The complete DLP Endpoint solution employs a client-server
architecture with a software agent, server, remote crawler, and
Web-based console.
-
Endpoint agent: Non-intrusive monitoring
and enforcement software installed on client machines. The agent
receives policy and fingerprint updates from the server and sends
back incident details.
-
Network agent: Refers to each DLP Network Monitor
device. The agent must be registered with the DLP management server
to be able to monitor network traffic.
-
Management server: An appliance that handles
the overall administration of the solution, and stores all relevant
data and configurations.
-
Remote crawler: Scans for digital assets stored
on desktops and laptops even if users are not connected to the company
network. The remote crawler can acquire fingerprints for files stored
on systems other than the management server and forwards generated
fingerprints to the management server. This protects files stored
locally (on computers where the Remote Crawler is installed) or
in a document management environment that the server may or may
not have access to.
-
Web console: Supports an administrative workflow
for defining digital assets, creating confidential rules, deploying
policies to agents, performing data discovery scans, monitoring,
and reporting.