Skip to main content
Versa Networks

Configure Legal Hold Profiles in Concerto

Versa-logo-release-icon.pngFor supported software information, click here.

Legal hold is a process for preserving all relevant information that might be submitted as evidence in a legal procedure. The legal hold process involves creating a legal hold profile in which you specify the SaaS or IaaS application instance that will process the files and the location in the cloud where copies of the files in question are held. You can then use the profile when you configure match conditions in a Data Loss Prevention (DLP) policy or rule that supports the legal hold action. 

Before you configure legal a hold profile, you must create one or more application connectors. For more information, see Configure Cloud Applications To Use with API-Based Data Protection.

 To configure legal hold profiles:

  1. Go to Configure > Security Service Edge > Profiles and Connectors > Legal Hold Profile.

    Legal-hold-profile-left-nav-v2-border.png

    The following screen displays.

    Legal-hold-profile-main-v2-border.png
     
  2. To customize which columns display, click Select Columns, and then click the columns to select or deselect the ones you want to display. Click Reset to return to the default columns settings. The available columns are:
    • Name
    • Description
    • Application
    • Instance
    • User Email
       
  3. Click + Add to create a new legal hold profile. In the Create Legal Hold Profile screen, enter information for the following fields.

    create-legal-hold-profile-full.png
     
    Field Description
    Profile Name Enter a name for the legal hold profile.
    Description (Optional) Enter a description of the profile.
    Specific Location of the Legal Hold Folder (Group of Fields)
    • Application

    Select an application to which a file is sent if it meets the match criteria in a policy or rule. The options are:

    • Box
    • Dropbox
    • Google Drive
    • Microsoft OneDrive
    • Microsoft Office 365 SharePoint Sites
    • Instance
    Select an instance of the chosen application. For information about creating an application instance, see Configure Cloud Applications To Use with API-Based Data Protection.
    User Email Enter the user email address under which the legal hold folder will be created.
  4. Click Save.

Quarantine, Forensic, and Legal Hold Instructions

  • For all SaaS applications that support Quarantine, Forensic, or Legal Hold as a destination, a folder will be created under the specified user. These folders must not be used or modified for any other purpose.
  • For all IaaS applications, access to the designated object (container or bucket) used for Quarantine, Forensic, or Legal Hold purposes should be limited to administrators only. This location must not be used to store any other files or folders.

Applications Supporting Legal Hold Object Storage

The following applications can be configured as destinations for Legal Hold profiles.

  • IaaS Applications
    • Amazon Web Services (AWS)
    • Google cloud Platform (GCP)
    • Microsoft Azure Cloud
    • Oracle Cloud Infrastructure (OCI)
  • SaaS Applications
    • Box
    • Citrix ShareFile
    • Dropbox
    • Egnyte
    • Google Drive
    • Microsoft OneDrive
    • Microsoft SharePoint

Supported Software Information 

Releases 12.2.1 and later support all content described in this article.