Cisco Secure Access Help

PDF

Cisco Secure Access Help

Synchronize Active Directory Reporting Manager Email Addresses for DLP Notifications

Want to summarize with AI?

Log in

Provides instructions for completing the Synchronize Active Directory Reporting Manager Email Addresses for DLP Notifications workflow in Cisco Secure Access. You must have full Admin user permission in Secure Access.


When Secure Access detects a violation of a DLP SaaS API or Real Time rule, the system may generate a notification email for the person who triggered the violation, as well as a notification email for that person's manager. These email notifications are optional, and configurable within the rule itself (see Add a Real Time Rule to the Data Loss Prevention Policy and Add a SaaS API Rule to the Data Loss Prevention Policy. )

To support sending email notifications to an actor's manager, you must first enable synchronizing Active Directory reporting manager email addresses with Secure Access, as described in this task.

Before you begin

  • You must have full Admin user permission in Secure Access. For more information, see Manage Accounts.

Procedure

  1. Navigate to Connect > Users, Groups, and Endpoint Devices and click Configuration management.

  2. Navigate to Configurations, then navigate to Directories.

  3. Expand Active Directory.

  4. Click Edit (pencil icon) at the top of the Active Directory section of the page to edit the Additional Attributes for Data Loss Prevention.

  5. Navigate to Additional Attributes for Data Loss Prevention (DLP).

  6. Click the toggle to enable or disable Sync reporting manager's email.

  7. Click Save.

After enabling Sync reporting manager's email you will be able to enable sending notification email to the managers of persons who trigger violations of DLP SaaS API or Real Time rules.