profile dlp
Use this command to add scan rules/conditions to Data Loss Prevention (DLP) profiles. Specify what actions to take and then apply DLP profiles to IP or recipient based policies.
Syntax
config profile dlp
edit <profile name>
config content-scan
edit <rule_order>
set action {Discard | Encrypt_Pull | Reject | Replace | SystemQuarantine | UserQuarantine}
end
set comment <string>
set action-default {Discard | Encrypt_Pull | Reject | Replace | SystemQuarantine | UserQuarantine}
end