Use the DLP Getting Started feature to set up your license and shared location details, and to create your first Trellix DLP policy.
Make sure you have the minimum required permissions to create rules and policies in Trellix DLP. You must configure the following permissions for full use:
Policy Catalog
DLP Policy Manager
Classification
Definitions
In ePO - On-prem, select Menu → Data Protection → DLP Getting Started.
In the License page, enter the license key for each license you want to add, then click the checkmark.
The licenses you enter activate the components available to you in the next steps of DLP Getting Started. It also activates the related ePO - On-prem components and Policy Catalogs.
On the Shared location page, enter the UNC path to a shared location to save your evidence copy, registered documents, and ignored text. You have two options for shared location:
Enter your own credentials for a shared location. Click Test Credentials to make sure you entered the credentials correctly.
For Windows environment only, use the local Windows system account for your shared location.
Note
License keys and shared location are mandatory steps for setting up your Trellix DLP environment and can be changed later in DLP Settings.
On the Classifications page, select the classifications you want to protect from the Trellix DLP built-in classifications list.
Note
You can add user-defined classifications later from Menu → Data Protection → Classification.
On the Vectors page, click the checkbox next to the Email and Web data vectors you want to protect using Trellix DLP Network appliances. In the Email and Web fields, enter the domains you want excluded from this policy, for example, your organizational domains.
On the Enforcement page, select the method of enforcement for this policy; Stealth, Coach, or Block.
On the Exceptions page, select the User Groups and Users you want to exclude from your policy. If you haven't configured your Active Directory, click the Configure Active Directory link to add configuration details for your Active Directory servers.
In the Policy Summary pane, review your selections and click Finish.
(Optional) Click Start Over to return to the Classifications page and create another data protection rule.
Note
When you click Start Over, you can configure a new rule and rule set only. Go to DLP Policy Manager to assign this rule set to a policy.
Your Trellix DLP products are now registered and your first Trellix DLP policy is created. User notifications and blocked actions will be enforced based on your selected enforcement mode. Click one of the suggested links in the Next steps pane to continue setting up your Trellix DLP environment.