McAfee DTP-165C-DPVG Installation Guide - Page 59

Option, Description, required, Support, discovery delete, Generate verbose policy, Backward

Page 59 highlights

Installing McAfee DLP Endpoint Initialize the DLP Policy console 6 Option Description 1 of 8 Click Next. 2 of 8 By default, the file system discovery crawler places sensitive files in quarantine. Though we do not recommend it, you can delete these files instead by selecting the Support discovery delete option. This option is not available until you update to the full McAfee Data Loss Prevention Endpoint software installation. For troubleshooting, when you need to review an easily readable version of the policy, select Generate verbose policy. For most installations, we recommend leaving these checkboxes unselected. In very large organizations where the rollout of McAfee DLP Endpoint 9.2 is staged over time, earlier versions of the plug-in need to coexist. Select the appropriate Backward compatibility mode: • No compatibility (all endpoints are version 9.2) • McAfee DLP Endpoint Agent 9.1 and later • McAfee DLP Endpoint Agent 9.0 and later • McAfee DLP Endpoint Agent 3.0 and later The compatibility option McAfee DLP Endpoint Agent 3.0.5 or current version refers to a specific hotfix. Unless you specifically know that you are using this hotfix, choose DLP Agent 3.0 compatibility for all version 3 endpoints. DLP Agent 2.2 Patch 4 is no longer supported. Select your directory access protocol: Microsoft Active Directory or OpenLDap. When using Microsoft AD in very large organizations where search times could be excessive, select Restrict AD searches to default domain. When you have completed all changes, click Next. 3 of 8 This step is not available when installing McAfee Device Control . Type user names, or click Add to search for user names (optional). Click Next. We recommend creating a role-based group such as DLP Manual Tagging Users, and using the group when configuring Access Control. 4 of 8 Type a password and confirmation (required). McAfee DLP Endpoint software version 9.2 requires strong passwords, that is, at least 8 characters with at least one each uppercase, lower case, digit, and special character (symbol). If you are upgrading, this is not implemented until you change a password. If you don't want endpoint key generation events reported to the database, deselect the checkbox. If you want to use short challenge/response (8 digits instead of 16), select the checkbox. See the McAfee Data Loss Prevention Endpoint Product Guide for more information on Agent bypass. Click Next. McAfee Data Loss Prevention 9.2.0 Installation Guide 59

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76

Option
Description
1 of 8
Click
Next
.
2 of 8
By default, the file system discovery crawler places sensitive files in quarantine. Though
we do not recommend it, you can delete these files instead by selecting the
Support
discovery delete
option.
This option is not available until you update to the full McAfee Data Loss Prevention
Endpoint software installation.
For troubleshooting, when you need to review an easily readable version of the policy,
select
Generate verbose policy
. For most installations, we recommend leaving these
checkboxes unselected.
In very large organizations where the rollout of McAfee DLP Endpoint 9.2 is staged over
time, earlier versions of the plug-in need to coexist. Select the appropriate
Backward
compatibility mode
:
No compatibility (all endpoints are version 9.2)
McAfee DLP Endpoint Agent 9.1 and later
McAfee DLP Endpoint Agent 9.0 and later
McAfee DLP Endpoint Agent 3.0 and later
The compatibility option McAfee DLP Endpoint Agent 3.0.5 or current version refers to a
specific hotfix. Unless you specifically know that you are using this hotfix, choose DLP
Agent 3.0 compatibility for all version 3 endpoints.
DLP Agent 2.2 Patch 4 is no longer supported.
Select your directory access protocol: Microsoft Active Directory or OpenLDap. When
using Microsoft AD in very large organizations where search times could be excessive,
select
Restrict AD searches to default domain
.
When you have completed all changes, click
Next
.
3 of 8
This step is not available when installing McAfee Device Control
.
Type user names, or click
Add
to search for user names
(optional)
. Click
Next
.
We recommend creating a role-based group such as
DLP Manual Tagging Users
, and
using the group when configuring Access Control.
4 of 8
Type a password and confirmation
(required)
. McAfee DLP Endpoint software version
9.2 requires strong passwords, that is, at least 8 characters with at least one each
uppercase, lower case, digit, and special character (symbol). If you are upgrading, this is
not implemented until you change a password.
If you don't want endpoint key generation events reported to the database, deselect the
checkbox. If you want to use short challenge/response (8 digits instead of 16), select the
checkbox.
See the
McAfee Data Loss Prevention Endpoint Product Guide
for more information on
Agent bypass.
Click
Next
.
Installing McAfee DLP Endpoint
Initialize the DLP Policy console
6
McAfee Data Loss Prevention 9.2.0
Installation Guide
59