What's New

URL Categorization support

The Windows version of Forcepoint Agent now monitors URL categories set for a policy, so that a rule scoped to URL categories is enforced on endpoint HTTP and HTTPS channels. For more information of this functionality at Hybrid DLP and Cloud DLP end, refer the below documents:
  • For working with URL categories in Forcepoint DLP on-prem, refer to URL categories and refer to the Web section here.
  • For information on URL category configuration in Forcepoint Data Security Cloud DLP, refer to URL Categories and refer to the Web section under Destination here.

DLP Mode switching

The Windows version of Forcepoint Agent now supports DLP mode switching, allowing endpoint profiles to be switched between On-Premise and Cloud management modes. For more information, refer to the Data Protection section in Create Custom Profile.

Fingerprint classifier support in Cloud mode

The Windows version of Forcepoint Agent now supports the following fingerprint classifiers when operating in Cloud mode:
Note: The agent already supports fingerprinting when running in hybrid DLP mode.
  • File fingerprint - Classifies unstructured data by fingerprinting a known file or directory so a policy can recognize that data, or the files themselves, wherever they appear.
  • Database fingerprint - Classifies structured data by fingerprinting a known structured source, such as a database table or spreadsheet, so a policy can recognize that same data wherever it appears.
When fingerprint classifier updates are deployed from the cloud, the endpoint receives and places them in the correct location for the DLP Policy Engine, which then matches content against the deployed fingerprints and enforces policy as part of policy evaluation.

This feature will be available in the upcoming release of Forcepoint Data Security Cloud DLP. For more information on configuring and working with the fingerprint classifiers, refer to the Forcepoint Data Security Cloud DLP documentation, once available.

Textual Scanning in Copilot in the browser

This Windows version of Forcepoint Agent now scans textual content shared via Copilot in the browser. Co-pilot uses WebSocket for this today and the agent decodes plain-text content sent over WebSocket connections and applies DLP policy to it, closing a gap that previously allowed text typed into the Microsoft Copilot sidebar to bypass scanning.

Scanning inspection bypass

This Windows version of Forcepoint Agent now supports excluding specified domains from scanning. For more information, refer to the Scanning Inspection Bypass section in Create Custom Profile.