Endpoint Encryption for Files and Folders 4.0 User Guide - McAfee

Endpoint Encryption for Files and Folders 4.0 User Guide - McAfee Endpoint Encryption for Files and Folders 4.0 User Guide - McAfee

kc.mcafee.com
from kc.mcafee.com More from this publisher
26.12.2013 Views

Introducing McAfee Endpoint Encryption for Files and Folders McAfee Endpoint Encryption for Files and Folders (EEFF) offers data protection in the form of powerful encryption technology so that only authorized users can access information. Contents Why EEFF? How EEFF 4.0 works EEFF Features System requirements About this guide Why EEFF? EEFF offers enhanced security to protect your data. EEFF depends on Microsoft Windows user accounts and works in real-time to authenticate user to access encryption keys and to retrieve the correct policy in EEFF. A smart card implementation based on Windows logon can be used for enhanced security. Endpoint Encryption for Files and Folders allows you to define and protect information in a way that only certain users can access it. This data is stored, managed, archived, and distributed as any other file is, however, it can be viewed only by those who have been granted access. Endpoint Encryption for Files and Folders is a Persistent Encryption engine: when a file has been encrypted and has been moved or copied to another place, it remains encrypted. If a file is moved out of an encrypted directory, it will also remain encrypted. Likewise, if an encrypted file is moved to a memory stick – the encryption will remain in place. EEFF integrates with McAfee ePolicy Orchestrator (ePO), which provides a single point of control over all the data on the systems. EEFF with ePO supports both user-based and system-based policies. Assigning these policies to users encrypts the data on the client as configured. EEFF depends on Microsoft Windows credentials therefore, both registered domain users and local system users can be assented encryption policies and associated keys. How EEFF 4.0 works EEFF encrypts folders and files according to policies assigned to the user. These policies are enforced by the ePO server. 4 McAfee Endpoint Encryption for Files and Folders software version 4.0.0 User Guide

Introducing McAfee Endpoint Encryption for Files and Folders EEFF Features The client software is installed on the client system. After the installation, the system synchronizes with the ePO server and acquires the user data. EEFF then assigns encryption policies and keys to the user as configured. EEFF client acts like a filter between the application creating or editing the files and the storage media. When a file is saved, EEFF filter executes the assigned encryption policies and encrypts the data, if applicable. If the user manages to kill the main EEFF process on the client system, EEFF encrypts folders and files according to policies assigned to the user. These policies are enforced by the ePO server. The client software is installed on the client system. After the installation, the system synchronizes with the ePO server and acquires the user data. EEFF then assigns encryption policies and keys to the user as configured. The EEFF client acts like a filter between the application creating or editing the files and the storage media. When a file is saved, the EEFF filter executes the assigned encryption policies and encrypts the data, if applicable. If the user manages to kill the main EEFF process (MfeffCore.exe) on the client system, attempting to deviate from the assigned encryption policy, the process will be automatically regenerated. The automatic restart cannot be disabled. When a file that is encrypted with key A is moved to a folder where files are encrypted with key B, the file encrypted with key A will immediately be re-encrypted with key B. This behavior is known as follow-target-encryption and requires that the user or process transferring the file has access to both key A and key B. This operation takes place instantly when the file is placed in the folder encrypted with key B. EEFF Features • Centralized management — Provides support for deploying and managing McAfee Endpoint Encryption for Files and Folders using ePO 4.5 and 4.6. • Windows authentication based policy enforcement — Assigns encryption policies and keys to Windows user accounts. • Integration with the McAfee Tray icon - Consolidates the tray icons to one common McAfee icon. • User Personal Keys - Allow users to have individual keys, generated centrally and possible to assign in policies for encryption. • Protect data on Removable media — Provides support for removable media encryption. • Migration from EEFF v3.x to EEFF v4 - Provides support for migrating keys from EEFF v3.x to EEFF v4 by importing them into ePO. • File Extension exclusion - Excludes the listed file types from encryption. For example, MP3 and WAV files. System requirements System requirements Systems ePO Server Systems Requirements See McAfee ePolicy Orchestrator 4.5 and 4.6 - Installation Guide McAfee Endpoint Encryption for Files and Folders software version 4.0.0 User Guide 5

Introducing <strong>McAfee</strong> <strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong><br />

<strong>Files</strong> <strong>and</strong> <strong>Folders</strong><br />

<strong>McAfee</strong> <strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> (EEFF) offers data protection in the <strong>for</strong>m of<br />

powerful encryption technology so that only authorized users can access in<strong>for</strong>mation.<br />

Contents<br />

Why EEFF?<br />

How EEFF <strong>4.0</strong> works<br />

EEFF Features<br />

System requirements<br />

About this guide<br />

Why EEFF?<br />

EEFF offers enhanced security to protect your data. EEFF depends on Microsoft Windows user<br />

accounts <strong>and</strong> works in real-time to authenticate user to access encryption keys <strong>and</strong> to retrieve<br />

the correct policy in EEFF. A smart card implementation based on Windows logon can be used<br />

<strong>for</strong> enhanced security.<br />

<strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> allows you to define <strong>and</strong> protect in<strong>for</strong>mation in a way<br />

that only certain users can access it. This data is stored, managed, archived, <strong>and</strong> distributed<br />

as any other file is, however, it can be viewed only by those who have been granted access.<br />

<strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> is a Persistent <strong>Encryption</strong> engine: when a file has<br />

been encrypted <strong>and</strong> has been moved or copied to another place, it remains encrypted. If a file<br />

is moved out of an encrypted directory, it will also remain encrypted. Likewise, if an encrypted<br />

file is moved to a memory stick – the encryption will remain in place.<br />

EEFF integrates with <strong>McAfee</strong> ePolicy Orchestrator (ePO), which provides a single point of control<br />

over all the data on the systems. EEFF with ePO supports both user-based <strong>and</strong> system-based<br />

policies. Assigning these policies to users encrypts the data on the client as configured.<br />

EEFF depends on Microsoft Windows credentials there<strong>for</strong>e, both registered domain users <strong>and</strong><br />

local system users can be assented encryption policies <strong>and</strong> associated keys.<br />

How EEFF <strong>4.0</strong> works<br />

EEFF encrypts folders <strong>and</strong> files according to policies assigned to the user. These policies are<br />

en<strong>for</strong>ced by the ePO server.<br />

4<br />

<strong>McAfee</strong> <strong>Endpoint</strong> <strong>Encryption</strong> <strong>for</strong> <strong>Files</strong> <strong>and</strong> <strong>Folders</strong> software version <strong>4.0</strong>.0 <strong>User</strong> <strong>Guide</strong>

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!