Security is paramount when sending sensitive data across a public network. CA DLP provides support for two machines to communicate via a secure private tunnel. The tunnel is designed to provide confidentiality, message integrity and endpoint authentication between any two machines in a CA DLP installation. For example, you can use the tunnel to connect a CMS with a remote gateway.

Secure private tunnel architecture
Information leaves the Routing Gateway (1) via the Replication Module (2). The Virtual Socket (3) intercepts requests for TCP sockets and relays data to and from the RMI Server Socket (9) via the secure private tunnel (4 and 8).
To enable the data to pass across the Internet (6), the gateway firewall (5) must be configured with the mapped public address of the routing gateway. The customer firewall (7) must be configured with the mapped public address of the CMS. Data can then reach the database (10) on the customer’s CMS or gateway (11).
| Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |