Closes the window.

Save

Saves your changes.