The FSA can scan, analyze and apply policy to files saved in file system, items in Exchange Public Folders and on SharePoint sites, and database records. It can run multiple scanning jobs simultaneously, with each job scanning separate folders or machines and, if required, using a separate ‘run as’ account to access remote machines. An example FSA deployment architecture for scanning remote file systems is shown below.
Example FSA deployment: file scanning
For files that do need scanning, the FSA can then optionally query a NIST database (4b) to identify system files which can be omitted from the scanning job.
When processing is complete, the hub also passes back to the FSA details of any actions that must be taken (for example, to delete a file or copy it to a new location).
The policy engine then analyzes the file and applies Data At Rest triggers as necessary. Any resulting control actions (for example, to delete or copy a file) are passed back to the hub (5). The hub then relays these actions to the FSA (1).
Copyright © 2015 CA Technologies.
All rights reserved.
|
|