When two CA Data Protection machines transfer data using the Java RMI service, the data is encrypted with TLS.
In practical terms, this means that any potentially sensitive data is encrypted. The cryptographic modules are used to encrypt communications between machines running the CA Data Protection Infrastructure, plus data stored by the infrastructure such as encryption keys and Binary Large Object files (blobs) containing captured data.
In terms of its cryptographic boundary, CA Data Protection is self-contained. It has no dependency on an external Public Key Infrastructure (PKI).
Note: A blob file contains the text content of a captured file, e‑mail or Web page, stored in CA Data Protection format.
Copyright © 2015 CA Technologies.
All rights reserved.
|
|