Configuring the policy engine

The policy engine is responsible for parsing data and using analytics to compare it to the rules in Forcepoint DLP policies. There can be multiple policy engines in a deployment to manage high transaction volumes.

Tip: To balance the load between policy engines, click Load Balancing in the System Modules toolbar. Refer to Balancing the load for more information.

Policy engines reside on the:

  • Management server
  • Supplemental Forcepoint DLP servers
  • Protectors
  • Content Gateway machines
  • Forcepoint Email Security machines

To configure a policy engine instances, select it on the System Modules screen, then use the edit page to update the following fields:

  1. Select or clear Enabled to enable or disable the module in your deployment.
  2. Enter a Description of the module (up to 4000 characters).
  3. Supplemental Forcepoint DLP servers include an OCR server capable of intercepting textual images in many languages.

    Select Enable OCR by to enable optical character recognition, then select an OCR server from the drop-down list.

    • OCR is disabled by default.
    • For best performance, select the OCR server that is in closest proximity to the policy engine.
    • If the server is not installed, this option is not configurable. See Configuring the OCR server for more information.
  4. Click OK to save your changes and return to the System Modules page.

The page also displays the module type, name, and FQDN, which cannot be changed.