Managing Networks
By default, My Organization includes networks, network groups, and hosts that are defined as being behind the internal interface of the DLP Gateway.
In large sites it is often more efficient to define exclusions to the internal interfaces than to define the internal environment piece by piece.

If you give names to specific networks or hosts to specify My Organization, then DLP considers any internal networks or hosts that you did not give a name as internal.
|
Note - The networks and hosts must already be defined in the Objects Tree of SmartConsole |
To define specific networks and hosts:
-
Connect with SmartConsole to the Management Server
Check Point Single-Domain Security Management Server or a Multi-Domain Security Management Server..
-
From the left navigation panel, click Manage & Settings.
-
From the left tree, click Blades.
-
In the Data Loss Prevention
Check Point Software Blade on a Security Gateway that detects and prevents the unauthorized transmission of confidential information outside the organization. Acronym: DLP. section, click Configure in SmartDashboard.
-
In SmartConsole, open the Data Loss Prevention tab.
-
Click My Organization.
-
In the Networks section, select the option Select specific networks and host.
-
Click Edit.
-
In the Networks and Hosts window, select items from the list of defined networks and hosts and then click Add.
-
Add as many items as needed to define My Organization.
-
Click OK.

If the default option in My Organization is selected (Anything behind the internal interfaces of my gateways), you can define exclusions to internal Networks.
Data Loss Prevention recognizes as Outside My Org all networks, network groups, or hosts that you specify as an exclusion. To scan data sent from these networks, you must change the default Source of rules from My Org to the network object.
To exclude networks from My Organization:
-
Connect with SmartConsole to the Management Server.
-
From the left navigation panel, click Manage & Settings.
-
From the left tree, click Blades.
-
In the Data Loss Prevention section, click Configure in SmartDashboard.
-
Click My Organization.
-
In the Networks section, select Anything behind the internal interfaces of my DLP gateways and click Exclusions.
The Networks and Hosts window opens.
-
Select the listed items that you want to exclude from My Organization.
-
Click Add.
-
Click OK.