File Share Encryption

 View Only
Expand all | Collapse all

SED with Web Email Protection Policy

  • 1.  SED with Web Email Protection Policy

    Posted Mar 27, 2014 12:05 PM

    Hi Guys,

    Can I enforce a policy with SED that emails with a label are sent through Symantec Web Email Proection ..??

    Thank you.



  • 2.  RE: SED with Web Email Protection Policy

    Posted Mar 27, 2014 12:48 PM

    Yes.  You can use any of the other criterion ([WEB] in subject for example)

     

    Create another policy chain and call it Outbound: Web Messenger Only

    Inside that chain create a rule that is always true to send via Web Email Protection.

    Then go to your normal outbound rule you created at the start and when it hits whatever criteria you want, select it to "Goto Chain: Outbound: Web Messenger Only"

     

    Done!



  • 3.  RE: SED with Web Email Protection Policy

    Posted Mar 27, 2014 03:28 PM

    Do I need to have a outbound proxy for the Web Messenger to work ??



  • 4.  RE: SED with Web Email Protection Policy

    Posted Mar 27, 2014 07:03 PM

    Thanks ALEX_CST,

    I have a doubt, public keys must be in SED in SEMS or both..??

    Regards,



  • 5.  RE: SED with Web Email Protection Policy

    Broadcom Employee
    Posted Mar 27, 2014 07:14 PM
    Hi rojopipe, If you have public keys for the recipient you shouldn't be needing the Web Messenger because you can send the message secured and the owner of the key will be able to decrypt it. Rgs, dcats


  • 6.  RE: SED with Web Email Protection Policy

    Posted Mar 28, 2014 05:04 AM

    Web Messenger is for sending emails to recipients with no encryption.  So there's no key exchange at all.  Web Messenger is traditionally used as a KNF (Key Not Found) option.  



  • 7.  RE: SED with Web Email Protection Policy

    Posted Mar 28, 2014 08:05 PM

    Hi Dcats / Alex_CST,

    I'm confused.

    Please correct me if I'm wrong:

    1. When I use SED, I must have recipient's public key to encrypt messages.
    2. The public key can be stored in SED and
    /or SEMS so I can encrypt messages sent to SED.
    3. If using Web Messenger or PDF messenger not use keys.
    4. By submitting a notification of Web Messenger is created and saved a public key of the recipient in SEMS.

    5. If 3 and 4 are true, the key of the item 4 ,what is it used..?

    Thanks.



  • 8.  RE: SED with Web Email Protection Policy

    Posted Mar 28, 2014 08:36 PM

    Hi Rojopipe,

    When the SEMS server sends a link to an External user with Web Messenger.  The external user creates a mailbox on your SEMS server during first setup.  Once this is done the server creates a key pair for the external user.  Everytime you send a message to the external user then the server encrypts to the users key even though it is on the server.  SEMS lets the user know that they have a secure message.

    Web messenger does use keys for external users but it is all managed by the server.

    Thanks

    Anthony  



  • 9.  RE: SED with Web Email Protection Policy

    Broadcom Employee
    Posted Mar 29, 2014 02:36 AM
    Hi rojopipe, As all of this is handled by SEMS, the recipient doesn't have the private key to decrypt the message. Depending on the configuration of the Consumer policy they can have other delivery options available, but that's another chapter. :-) Rgs, dcats


  • 10.  RE: SED with Web Email Protection Policy

    Posted Apr 01, 2014 08:28 PM

    Thank you very much for all.

    A question more: How can i avoid double authentication to Web Messenger users, I think that's a security breach.

    Regards



  • 11.  RE: SED with Web Email Protection Policy

    Broadcom Employee
    Posted Apr 02, 2014 03:21 AM

    Hi rojopipe,

    What do you mean by double authentication?
    Are they asked to enter their credentials twice or they can open concurrent sessions?

    To the best of my knowledge none of these should be happening. For the last one, please see: Unable to login to Symantec Web Email Protection using consecutive sessions (formerly Known as Web Messenger) - TECH183654.

    Do you have a Customization in place? If so, please set it back to the Simple (default) and test again.


    Rgs,
    dcats



  • 12.  RE: SED with Web Email Protection Policy

    Posted Apr 02, 2014 04:48 PM

    Hi Dcats,

    A few days ago, we updated SEMS to version 3.3.2 and since then allows the simultaneous authentication of the same user.

    I was reviewing the path /var/lib/ovid/customization and found the following:

    ten files with .sh extension

    one file with .sh.rpmsave extension

    one file with .sh.rpmsav extension

    and one file with .rnd extension

    is tthat normally..?

    Thanks.



  • 13.  RE: SED with Web Email Protection Policy

    Broadcom Employee
    Posted Apr 03, 2014 05:51 AM

    Hi rojopipe,

    I meant WEP customization, not the server.
    Services > Web Messenger/Web Email Protection > Add Templates

    For instance: Unable to Apply Existing Customized Templates to Web Messenger - TECH170307
     

    Rgs,
    dcats