Database fingerprint

Classify structured data, such as database records, by fingerprinting a known database source so a policy can recognize that same data wherever it appears.

Overview

The Database fingerprint view lets administrators classify structured data by fingerprinting a known database source, rather than matching against a pattern. Once a database is fingerprinted, a policy can recognize that same data wherever it appears, using the fingerprint as a content classifier.

To access this view:

  1. Navigate to Policy > Data protection, and click Policy Elements.

  2. The Policy Elements panel opens.

  3. In the Policy Elements panel, select the Classifiers tab, then click Database fingerprint.

  4. The Database fingerprint view lists existing classifier definitions, and lets administrators browse definitions or import them from a file.

    Column Description
    Name The name given to the database fingerprint classifier.
    Columns The specific database columns included in the fingerprint.

On-premises DLP and cloud DLP synchronization

Database fingerprint classifiers are synchronized between the on-premises DLP and cloud DLP:

  • On-premises DLP — where a fingerprint classifier can originally be created.
  • Cloud DLP — when a fingerprint classifier is created on the on-premises DLP, a copy is automatically synchronized to the cloud DLP, where it becomes available for use in cloud policies under the same name.
    Note: For details on creating and configuring a database fingerprint classifier on the on-premises DLP, see Database fingerprinting in the on-premises DLP Administrator Help.

Using a Database fingerprint classifier in a policy

Once created, a Database fingerprint classifier is used the same way as any other classifier:

  1. Navigate to Policy menu.

  2. Create or edit a policy rule.
  3. Click Condition to expand and view the conditions.

  4. Click Add Classifier.

  5. Filter by classifier type: Database fingerprint.

  6. Toggle on the specific Database fingerprint classifier(s) to include.

  7. Save the rule.

  8. The Forcepoint Data Security Cloud | DLP now matches content against the fingerprinted database source as part of policy evaluation.