ITM / Endpoint DLP Advanced Configuration

After you've set up ITM / Endpoint DLP, there is so much more you can do. To help you get started with, this section describes and links to some of the advanced configuration options.

  • Configuring agent password protection: Allows you to configure password protection for the Proofpoint ITM Agent. This prevents a user from uninstalling the Agent from the endpoint. See Uninstall Key.

  • Enabling Content Scanning: Allows you to examine the contents when a specific event occurs, such as file upload. See Content Scanning.

    Start by enabling content scanning in the Realm and selecting Scan Triggers and DLP Detectors you want to scan.

  • Configuring End User Justification: When configuring prevention rules, you can configure Proofpoint ITM Agent to display a message to the end-user, asking to define why certain action (such as copying a file to a USB device) was taken.

    Start by creating a default justification applied to the entire Realm. This allows you to display the default justification pop-up to the end user when a prevention rule fires. See Justifications.

  • Configuring Notification Policies: Let you create notifications that you assign to a detection or prevention rule. Notification Policies allow a degree of automation when an event occurs. See Notification Policies.

For more, Quick-Reference Guides, see ITM / Endpoint DLP Onboarding.