Previous Topic: Deploy the CFSANext Topic: Configure the Local Machine Policy


Which Policies Are Applied?

CA Data Protection applies both machine policy and user policy when assessing whether to allow files to be copied to removable devices or network locations.

Machine policy

CA Data Protection always applies the policy for the endpoint computer hosting the CFSA. BY default, the host computer inherits the common client policy, though you can customize policy for individual endpoint computers.

User policy

When applying Data In Motion triggers to files being copied, the CFSA always applies the policy for the CA Data Protection user currently logged onto the computer hosting the CFSA.

When applying Data At Rest triggers during a file scan, the CFSA always applies the user policy specified by the Default Policy for Data At Rest setting. This setting is defined in the machine policy.

To quickly roll out the CFSA across multiple client machines, edit the common client policy and the default user policy (or the policy for an appropriate user group). This ensures that the relevant policy settings replicate down to your end-users and their respective endpoint computers as soon as possible. Of course, you can still customize the policies for individual machines and users as necessary.

More information:

Data At Rest Protection Folder