Nightfall can delete an attachment, attached to a Confluence page, that contains sensitive information. This remediation action is very useful for serious policy violations that risk data exposure and non-compliance.
Each time Nightfall detects a policy violation in an attachment, the attached file can be deleted automatically if it is configured as an automated action.
When Nightfall detects a violation in your Confluence instance, and you have configured it to redact the violation, the sensitive information within the ticket masked. All characters in the message, except the first two, are masked. As an example, a ticket like this:
Nightfall cannot redact deleted tickets. User activities are generated every time a message is redacted similar to all other remediation actions.
Note: Files and images scanned in Confluence are not supported for redaction.
Learn how to remediate events in Nightfall for Confluence
You can configure Nightfall DLP for Confluence to automate remediation actions. You can configure them within the Nightfall Policy.
You can perform the following Remediation actions manually from the Violations dashboard:
Ignore
Acknowledge
Notify via Slack
Notify via Email
Redact
Delete
Send to Jira
Note: Nightfall recommends starting with manual remediation to start with. You can later enable automated actions from the policy to establish secure Confluence workflows. Refer Manual Actions here.
Redact findings directly within Confluence
Delete attachment (if the finding is alerting on a file attachment)