Configuring a Data Sharing Policy
This section describes how to configure a security baseline policy for data sharing. By default, the General Data Protection type is used, and data is classified into levels L1 through L4. You can change data protection requirements (Suggestion, Not required, or Required). You can also click Configure Data Protection Type to deselect built-in protection types and select custom ones.
- Security audit: Record logs during data sharing to audit the security of shared data.
- Blocking: Establish an emergency response mechanism to quickly terminate data sharing during an incident.
- Masking: Mask data containing sensitive fields.
- Encryption: When data masking is not feasible, protect data by enforcing encryption, utilizing secure transmission protocols, or sharing within a controlled environment.
- Watermarking: Embed watermarks in shared data and establish a tracing mechanism to identify the source of any data leaks.
- Review and supervision: Implement a pre-sharing approval mechanism requiring authorization from the data owner or designated approver. Additionally, conduct routine security audits and reviews of all shared data.
Notes and Constraints
- Deselected built-in measures will not be displayed in the baseline policy table.
- If you deselect a built-in data protection type, it will not be displayed in the baseline policy list, and its default policy requirements will be cleared. The next time you select the type, you will need to configure its policy requirements.
Configuring Data Sharing Protection Measures
- Log in to the DSC console.
- Click
in the upper left corner and select a region or project. - In the navigation pane on the left, choose .
- Click the Sharing tab.
- Click Configure Measures. The Configure Measure page is displayed.
- Built-in measures: DSC provides built-in measures for different data phases based on Huawei Cloud data security governance experience. For details about the built-in measures, see Built-in Measures.
- Custom Measures: The added custom measures are displayed in the baseline policy list.
- You can uncheck the box to deselect unnecessary measures. The deselected measures will not be displayed in the

policy baseline list. - Click Add. The Add Custom Protection Measure page is displayed.
- Enter the measure name and measure description. Click OK to return to the Configure Measure page, where you can see the added measure.
- Click Edit in the Operation column to modify a measure, or click Delete to delete an unnecessary measure.
- Click OK to view the configured measures in the policy baseline list.
Configuring Data Sharing Protection Types
- On the Sharing tab page, click Configure Data Protection Type.
- Built-in Data Protection Type: If a protection type is deselected, the type will not appear in the baseline policy list, and the default policy requirements of this type will be cleared. You will need to customize the policy requirements for the protection type the next time.
- General Data Protection: This type of protection is applied to data that has not been classified based on sensitive data identification.
- Leveled Data Protection Type: Leveled data protection is applicable to data that has been classified and graded. DSC includes built-in sensitive data levels from L1 to L4. If this option is deselected, it will not be displayed in the policy baseline list.
- Custom Data Protection Type: The added custom data protection types are displayed in the policy baseline list.
Select a custom level from the drop-down list box. If no custom level is available, create one by referring to Adding a Sensitivity Level.
- Click OK. In the policy baseline table, view the data protection type.
Modifying Data Sharing Protection Requirements
- On the Sharing tab page, click Modify Protection Requirements. For example, select Not required, Suggestion, or Required from the drop-down list in the Security Auditing column of the General Data Protection row.Figure 1 Modifying protection requirements
- Click Save Changes. You can also click Cancel Changes in the upper left corner to cancel the modification and return to the previous protection requirements.
Follow-up Operations
After configuring the data sharing policy, you are advised to configure data collection, transmission, storage, usage, and destruction policies to improve the security baseline of the entire data lifecycle.
References
- For details about how to identify and classify sensitive data, see Classification and Grading.
- Security baseline policies are preset by DSC for each phase of the data lifecycle. They are used to evaluate data security and compliance. For details, see Policy Baseline Overview.
What is your overall rating for this page?
Thank you very much for your feedback. We will continue working to improve the documentation.See the reply and handling status in My Cloud VOC.
For any further questions, feel free to contact us through the chatbot.
Chatbot