Configuring Forcepoint DLP policies for CASB cloud application assets

After the Forcepoint CASB and Forcepoint DLP integration is complete, Forcepoint CASB can be configured to send data for specified cloud application assets to the DLP Cloud Proxy or DLP Cloud API for content inspection and the enforcement of either Forcepoint DLP policies or Forcepoint CASB policies.

This Integration Guide focuses on the enforcement of Forcepoint DLP policies for Forcepoint CASB cloud application assets. For more information about configuring Forcepoint CASB custom policies to use the Forcepoint DLP predicate, see the Forcepoint CASB Administration Guide.

This section walks through the following configuration steps:

  • Forcepoint CASB portal: Enable Forcepoint DLP content inspection for each Forcepoint CASB cloud application asset. See Configure Forcepoint CASB cloud application assets for Forcepoint DLP policy usage (mentioned below).
  • Forcepoint Security Manager: Configure Forcepoint DLP policy rules for active cloud application assets. See Configure DLP policies for cloud applications in the Forcepoint Security Manager (mentioned below).
  • Forcepoint Security Manager: Configure one or more action plans with cloud application resources. See Configure an action plan with cloud application resources (mentioned below).

After this configuration is complete, the cloud application incidents are captured in incident reports.