Using Trellix DLP policies in Skyhigh Security Cloud

Prev Next

Push Trellix DLP policies to Skyhigh Security Cloud and apply them to emails

The following diagram describes the high-level process of pushing a Trellix DLP policy to Skyhigh Security Cloud.

  1. Push the Trellix DLP policy to Skyhigh Security Cloud with the Apply Selected Policies command in the DLP Policy Manager.

  2. Skyhigh Security Cloud loads the policy.

  3. A user sends an email from the cloud.

  4. Skyhigh Security Cloud receives the email.

  5. Skyhigh Security Cloud send the email information to the DLP policy.

  6. The DLP service returns the expected action and event metadata.

  7. Skyhigh Security Cloud performs the action and saves the incident to its database.

  8. Trellix DLP pulls incidents to DLP Incident Manager with a frequently scheduled ePO - On-prem server task.

GUID-6309A06F-0CF4-4E96-95E1-7DE82B5491EA-low.png

Enforcing email protection rules on Skyhigh Security Cloud

You can apply email protection rules to Microsoft Exchange Online emails by pushing the policy containing the rule to Skyhigh Security Cloud. The Business Requirements setting in Skyhigh Security Cloud determines how the policy is applied: inline mode or passive mode. Inline mode includes the ability to block emails. Passive mode can't block emails. Depending on the settings in Skyhigh Security Cloud, it can monitor, delete, or quarantine.