cancel
Showing results for 
Search instead for 
Did you mean: 

PKI - Exchange 2007 - EV80 - Journaling

GertjanA
Moderator
Moderator
Partner    VIP    Accredited Certified
Hello all,

A question I cannot truly find an answer on.
We plan to use PKI in our infrastructure in the future.

Can EV then still archive messages from the journalmailbox, are these completely indexed, will they be ' researchable'  using DA?

Does anyone know, or have experience in using PKI together with EV?

Thanks.

Gertjan
Regards. Gertjan
1 ACCEPTED SOLUTION

Accepted Solutions

MichelZ
Level 6
Partner Accredited Certified
Gertjan

Busy, yep... as always... ;)

You then need the "Secure Messaging and Rights Management Adapter"

From the Website: (http://www.symantec.com/business/products/agents_options.jsp?pcid=2244&pvid=322_1)

Secure Messaging and Rights Management Adapter

The Enterprise Vault 8.0 Secure Messaging and Rights Management Adapter replaces the following EV 7.x named adapters:
  • Adapter for Microsoft Rights Management Server
  • Adapter for PGP
  • Adapter for Liquid Machines (LMDC)
Licensing this connector provides ability to read and index encrypted content enabling Compliance Accelerator and Discovery Accelerator to discover and review Journal content. Specifically this license enables Enterprise Vault to decrypt content secured by Microsoft Rights Management Sever, PGP encryption added by PGP Desktop (including Universal Server) and Enterprise Rights Management protections added by LiquidMachines Document Control.


So you need to make sure that your Encryption product is supported, and you need an "Additional Encryption Key" (PGP) when encrypting the messages, and make this Key available to the Adapter for decrypting the messages. Something like this ;)

Cheers
Michel

cloudficient - EV Migration, creators of EVComplete.

View solution in original post

4 REPLIES 4

MichelZ
Level 6
Partner Accredited Certified
Gertjan This depends on how you use it. Do you just sign the messages? Then everything should work as normal. If you encrypt them, then you probably need a connector to decrypt the messages. Is this waht you are looking for? /Michel

cloudficient - EV Migration, creators of EVComplete.

GertjanA
Moderator
Moderator
Partner    VIP    Accredited Certified
Hello Michel,

Long time no speak. Busy I assume?

I'm more concerned about encrypting.

If we use encryption, would it be sufficient to grant the VSA some sort of ' super pki'  so it can decrypt messages? Especially concerning journalarchiving.

Thanks.
Regards. Gertjan

Wayne_Humphrey
Level 6
Partner Accredited Certified
Hi Gertjain,

Are you just signing using PKI or are you encrypting you messages? If you are encrypting the messages naa, you cannot give the VSA any rights, well you can but the ArchivingAgent does not know how to handle the encrypted msg, so no.. its simple it will only archive the encrypted msg, it will need to be decrypted on the agent side....  So you gonna have issues with DA / CA from a journal standpoint if you do not use RMA.


MichelZ
Level 6
Partner Accredited Certified
Gertjan

Busy, yep... as always... ;)

You then need the "Secure Messaging and Rights Management Adapter"

From the Website: (http://www.symantec.com/business/products/agents_options.jsp?pcid=2244&pvid=322_1)

Secure Messaging and Rights Management Adapter

The Enterprise Vault 8.0 Secure Messaging and Rights Management Adapter replaces the following EV 7.x named adapters:
  • Adapter for Microsoft Rights Management Server
  • Adapter for PGP
  • Adapter for Liquid Machines (LMDC)
Licensing this connector provides ability to read and index encrypted content enabling Compliance Accelerator and Discovery Accelerator to discover and review Journal content. Specifically this license enables Enterprise Vault to decrypt content secured by Microsoft Rights Management Sever, PGP encryption added by PGP Desktop (including Universal Server) and Enterprise Rights Management protections added by LiquidMachines Document Control.


So you need to make sure that your Encryption product is supported, and you need an "Additional Encryption Key" (PGP) when encrypting the messages, and make this Key available to the Adapter for decrypting the messages. Something like this ;)

Cheers
Michel

cloudficient - EV Migration, creators of EVComplete.