Install and configure the Symantec DLP integration for Data Loss Prevention
Install and configure the Symantec DLP integration from the ServiceNow® Store on your ServiceNow AI Platform instance. Start investigating DLP incidents using the Symantec DLP incident data.
Before you begin
Role required: sn_dlir.admin
Procedure
Download the Symantec DLP integration from the ServiceNow® Store and install it.
Navigate to Security Operations > Integrations ** > Integration Configurations**.
Search for the DLP Incident Response Integration with Symantec tile and click Configure.
Click Configure button for Symantec.
- On the form, fill in the fields.
| Field | Description |
|---|---|
| Name | Name of the Symantec DLP integration configuration. |
| Endpoint URL | Symantec REST API endpoint. |
| Username | Symantec account name. For information on the Roles and Permissions required, see Roles and Permissions. |
| Password | Symantec account password. |
| On-Premises Deployment | Option that you can select if your Symantec is deployed in an on-premises instance. When you select this option, you must use the MID Server to connect to Symantec. |
| MID Server Application | The MID Application name that is used to communicate with Symantec.This field is needed when you select the On-Premises Deployment option. |
Configure the DLP Incident Response integration with Symantec.
- Click Submit.
Result
Note: Please connect symantec sub prod to the ServiceNow sub prod. Keep all the username and passwords in sync across the instances to avoid accounts getting logged out.
After you successfully validate and submit the configuration, the Symantec DLP Integration is saved on the Security Integrations page as a tile.
Parent Topic:Symantec Integration for Data Loss Prevention Incident Response