Quantcast
Channel: Symantec Connect - Security
Viewing all articles
Browse latest Browse all 11471

Detecting unique @domain.com in attachment from endpoint channel

$
0
0
I need a solution

Hello,

We want to detect unique email domains as format like "@gmail", "@outlook", etc in the content of attachment by using DLP endpoint agent.

For example, if a file containing following email addresses is transferred,  then, the incident should show 3 matches instead of 4, because two email addresses are from gmail domain.
abc@gmail.com
xyz@gmail.com
lmn@yahoo.com
pqr@live.com

As unquie matching option only works for data identifer, no such option for regular expression in policy rule, so we added data format @[A-Za-z0-9]+\. to the pattern in data identifier and selected "do nothing" for data normalizer. While the test result is always negative.

Do you have any positive progress on smiliar case?

Regards,

Steven


Viewing all articles
Browse latest Browse all 11471

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>