Use this page to configure the server Shared Storage and Evidence by selecting the Enforce on field.
Category | Option | Definition |
|---|---|---|
Shared Storage | ||
Storage Share Location | Specifies the SMB (UNC) path or the WebDAV URL to the evidence storage folder. To store evidence, specify a folder for evidence collection in this text box. You can specify this path to store:
| |
Test Credential | Tests the connection to the storage share. You can save the configuration even if the test is unsuccessful. | |
Copy files using local system account | When selected, uses the system account to copy files. Trellix DLP Discover only. | |
Copy files using the following credentials | When selected, uses the specified user and password to copy evidence. Fill in the User Name, Password, and Confirm Password text boxes to specify a user. For Trellix DLP Network Prevent, if you do not specify a user and password, the copy fails. | |
Evidence Storage HTTP Service | Enable Evidence Storage HTTP service | When selected:
|
Evidence Settings | Maximum evidence file size (MB) | The maximum size of an evidence file. Range: 10–2,575 Default: 25 |
Maximum local evidence age (Days) | The maximum number of days that evidence remains on the managed computer before it is deleted. Default: 30 | |
Maximum evidence files to copy per event | Sets the maximum number of evidence files copied. Select options from 100–10000. Default: 100 | |
Store original file | Toggle to enable/disable file storage. Default: Enabled | |
Classification matches file | Sets the hit highlighting display option. Default: Very low (20)
The match count file shows the Total Match Count and highlights the matches that are hit. The maximum number of hit highlights displayed depends on the option set in this field and shows the matches that are hit in a top-down order. If the total match count exceeds the configured value, the matches that are hit beyond the configured value aren't highlighted. | |
Incident Information | Report Short and Unique Match Strings in incident details | When selected, reports the short and unique match string in the incident details.
|
Path | It shows the path of the main file and the relative path of sub-files. |