Get started with Trellix DLP – SaaS

Prev Next

Use the DLP Getting Started feature to set up your shared location details and to create your first Trellix DLP – SaaS policy.

Make sure you have the minimum required permissions to create rules and policies in Trellix DLP – SaaS. You must configure the following permissions for full use:

  • ePO - SaaSAdministrator Or

  • DLP Policy Manager and Policy Catalog

  1. In ePO - SaaS, select MenuData Protection DLP Getting Started.

  2. The License page displays your acquired licenses, indicated with a checkmark next to its name. Click Shared Location at the bottom of the page to move to the next step.

  3. On the Shared location page:

    1. Enter your S3 Bucket name and click Register Bucket.

    2. Click Get Bucket Policy and create a copy of the policy.

    3. Open your bucket policy in Amazon S3 and paste the policy from the previous step.

    4. Click Test Connection to make sure ePO - SaaS can access your evidence storage.

  4. On the Classifications page, select the classifications you want to protect from the Trellix DLP built-in classifications list.

    Note

    You can add user-defined classifications later from MenuData Protection Classification.

  5. On the Vectors page, click the checkbox next to the Email and Web data vectors you want to protect using Trellix DLP Network - SaaS appliances. In the Email and Web fields, enter the domains you want excluded from this policy, for example, your organizational domains.

  6. On the Enforcement page, select the method of enforcement for this policy; Stealth, Coach, or Block.

  7. On the Exceptions page, select the User Groups and Users you want to exclude from your policy.

  8. If you haven't configured your Active Directory, click the link to add configuration details for your Active Directory servers.

    For more information, see Register your Active Directory server with Trellix ePO -SaaS.

  9. In the Policy Summary pane, review your selections and click Finish.

  10. (Optional) Click Start Over to return to the Classifications page and create another data protection rule.

    Note

    When you click Start Over, you can configure a new rule and rule set only. Go to DLP Policy Manager to assign this rule set to a policy.

Your first Trellix DLP – SaaS policy is created. User notifications and blocked actions will be enforced based on your selected enforcement mode. Click one of the suggested links in the Next steps pane to continue setting up your Trellix DLP – SaaS environment.