
VMware, Inc. 101
Chapter 8 vShield Data Security Configuration
<providerName>Custom Accounts</providerName>
<description>Custom Accounts</description>
<customizable>true</customizable>
</classification>
</ClassificationValue>
<ClassificationValue>
...
<classificationValuesChanged>false</classificationValuesChanged>
<lastUpdatedOn class="sql-timestamp">2011-11-09 16:59:01.0</lastUpdatedOn>
<lastUpdatedBy>dlp</lastUpdatedBy>
</DlpPolicy>
Querying Violation Details
Onceyoustartadatasecurityscan,vShieldreportstheregulationsthatarebeingviolatedbythefilesinyour
inventory,andtheviolatingfiles.Ifyoufixaviolatingfile(bydeletingthesensitiveinformationfromthefile,
deletingorencryptingthefile,oreditingthepolicy),thefilewill
continuetobedisplayedintheViolatingfiles
sectionuntilthecurrentscancompletes,andanewscanstartsandcompletes.
YoumustbeaSecurityAdministratororAuditortoviewreports.
Get List of Violation Counts
Youcanviewareportthatdisplaystheviolatedregulationswiththenumberofviolationsforeachregulation.
TheviolatingfilesreportrequiresfilteringbynodeID.
Example 8-25. Get violation count for entire inventory
Request:
GET https://<vsm-ip>/api/2.0/dlp/violations/
Example 8-26. Get violation count for specific resource
Request:
GET https://<vsm-ip>/api/2.0/dlp/violations/<context_ID>
ResponseBody
<list>
<Violations>
<scope>
<objectId>group-d1</objectId>
<type>
<typeName>Folder</typeName>
</type>
<name>Datacenters</name>
<revision>1</revision>
<objectTypeName>Folder</objectTypeName>
</scope>
<regulation>
<id>100</id>
<name>California AB-1298</name>
<description>Identifies documents and transmissions that contain protected health
information (ePHI) and personally identifiable information (PII) as
regulated by California AB-1298 (Civil Code 56, 1785 and 1798).
California residents medical and health insurance information, when
combined with personally identifiable information must be protected
from unauthorized access, destruction, use, modification, or
disclosure. Any business that operates in California and owns or
licenses computerized ePHI and PII data for California residents,
regardless of the physical location of the business, is required to
comply with this law. This policy detects US Social Security Numbers,
Commentaires sur ces manuels