Use this page to configure a SharePoint discovery rule.
Category | Option | Definition |
|---|---|---|
Rule options | Rule name | Enter a unique name for the rule. This field is required. |
Description | Click Edit to open the description text box. The maximum description length is 2000 characters. The character counter in the lower left of the window shows the number of characters still available. This field is optional. | |
State | Select Enabled or Disabled from the drop-down list. You can also change this parameter on the DLP Rule Set page by selecting a rule or rules and selecting Actions → Change State. The default is Disabled. | |
Severity | A relative measure of the gravity of violating this rule. The default is Warning. The color code that also appears in the DLP Incident Manager is displayed next to the field. | |
Conditions tab | Classification | Specifies a predefined classification. Use the Boolean comparisons AND, OR, NOT to specify multiple classifications. |
Repository | Specifies the repository scanned. Enter the URL of a SharePoint web application, site collection, subsite, library, or list. | |
Exceptions tab
| Actions | Adds or deletes a rule exception. |
Name | Enter a unique name for the exception. This field is required. | |
Description | Optional descriptive text. | |
State | Select Enabled or Disabled from the drop-down list. The exception state is independent from the rule state. | |
Classification | Select a classification. See above for option details. The exception classification is independent from the rule classification. | |
Repository | Select a repository to exclude from the rule. | |
Reaction tab | Action | Select an action from the drop-down list. The default is No Action.
For a list of prevent actions for different types of rules, see the available reactions table. |
Report Incident | Select the checkbox for the rule to trigger a DLP incident. | |
Store Original File | Select to store the original file as evidence. If the hit highlighting option is enabled for the evidence server, the trigger text is highlighted and stored as a separate file. |