File Share Encryption

 View Only
  • 1.  Email encryption on "keyword".

    Posted Sep 04, 2014 04:43 PM

    I am in the process of configuring Symantec Encryption Server version 3.3.2 (Build 15413).  Can someone tell me if there is a way to trigger outgoing email to be encrypted if it contains keywords or patterns such as a SSN#, patient ID #, etc.?

    Thanks in advance for any help!

    Gregg

     

     


  • 2.  RE: Email encryption on "keyword".

    Posted Sep 04, 2014 04:59 PM
      |   view attached

    Hello,

    If you want to do e-mail encryption with external users then you'll want to use web messenger.

    Here is the document of basic setup.

    Thanks

    Anthony

     

    Attachment(s)



  • 3.  RE: Email encryption on "keyword".

    Posted Sep 04, 2014 05:10 PM

    Sorry I wasn't very clear.  I have web messenger setup and can send encrypted emails to outside users and they can recieve them and connect to the web portal.  I was wondering if I can set up a "dictionary" with these keywords/phrases to trigger encryption.

    Thanks...

     



  • 4.  RE: Email encryption on "keyword".
    Best Answer

    Posted Sep 04, 2014 09:00 PM

    Greg,

    I understand you are looking to modify your web messenger configuration so that it will only encrypt to external customers when certain conditions are met (Credit card data, ssn, etc.) It is possible, but difficult.

    There was a recent thread where the same question was asked, and a very thorough answer was given. Please see : http://www.symantec.com/connect/forums/email-encryption-pgp-desktop-managed-client

    There you will find instructions on how to create policy rules to kick off web messenger encryption for things like SSN and Credit card data. However, it is a difficult process, and we recommend thoroughly testing any policy changes that you make in a lab or test environment first.

    Additionally, you may want to consider that the SEMS server can integrate with Symantec Data Loss Prevention. This would be a more professional and easier to support solution. I'll include the details on DLP and how it integrates with the product below. This information can be found on P. 169 of the SEMS 3.3.2 admin guide (or P.185 if you are viewing in a PDF reader)

    "Symantec Encryption Management Server now integrates with Symantec Data Loss Prevention and Symantec Messaging Gateway powered by Brightmail.

    • Symantec Encryption Management Server secures sensitive email and reports back to Data Loss Prevention with confirmation that messaging security is followed.
    • Messaging Gateway sends outbound email to Data Loss Prevention.
    • Data Loss Prevention scans the email, flags it for security violations or sensitivity, and then sends it back to Messaging Gateway.
    • Messaging Gateway sends flagged email on to Symantec Encryption Management Server.
    • Symantec Encryption Management Server processes the email through mail policy.
    • Symantec Encryption Management Server then sends status confirmation back to Data Loss Prevention that the message was encrypted and sent out in compliance with security requirements."



     



  • 5.  RE: Email encryption on "keyword".

    Posted Sep 05, 2014 09:23 AM

    Thanks for the reply.  After doing more reading I think we may need to look into the DLP product.  

     

    Thanks again...

    Gregg