Specify a Trellix DLP Discover server in the Policy Catalog to use registered documents in Trellix DLP Network policies.
For any fingerprint lookups (only automatic registered documents), you must use a Trellix DLP Discover server configured as a DLP server with DLP Network. The fingerprinted files are sent to DLP Server, which applies the classification. However, DLP Network detects manually fingerprinted files uploaded to the registered doc server without the need for DLP Server.
In ePO - On-prem, open the Policy Catalog.
Select the DLP Appliance Management product, choose the General category, and open the policy that you want to edit.
In Trellix DLP Server for Registered Documents, click the add button (+) to enter IP addresses or host names of the Trellix DLP Discover servers with the registered documents databases you want to use.
Registered documents database servers are Trellix DLP Discover servers with the Trellix DLP Server role. The server port is predefined as 6379.
(Optional) Select the Use TLS checkbox to specify a secure connection.
If using TLS, update the CA certificates used for DLP Server on the appliance.
Use SCP to upload the certificates in the CA chain used in DLP server to the appliance. They can either be uploaded individually or in a single package. If you upload them individually, you must begin with the root self-signed certificate and work down to the certificate used to sign the appliance certificate as the final upload.
Note
The appliance has a tool that runs when a file is created in any of the
/home/admin/upload/subfolders. If scp of the certificates in the chain fail to complete in a timely manner, it’s possible for that tool to run before the upload has completed, which can cause certificate ingestion failure. In this case, we recommend that you upload it to/home/adminusing scp. Then use the command cp /home/admin/filename.pem /home/admin/upload/cacert/filename.pem, and replace filename.pem with the name of the certificate file being uploaded.Click Save.