-
Notifications
You must be signed in to change notification settings - Fork 22
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Updating DLP Policy to Common Controls #469
Conversation
* Fixed numbering issue in instruction for 5.3 * Update baselines/gmail.md End with a period for automation processing reasons. Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> --------- Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com>
* Added Policy Group 18 * Added Drift Rule for Policy Group 18 * Fixed Table of Contents * Apply suggestions from code review Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Fixed Implementation * Added Policy Under Policy Group 16 * Fixed Policy Group 16 Intro * Changed Security to Secure in header * Fixed TOC * Apply suggestions from code review Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Fixed drift rule files * Update baselines/commoncontrols.md Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> --------- Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> Co-authored-by: mdueltgen <148897369+mdueltgen@users.noreply.github.com>
* Updated location of setting in instructions and fixed bolding * Update baselines/drive.md Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> --------- Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com>
* updated location of setting in implementation instructions * adding in periods * Update baselines/commoncontrols.md Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Update baselines/commoncontrols.md removed extra period Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Remove double period in overview --------- Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com>
* Updated location for takeout admin control based on update to data tab in admin console * Update baselines/commoncontrols.md Fixes capitalization of import/export per admin console Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> * removing unnecessary save step --------- Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com>
* udpated location of setting for data regions in instructions * Update baselines/commoncontrols.md removed S in compliances Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> --------- Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com>
* Added Policy 15.2 and renamed previous 15.2 to 15.3 * adding drift rule for 15.2 * Added TTP Mappings * Apply suggestions from code review Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> * Update drift-rules/GWS Drift Monitoring Rules - Common Controls as of 11-14-23.csv Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> --------- Co-authored-by: mdueltgen <148897369+mdueltgen@users.noreply.github.com> Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com>
* Updated Resource Link for DriveDocs 3.1 (#400) * Fixes Numbering Issue in GMAIL 5.3 Instructions (#399) * Fixed numbering issue in instruction for 5.3 * Update baselines/gmail.md End with a period for automation processing reasons. Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> --------- Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Updating Classroom 1.2 Instructions (#407) * New Common Controls policy for Early Access App Access controls (#371) * Added Policy Group 18 * Added Drift Rule for Policy Group 18 * Fixed Table of Contents * Apply suggestions from code review Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Fixed Implementation * Added Policy Under Policy Group 16 * Fixed Policy Group 16 Intro * Changed Security to Secure in header * Fixed TOC * Apply suggestions from code review Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Fixed drift rule files * Update baselines/commoncontrols.md Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> --------- Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> Co-authored-by: mdueltgen <148897369+mdueltgen@users.noreply.github.com> * Updated Location of Setting in DriveDocs 6.1 Instructions (#404) * Updated location of setting in instructions and fixed bolding * Update baselines/drive.md Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> --------- Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Updating Common Controls 11.2 Implementation Instructions #375 (#411) * updated location of setting in implementation instructions * adding in periods * Update baselines/commoncontrols.md Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Update baselines/commoncontrols.md removed extra period Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Remove double period in overview --------- Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Updating Common Controls 12.1 Implementation Steps (#414) * Updated location for takeout admin control based on update to data tab in admin console * Update baselines/commoncontrols.md Fixes capitalization of import/export per admin console Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> * removing unnecessary save step --------- Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> * Update location of rules setting in admin console in implementation steps. (#418) * Updating Common Controls 15.1 Implementation Steps (#420) * udpated location of setting for data regions in instructions * Update baselines/commoncontrols.md removed S in compliances Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> --------- Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * Fixed backslashes/forwardslashes bug in Common Controls Baseline (#426) * Changed Early Access to Early Access Apps (#428) * Add Data at Rest processing policy to Common Controls baseline (#434) * Added Policy 15.2 and renamed previous 15.2 to 15.3 * adding drift rule for 15.2 * Added TTP Mappings * Apply suggestions from code review Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> * Update drift-rules/GWS Drift Monitoring Rules - Common Controls as of 11-14-23.csv Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> * Apply suggestions from code review Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> --------- Co-authored-by: mdueltgen <148897369+mdueltgen@users.noreply.github.com> Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> * updating implementation steps for 13.1 to clarify editting rules * fixed numbering and removed old language about having to click show more which doesn't exist anymore in the admin consle. * Apply suggestions from code review Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> * Update baselines/commoncontrols.md Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com> --------- Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> Co-authored-by: jkaufman-mitre <135844572+jkaufman-mitre@users.noreply.github.com> Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com>
One other thing -- the smoke tests are failing because we've added the new policies to the markdown but not in the rego. Can we create issues to track the rego implementation of common controls 18.1, 18.2, and 18.3 and mark them as follow-up todos after driftwood is merged into main? |
@mdueltgen don't forget to update the table of contents entries. |
Issue #473 for tracking code changes. |
Added in changes for table of contents, policy group description, and clarification of manage rules button. I would like to discuss on Thursday the group's thoughts on implementation steps based on comments above. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Looks great!
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Most of the comments that I added to the 18.1 implementation steps also apply to 18.2 and 18.3. Rather than repeat myself I thought I'd just add these comments, then you could add the changes for 18.2 and 18.3 too if you agree with them.
Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com>
Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com> Co-authored-by: Alden Hilton <106177711+adhilto@users.noreply.github.com>
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Looks good!
Parity w/ m365 and scubagear 3rd party DLP options license info Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com>
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Align the Group title with the TOC.
Co-authored-by: David Bui <105074908+buidav@users.noreply.github.com>
🗣 Description
Now that DLP exists for Chat, Gmail, and DriveDocs we are looking to move all three to common controls.
Would appreciate feedback on implementation steps about how detailed we should be for creating DLP policies
Removed existing sections for DLP from Chat and DriveDocs and added to Common Controls
💭 Motivation and context
Closes #454
🧪 Testing
✅ Pre-approval checklist
✅ Pre-merge Checklist
Squash and merge
button.✅ Post-merge Checklist