Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Forcepoint TRITON AP-EMAIL Message Encryption : Third-party application message encryption
Third-party application message encryption
Email Encryption | TRITON AP-EMAIL | Updated: 02-May-2016
TRITON AP-EMAIL supports the use of third-party software for message encryption. Enable this encryption method by selecting the Third-party application option in the Encryption method drop-down list (Settings > Inbound/Outbound > Encryption).
The third-party application must support the use of x-headers for communication with the Email module.
TRITON AP-EMAIL can be configured to add an x-header to a message that triggers an encryption policy. Other x-headers can indicate encryption success or failure. These x-headers facilitate communication between the email protection system and the third-party encryption software. You must ensure that the x-header settings made in the Email module Encryption page match the corresponding settings in the third-party software configuration. See TRITON AP-EMAIL Administrator Help for information about configuring the Email module for a third-party encryption application.
You also need to configure an outbound email DLP policy in the Data module. See Data Security Manager Help for details about configuring an email DLP policy with an encryption action plan. See Creating an email DLP policy for encryption for a sample email DLP policy configuration.
Preparations for using third-party application encryption also involve the following tasks:
*
*
Setting the encryption gateway IP address
Perform the following steps in the TRITON Manager Email module to configure the encryption gateway IP address:
1.
In the Settings > Inbound/Outbound > IP Groups page, click Encryption Gateway in the IP Address Group List.
2.
3.
4.
Setting the encryption gateway options
Perform the following steps in the Email module to configure the encryption gateway options:
1.
In the Settings > Inbound/Outbound > Encryption page, select Third-party application from the Encryption method drop-down list.
2.
3.
Mark the Enable MX lookup check box to enable the MX lookup function.
Important 
*
Mark the Enable MX lookup check box for encrypted message routing based on the hostname MX record.
4.
5.
Ensure that Encryption Gateway is displayed in the Encrypted IP address group drop-down list. This selection helps to prevent the creation of an email routing loop.
6.
If you want users to present credentials to view encrypted mail, mark the Require authentication check box and supply the desired user name and password in the appropriate fields. Authentication must be supported and configured on your encryption server to use this function.
7.
In the Encryption X-header field, enter the header name and value that you created in your third-party application using the following format:
header name:value
8.
In the Encryption success X-header field, enter the header name and value that you created in your third-party application for the encryption success header using the format shown in the previous step.
9.
In the Encryption failure X-header field, enter the header name and value that you created in your third-party application for the encryption failure header using the format shown in step 7.
10.
Click OK.

Go to the table of contents Go to the previous page Go to the next page View or print as PDF
Forcepoint TRITON AP-EMAIL Message Encryption : Third-party application message encryption
Copyright 2016 Forcepoint LLC. All rights reserved.