Fortinet black logo

Online Help

Compliance Standard Configuration Example

Copy Link
Copy Doc ID cf00dcb1-0886-11ed-bb32-fa163e15d75b:875337

Compliance Standard Configuration Example

When a Compliance policy involves in monitoring data resided in Cloud Storage, there are three parts in configuring this Compliance Policy.

  1. Part 1 - Create a File Collection The first part is create a File Collection that searches what data are being considered for monitoring.
  2. Part 2 - Configure the Compliance Policy: The second part is to add the Predefined Compliance Collection to the associated Compliance Policy.
  3. Part 3 - Configure the Predefined Compliance Collection The last part is to Configure the Compliance Collection by adding the data pattern and the File Collection created earlier

The following example is on the Compliance Standard: SOX/COBIT compliance collection

Part 1 - Create a File Collection

  1. Click on +Create New button in File Collection.
  2. In File Collection Name field, give a name for the file collection: "John-File".
  3. In File Path field, enter a Regex for the file path to be added: ".*".
  4. Click on Create New File Collection to finish creation the file collection.

Part 2 - Configure the Compliance Policy

  1. Go to REPORTS > Compliance > Standards > SOX-COBIT tab from navigation menu.
  2. Select the policy SOX/COBIT - Access to Sensitive Data, and expand it.
  3. Click Enabled toggle switch button to set it to On.
  4. Click Applied To drop down menu to select cloud accounts that this policy will apply to.
  5. Click on Compliance Collection drop down menu, and select the compliance collection(s) that the policy would be associated with. SOX/COBIT - Access to Sensitive Data is part of the SOX/COBIT compliance policy, therefore SOX/COBIT compliance collection is selected.
  6. Click Save Changes to complete.

After the associated policy is setup, go back to Collection to finish setting up Compliance Collection.

Part 3 - Configure the Predefined Compliance Collection

  1. Select the targeted Compliance Collection, click the Action button and select Edit Compliance Collection. In this example, the policy selected is part of SOX/COBIT compliance policy, therefore SOX/COBIT compliance collection will be selected.
  2. Click on Associate with Data Pattern drop down menu to select the desired data pattern to monitor.
  3. Click on Associate with File Collection field to select the file collection created earlier: "John_File".
  4. Click on Save Changes button to complete the configuration for the compliance collection.

After the compliance collection is created, the SOX/COBIT - Access to Sensitive Data compliance policy will monitor for access to the data path specified in the file collection.

Compliance Standard Configuration Example

When a Compliance policy involves in monitoring data resided in Cloud Storage, there are three parts in configuring this Compliance Policy.

  1. Part 1 - Create a File Collection The first part is create a File Collection that searches what data are being considered for monitoring.
  2. Part 2 - Configure the Compliance Policy: The second part is to add the Predefined Compliance Collection to the associated Compliance Policy.
  3. Part 3 - Configure the Predefined Compliance Collection The last part is to Configure the Compliance Collection by adding the data pattern and the File Collection created earlier

The following example is on the Compliance Standard: SOX/COBIT compliance collection

Part 1 - Create a File Collection

  1. Click on +Create New button in File Collection.
  2. In File Collection Name field, give a name for the file collection: "John-File".
  3. In File Path field, enter a Regex for the file path to be added: ".*".
  4. Click on Create New File Collection to finish creation the file collection.

Part 2 - Configure the Compliance Policy

  1. Go to REPORTS > Compliance > Standards > SOX-COBIT tab from navigation menu.
  2. Select the policy SOX/COBIT - Access to Sensitive Data, and expand it.
  3. Click Enabled toggle switch button to set it to On.
  4. Click Applied To drop down menu to select cloud accounts that this policy will apply to.
  5. Click on Compliance Collection drop down menu, and select the compliance collection(s) that the policy would be associated with. SOX/COBIT - Access to Sensitive Data is part of the SOX/COBIT compliance policy, therefore SOX/COBIT compliance collection is selected.
  6. Click Save Changes to complete.

After the associated policy is setup, go back to Collection to finish setting up Compliance Collection.

Part 3 - Configure the Predefined Compliance Collection

  1. Select the targeted Compliance Collection, click the Action button and select Edit Compliance Collection. In this example, the policy selected is part of SOX/COBIT compliance policy, therefore SOX/COBIT compliance collection will be selected.
  2. Click on Associate with Data Pattern drop down menu to select the desired data pattern to monitor.
  3. Click on Associate with File Collection field to select the file collection created earlier: "John_File".
  4. Click on Save Changes button to complete the configuration for the compliance collection.

After the compliance collection is created, the SOX/COBIT - Access to Sensitive Data compliance policy will monitor for access to the data path specified in the file collection.