Thursday, February 05, 2009

When DLP and Encryption Collide

We're putting a new e-mail system into place and communications between all the points, client to server, server to firewall all have to use encrypted links. The data leak prevention (dlp) system which we use sits on the network simply "listening" to the traffic going past, it's not specifically aware of protocols nor is it part of the e-mail path. The DLP system cannot read encrypted links.

So, security are telling us that all links have to be secure yet all traffic has to be accessible to the DLP. Which one do they want because they can't have both with the current systems they're using!

Mobile post sent by Daz71 using Utterlireply-count Replies.

No comments: