Create record level restrictions
Set record level restrictions in DLP incidents to protect sensitive records from being exposed. You can use record level restrictions to control the users or groups who can access specific records in the DLP incidents.
Before you begin
Role required:
- sn_dlir.admin
- sn_dlir.analyst and sn_dlir.analyst_read
About this task
Record level restrictions enable you to provide access to records only for specific users or groups, providing a more granular way to control the records a user can access. You can create a record level restriction by defining the DLP incident matching conditions, selecting the users or groups to which these conditions apply, and then choosing the DLP records that these users or groups can view.
Procedure
Navigate to All > DLP Administration > Incident Access Restrictions > Record level restrictions.
Click New.
On the form, fill in the fields.
| Field | Description |
|---|---|
| Name | Name of the record level restriction. |
| Short description | Unique description for this record level restriction. |
| Execution order | Priority of the record level restrictions. This field indicates the order in which the record level restrictions are executed when two or more record level restrictions share the triggering conditions.The record level restriction with the lowest number has the highest priority. To set the order of operation, enter a value. For example, 100, 200, or any other number. The default value is 100. |
| Allow access to incidents matching the condition | Options enable access to the incidents that matches the defined conditions. You can select any of the incident fields for defining the trigger condition for the record level restrictions.Use the lists and fields of the conditions builder to set the filters for the first row. To add more conditions, click AND or OR:
Note: The conditions in the condition builder are case sensitive. For example, you can select the field as |
| Applies to | Option to apply record level restrictions to specific users or groups. You can apply the conditions as follows:- Users: Add a particular user from the list to whom the selected record is applicable. You can also add a user by using their email address or search option. For example, Legal Manager. Add yourself as the user to whom the record is applicable. For example, System Administrator.
|
- Click Submit.
Parent Topic:DLP Incident Access Restrictions