DLP Exceptions
The DLP engine supports defining Allow-Lists by Sender, Recipient, File MD5, and Strings.
The DLP engine stops scanning emails, messages, and files that match an Allow-List rule. The DLP verdict will automatically be clean for the Allow-List.
-
DLP Allow-List applies to both the incoming and outgoing DLP policy rules. For information about DLP policies, see Data Loss Prevention (DLP) Policy.
-
Emails, messages, and files in the DLP Allow-List are evaluated by other security engines, such as Anti-Malware and Anti-Phishing.
-
When you add multiple strings, each string will be added as a separate exception. Allow-listed strings will not be flagged as a DLP violation.
Viewing DLP Exceptions
To view the configured Allow-List or Block-List rules:
-
Access the Avanan Administrator Portal.
-
Go to Security Settings > Exceptions > DLP.
-
In the drop-down from the top of the page, select the require exception type (Allow-List or Block-List).
The page shows a table with all file type exceptions and the defined criteria.
Adding DLP Allow-List
You can add DLP Allow-List rule from any of these:
From the DLP Allow-List
-
Click Security Settings > Exceptions > DLP.
-
In the drop-down from the top of the page, select Allow-List.
-
Click Create Allow-List.
-
Select the required Allow-List Type.
-
Sender
-
Recipient
-
File MD5
-
String
-
-
Enter the required sender/recipient's email address or domain, File MD5 or strings.
-
If required, enter a comment for the Allow-List rule and click OK.
You can use the commented text to filter and find the Allow-Lists with a specific text from their comments.
-
Click OK.
From the Entity Profile Page
-
Open the required email profile, message, or file from the Security Events.
-
Under Security Stack, select Create Allow-List.
-
Select the required Allow-List Type.
-
Sender
-
Recipient
-
File MD5
-
String
The File MD5 or file's detected strings will be displayed automatically.
-
-
Enter the required sender/recipient's email address or domain, or strings.
-
If required, enter a comment for the Allow-List rule and click OK.
You can use the commented text to filter and find the Allow-Lists with a specific text from their comments.
-
Click OK.