FAQ

   


FAQs by Category 

Installation Guide



  
FAQ No.:00017 
Category:Backend Systems; Curtain Client; Data Leakage; Encryption 

 
Question:Where does Curtain e-locker do encryption?
 
Answer:Curtain e-locker applies encryption mainly in two areas:
  1. Data packets during data transmission between Protected share folder (server-side) and Local Protected Directory (user's workstation)
  2. By default, Local Protected Directory is not encrypted when it is created after installation of Curtain Client. Administrators can enable the function of Local Encrypted Drive to encrypt Local Protected Directory in order to enhance the security. Once Local Encrypted Drive is applied to a workstation, it cannot be rolled-back to non-encrypted local protected directory. Actually Local Encrypted Drive is a virtual drive. The drive is stored as an encrypted file when the client computer is power off. When the computer startup, the encrypted file will be mounted as a virtual drive. Users can access data stored in the virtual drive normally. Since all the data in the virtual drive is stored as an encrypted file when computer is off, the data is well protected even the computer is lost or stolen. The size of the Local Encrypted Drive will be equal to the size of the encrypted file. Therefore, please make sure that the location for storing the encrypted file has enough free space for the encrypted file. That is the mechanism of Local Encrypted Drive. (Ref : FAQ 00181)

Curtain e-locker does not apply encryption in server-side. This design does not affect normal procedures of server backup and restore. Also, it does not affect communication between servers. However, if a user can be in front of the server and logs into the system locally, the user can copy data from Protected share folder to other locations. In general, common users do NOT have rights to log into servers locally. We believe this design makes a good balance between convenience and security.