Quantcast
Channel: Symantec Connect - Security
Viewing all articles
Browse latest Browse all 11462

DLP - LDAP Lookup issue

$
0
0
Oui, j'ai besoin d'une solution

Dear All,

Background:

  • Single Tier deployment (with Network Monitor, Network Prevent for Web - squid enabled)
  • Confirmed Directory Connection is okay
  • Create LDAP lookup plugins and switch to "on" status

attr.Name=:(|(givenName=$sender-email$)(mail=$sender-email$)):cn
attr.Title=:(|(givenName=$sender-email$)(mail=$sender-email$)):title
attr.Department=:(|(givenName=$sender-email$)(mail=$sender-email$)):department
attr.Employee\ Email=:(|(givenName=$sender-email$)(mail=$sender-email$)):mail

However, when we try to trigger an incident, only IP is shown in sender field, nothing is changed even if pressing "Lookup" button

Q1) In this situation, any log file should I looking at ?

Q2) Any HTTP link can be used for testing (file uploading), since squid is supported HTTP protocol only

Thanks


Viewing all articles
Browse latest Browse all 11462

Trending Articles