Actions
Actions are used to protect, assign, and/or classify data. Actions may be performed via the Console or initiated directly on the Agent. The following is a list of the available actions and the different ways that each can be performed. Actions that protect data are represented by an icon that displays in the Action column of the Results Grid and the Match and Action History section of the Results Details.
- Assign - The Assign action allows you to you specify the user or users to whom the result are assigned. When a location has been assigned to a user, it displays in the Assignee column of the Results Grid and a notification is sent to the user the next time the Run Workflow Rules service job run.
- This action can be performed on the Console by clicking on the Results tab, selecting a result and then clicking the Assign button in the Actions group or by right clicking on a result and clicking Assign. Results can also be assigned automatically when the Workflow Rules service job executes, if the result matches an existing Workflow rule.
- Classify - The Classify action allows you to manually assign a classification to a result using the Classify button, assigning the highest classification to those results considered to be of the greatest risk. Classifications are assigned by location and display in the Classification column of the Results Grid. Classifications can also be used for reporting purposes on reports by adding the Classification or the Classification Priority columns to a report.
- This action can be performed on the Console by clicking on the Results tab, selecting a result and then clicking the Classify button in the Actions group or by right clicking on a result and clicking Classify. Results can also be classified automatically when the Workflow Rules service job executes, if the result matches an existing Workflow rule.
- Globally Ignore - The Globally Ignore action allows you to create Global Ignore Lists with specific information that Agents ignores during their searches. The specified information is always ignored regardless of other settings on the Agent. Global Ignore Lists are assigned to policies and only affect the endpoints to which the policy containing the list is applied.
- This action can be performed on the Console by clicking on the Results tab, selecting a result and then clicking the Globally Ignore button in the Actions group or by right clicking on a result and clicking Globally Ignore.
- Ignore - The Ignore action is used to prevent the information from being displayed or searched in the future. It does not protect or secure it in any way. When a search locates an identity match or finds matches in a location that you do not care about, you may wish to use the Ignore feature.
- This action can be scheduled remotely from the Console to be executed on the appropriate endpoint by clicking on the Results tab, selecting a result and then clicking the Ignore button in the Actions group or by right clicking on a result and selecting Ignore.
- This action can be performed directly on the endpoint by clicking the Ignore button in the Actions group on the Main ribbon or by right clicking on a result and clicking Ignore.
- No Longer Exists - The No Longer Exists action indicates that the source file has been deleted outside of the Spirion Endpoint application. For example, by deleting the file from Windows Explorer.
- Quarantine - The Quarantine action moves the selected file to a location of your choice and then shreds the original file so that it cannot be recovered. It is important that you quarantine files to a location that is highly secure, such as an encrypted drive or a storage device to which unauthorized individuals do not have access.
- This action can be scheduled remotely from the Console to be executed on the appropriate endpoint by clicking on the Results tab, selecting a result and then clicking the Quarantine button in the Actions group or by right clicking on a result and selecting Quarantine.
- This action can be performed directly on the endpoint by clicking the Quarantine button in the Actions group on the Main ribbon or by right clicking on a result and clicking Quarantine.
- Redact - The Redact action replaces the sensitive identity information with another character, such as 'X'. For example, 123-45-6789 becomes XXXXXXXXXXX.
- This action can be performed directly on the endpoint by clicking the Scrub button in the Actions group on the Main ribbon or by right clicking on a result and clicking Scrub.
- Encrypt - The Encrypt action allows you to encrypt the selected file and password protect it.
- This action can be performed directly on the endpoint by clicking the Encrypt button in the Actions group on the Main ribbon or by right clicking on a result and clicking Encrypt.
- Shred - The Shred action removes the location containing the selected identity from your computer. Shredded results cannot be recovered. Once a location has been shredded, it is gone.
- This action can be scheduled remotely from the Console to be executed on the appropriate endpoint by clicking on the Results tab, selecting a result and then clicking the Shred button in the Actions group or by right clicking on a result and selecting Shred.
- This action can be performed directly on the endpoint by clicking the Shred button in the Actions group on the Main ribbon or by right clicking on a result and clicking Shred.
- Recycle - The Recycle action moves the selected file to the Windows Recycle bin.
- This action can be performed directly on the endpoint by clicking the Recycle button in the Actions group on the Main ribbon or by right clicking on a result and clicking Recycle.