About Policy Dictionaries
Dictionaries are comma-separated lists of distinct values linked to unique names for easy reference in policy rules. They are beneficial for managing large lists, such as URLs or IP addresses, where maintaining consistency across multiple rules can be cumbersome. Policy Dictionaries provides a centralized approach to manage such lists and allows administrators to create and modify entries in a single location. Changes are automatically reflected wherever the dictionary is used. This central repository facilitates the reuse of defined terms across multiple DLP policies, streamlining management and enhancing the accuracy and uniformity of rule enforcement.
NOTE: When creating a DLP Policy Rules and Exceptions, you can add the policy dictionaries for Keywords, File Names, File Path/Folder, and File/Folder Collaboration.
Use Case: Preventing the leakage of sensitive project code names in an organization can be difficult without Policy Dictionaries. As new projects start and code names change, administrators must manually locate and update each relevant DLP rule, which requires entering the entire list of code names. This process is both time-consuming and prone to errors.
Policy Dictionaries simplify this task by providing a single dictionary that contains all current project code names. When a new project is initiated, the administrator only needs to update the central dictionary, and this change automatically updates all DLP rules that reference it, ensuring consistent and accurate enforcement of policies.
Create Policy Dictionaries
To create a DLP policy dictionary:
- Log in to Skyhigh CASB.
- Go to Policy > DLP Policies > Policy Dictionaries.
- Click Add Dictionary and configure the following:
- Name. Enter a name for the dictionary
- Type. Select the type of dictionary from the menu.
- Free Form Text. Select this type to add any combination of numbers or strings as required
- Geo IP. Select this type to add country or regional codes
- Domain Name. Select this type to add URLs
- Custom Keywords. Select this type to add custom keywords, and only a maximum of 10 custom Keywords are allowed.
- Under Dictionary Items, perform one of the following actions:
- Upload a file. Select the comma-separated file that includes dictionary items from your system.
- Manually add items to the dictionary. Add comma-separated items in the list.
NOTE: Dictionary entries are restricted to a maximum of 1000 characters.
- Click Save.
- Your new dictionary item is added to the Policy Dictionaries list.
Edit Policy Dictionaries
To edit the existing DLP policy dictionary:
- Go to the Policy Dictionaries list and select the dictionary you wish to edit.
- You can add the required changes to the dictionaries, and once you make edits, the new updates will override the previous ones. For example, you can upload a new file replacing the old one, or enter an additional dictionary item to the list, along with the existing items.
- On the right-hand side of the pane, review your existing Policy Dictionary details such as dictionary type, last updated time stamp, last updated user name, and the name of the policy that is using the current dictionary.
- Click Save.
Delete Policy Dictionaries
To remove a DLP policy dictionary:
- Under the Policy Dictionaries list, select the dictionary you wish to delete and click X.
- On the Delete confirmation dialog, click OK.
Once the policy dictionary is deleted, the action cannot be undone.