Fortinet black logo

Handbook (HTML)

Managing DAM policies

Copy Link
Copy Doc ID 73ac471a-9afd-11ea-8862-00505692583a:512418

Managing DAM policies

The DAM Alert Policy and DAM Audit Policy pages display all policies with status, policy name, and supported databases information.

Use these pages to perform the following tasks:

  • Use the Data Policies list at the bottom of the page to create a new policy (see Data policies).
  • Modify the pre-defined policies by clicking the policy name . (See Privilege policies, Metadata policies, PCI, SOX, and HIPAA alert policies, and Alert and audit policy groups).
  • Delete user-defined policies by selecting the policy's check box, then clicking Delete.
  • Filter the view by selecting an option from the View list.
  • Navigate to the modifying the group page by clicking the Edit button.
  • Search and create a new group page by clicking the Search / New Group button.

The following table describes each icon in the policy table list.

Columns Descriptions
Type

Data Policy:

  • Table Policy monitors/audits suspicious reads and writes on specific tables
  • Table and Column Policy monitors/audits suspicious reads and writes on specific table columns
  • Session Policy monitors/audits suspicious session behavior
  • User Policy monitors/audits suspicious reads and writes by specific users
  • Database Policy(for Auditing) audits activities reads and writes on specific databases
  • Database Query Policy(for Alert) queries database data value at intervals that you specify

indicates a privilege policy

indicates a metadata policy

indicates a PCI, SOX, and HIPAA

Status
  • indicates the policy has a problem.
  • indicates the policy is disabled.
  • indicates the policy is enabled.
Policy Name User defined policy name, or pre-defined name
Severity

User configurable severity level (Not available for Audit Policy). There are 5 levels of severity:

  • Informational (default)
  • Cautionary
  • Minor
  • Major
  • Critical
Supported Databases All, or specify database type, or have fixed setting for each database

Managing DAM policies

The DAM Alert Policy and DAM Audit Policy pages display all policies with status, policy name, and supported databases information.

Use these pages to perform the following tasks:

  • Use the Data Policies list at the bottom of the page to create a new policy (see Data policies).
  • Modify the pre-defined policies by clicking the policy name . (See Privilege policies, Metadata policies, PCI, SOX, and HIPAA alert policies, and Alert and audit policy groups).
  • Delete user-defined policies by selecting the policy's check box, then clicking Delete.
  • Filter the view by selecting an option from the View list.
  • Navigate to the modifying the group page by clicking the Edit button.
  • Search and create a new group page by clicking the Search / New Group button.

The following table describes each icon in the policy table list.

Columns Descriptions
Type

Data Policy:

  • Table Policy monitors/audits suspicious reads and writes on specific tables
  • Table and Column Policy monitors/audits suspicious reads and writes on specific table columns
  • Session Policy monitors/audits suspicious session behavior
  • User Policy monitors/audits suspicious reads and writes by specific users
  • Database Policy(for Auditing) audits activities reads and writes on specific databases
  • Database Query Policy(for Alert) queries database data value at intervals that you specify

indicates a privilege policy

indicates a metadata policy

indicates a PCI, SOX, and HIPAA

Status
  • indicates the policy has a problem.
  • indicates the policy is disabled.
  • indicates the policy is enabled.
Policy Name User defined policy name, or pre-defined name
Severity

User configurable severity level (Not available for Audit Policy). There are 5 levels of severity:

  • Informational (default)
  • Cautionary
  • Minor
  • Major
  • Critical
Supported Databases All, or specify database type, or have fixed setting for each database