Skip to main content

 

Netskope Global Technical Success (GTS)

Use case - Prevent data leakage with browsers translation services

 

 

Netskope Cloud Version - 124

Objective

Prevent the usage of the Translate function on the browser to prevent data leakage

 

Context

A company would like to disable the Translate browser function on sensitive websites, in our use case we’re going to block the Translate function of the Microsoft Sharepoint website.

 

Prerequisite

CASB/SWG license is required

 

Configuration

 

STEP #1. On the “Policies >>> Profiles >>> URL Lists” menu define a new URL List with the below Urls, which has the URL Type: Exact, let’s call it “Browser translate

 

edge.microsoft.com/translate/

translate.googleapis.com

translate-pa.googleapis.com

translate.google.com

www.gstatic.com/_/translate_http

www.bing.com/translator

 

 

STEP #2. On the “Policies >>> Profiles >>> Custom Categories” menu define a custom category which include the Translation category and the above Url List

 

AD_4nXd8qdp2xpKDKb2fvjPyX3YkpqpJBAXEG790hTYoGn0lYz2XWXFnqN1ifdxDhZoQEZQUUd8DrI6L4e8tmfl3vqm4qiLOFAMGfbSTqAtdMEyhDG9OS1OWq2WkyXAwyfQgIlM6J9G2BCTSd9_w2V35R9Y?key=1vVJkog6CVizX3rIEfk9xSUU

STEP #3. On the “Policies >>> Profiles >>> HTTP Profile” menu define an HTTP Profile like below which 

 

AD_4nXeXrWMmSJIUy5iPZ-B7sqGPdW6oG2qO1YUjbzPMBT4053rurYCk0oNIMe1cS5oqP6aLNuJ_vpQL7m7MeglSGGHJl8zl-AJ8AaKAKeTNx-mLlxqaPKINWtKKAkT1R1Kpo3q9SILlOhTN6IYnqnXZEA?key=1vVJkog6CVizX3rIEfk9xSUU

 

ℹ️ With the https\:\/\/.{0,20}\.sharepoint\.com\/ regex we’re matching all the sharepoint URLs that have from 0 to 200 characters before the “sharepoint.com” string. 

 

Below we can see the Referer Field into the translation request:

 

AD_4nXdLMMpKf24T2J9zsfcQ7Ti5369mgkjO7eV3vp5IMkSl_vx29nEIPmr2MYIarrhRLSaI1ttpYY_2iEvHQ0MLS8ZAcUxXBKHSpHGLj4ndHQe6FtVb5QwDDVMoNp-BphZqTq9hfy6RNV3V-Wl_oxpdTyY?key=1vVJkog6CVizX3rIEfk9xSUU

 

STEP #4. On the “Policies >>> Real-time Protection” menu define an HTTP Profile like below which block all the request toward the translation services which has the company’s sharepoint as referrer into the request:

 

AD_4nXdcGzZN4zGj7kRKu38DkMrZpvcjqfsts-XZRRcAH_o2_8i1M75XscUViqt3IxODDp5We1HpgkC765n8U0RvJ0ZdrpAj3YsbXPrLEmwD52Sm-cIuLBl9o5dHfFWr8FJDV8_2-OZ8hnivWeh4c7pLd_4?key=1vVJkog6CVizX3rIEfk9xSUU

The final result would be this:

 

AD_4nXdHHeXwaayXjAjQfxGV8M7mUnRAj8tFN3mnAtp_ZEWDDeHNt_65HF3wnSAHE724Vvv3tKd3bZXBxlThm3dkxxgYS31tGsdieHgK44x_c-60FoiddAT0H8HHmx04KR4oijQonk_7-sQp-4rZkLFNrpI?key=1vVJkog6CVizX3rIEfk9xSUU

Terms and Conditions

  • All documented information undergoes testing and verification to ensure accuracy.
  • In the future, it is possible that the application's functionality may be altered by the vendor. If any such changes are brought to our attention, we will promptly update the documentation to reflect them.

Notes

  • This article is authored by Netskope Global Technical Success (GTS).
  • For any further inquiries related to this article, please contact Netskope GTS by submitting a support case with 'Case Type – How To Questions'.
Be the first to reply!