Configure McAfee Agent on ePolicy Orchestrator
You must add an evidence folder on ePolicy Orchestrator to collect the events forwarded by the McAfee
Agent client, then configure essential features to enable McAfee DLP Endpoint functionality through
McAfee DLP Manager.
Task
1
In the ePolicy Orchestrator header, select
Menu
|
Policy
|
Policy Catalog
.
2
From the
Product
menu, select
Data Loss Prevention 9.2: Policies
.
3
From the
McAfee Default Client Configuration
.
After you name the duplicate and select it, the
Settings
page appears.
4
In the Evidence tab, type the UNC Path of the evidence folder share and folder name.
\\server name\evidence
The same server will also be entered on the McAfee DLP Manager
Add New Evidence Server
page.
5
Select
Copy evidence using NETWORK SERVICE or logged on user
.
6
In the
Evidence Replication
section, select the
Evidence
and
Hit Highlighting
checkboxes.
Show abbreviated hits
appears in the associated field.
Enabling this option allows users to easily see matching text in the events reported to the McAfee
DLP Manager
Data
‑
in
‑
Use
dashboards.
7
In the Security tab, type in a list of authorized users and groups to enable manual tagging of files
on agent machines.
For example, type in
Everyone
to give
Manual Tagging Authorization
to all users.
This sets up the agent to support manual tagging through McAfee DLP Manager. Selecting the
Allow
Manual Tagging
checkbox when creating tags on the
Endpoint Configuration
page makes the tags visible to
trusted users, who can use them to classify documents on their desktops.
8
Click
Save
.
Add an evidence folder on ePolicy Orchestrator
To collect the events forwarded by the McAfee Agent client, add an evidence folder on ePolicy
Orchestrator.
If an evidence folder is not already installed on ePolicy Orchestrator, you must add one to
communicate with the evidence folder on McAfee DLP Manager.
Task
1
In the ePolicy Orchestrator header, click
Policy Manager
.
2
On the
Agent Configuration
page for the
Data Loss Prevention
product, click
Edit Settings
.
3
Under the
Evidence
setting, type the evidence folder share and folder name.
\\server name\evidence
This information will be entered on the McAfee DLP Manager
Add New Evidence Server
page.
4
Review the other agent settings and make changes as appropriate.
5
Click
Save
.
Integrating McAfee DLP Endpoint into a unified policy system
Setting up Unified DLP on ePolicy Orchestrator
6
McAfee Data Loss Prevention 9.2.1
Installation Guide
69
Содержание Data Loss Prevention 9.2.1
Страница 78: ...TP000030C00...