Configuring Outbound Intel Data Exclusion Rule
Use this section to create exclusion rules, which can be configured by TISC admin to restrict sharing of records that match the defined criteria.
Vorbereitungen
Role required: sn_sec_tisc.admin
Warum und wann dieser Vorgang ausgeführt wird
You can share certain entities while excluding specific records within those entities. You can share specific types of entities while excluding particular records based on their sensitivity. For example, you might want to share domain names but exclude those with a TLP (Traffic Light Protocol) rating that restricts sharing. This approach helps prevent sensitive domain names from being shared within the organization or with external organizations.
Prozedur
Editing Outbound Intel Data Exclusion Rules:
Modifying Outbound Intel Data Exclusion Rules: