Is it possible to only count Advanced Patterns as hits, but still require dictionary thresholds?
I'm wondering if there is anyway to only count the advanced patterns as hits in a incident, but still require a threshold of dictionary words to match with a advanced pattern before it is flagged at all.
The reason for this, is to avoid documents that have one or two sample social security numbers, but it uses the phrase SSN or Social Security a hundred times.
I'm currently using DLPe 9.3, we'll be migrating to version 11 later this year as well. Any suggestions or help would be appreciated as not being able to do this flags way too many false positives to get much use from scanning end point documents.
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.
Community Help Hub
New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.