What's New
This section lists the new features, enhancements or fixes added to the current revision.
User Management
User management for App Security is now integrated with the Forcepoint Data Security Cloud platform. Administrators can centrally configure users, assign roles, and manage access rights for App Security features using the platform’s unified Admin controls.
For more details on managing users and roles, see the User management section.
Microsoft OneDrive and SharePoint API Scanning Support
App Security now extends API scanning support to Microsoft OneDrive and Microsoft SharePoint with three new event types — file download, file upload, and file viewed. This expansion gives organizations deeper visibility and stronger policy enforcement across their Microsoft 365 environment.
- File download: Detect and enforce actions when a file is downloaded.
- File upload: Detect and enforce actions when a file is uploaded.
- File viewed: Generates audit log entries when a file is accessed or viewed. No DPS action is performed for this event type.
- Permit
- Safe copy
- Quarantine with a note
Google Drive Badge Labels for API Scanning
App Security now supports reading Google Drive classification labels and using them as criteria for API scanning policies. When a file's label is deleted, changed, or shared in violation of its classification, App Security detects the event and evaluates the configured policies automatically without downloading the file.
- Restore the original classification label if it is deleted or changed
- Remove sharing access based on label sensitivity
- Notify file owners and actors when a policy is triggered
- Creating Google service account
- Enabling Google for API integration
- Configuring Google Badge Labels for API scanning
- Creating badge labels
- Managing badge labels
- Enabling and syncing badge labels in App Security
- Configuring API Google Labels policies
- Creating a new user email notification
- Default notification templates
- Understanding message personalization options
Google Drive File Attributes for API Scanning
App Security now supports reading Google Drive file attributes as criteria for API scanning policies. The Searchable attribute controls whether a file can be discovered through Google Drive search or is accessible only via a direct link.
- Restrict the file to link-only access, removing it from Google Drive search results
Dedicated IP address
App Security now supports dedicated IP addresses for Inline CASB proxy traffic. This feature ensures that proxy traffic originates from a consistent, identifiable IP address, enabling organizations to allowlist Forcepoint IP addresses in their cloud application firewall rules with greater precision.