Reference Guide

Security Management Server v10.2.7 AdminHelp
297
If you have a transitional period, when it is complete, clear the Auto access for swept files check box.
Be aware of the following for an enterprise that already had Data Guardian installed on Windows or
Mac.
Internal users in access groups
Pre-existing encrypted files created
before Access Groups
New files created after
were enabled
Force-protected mode
Force-protected mode - files that Data Guardian swept
Force-Protected sweep (Office documents, PDFs)
Basic File Protection sweep (additional file types)
Internal users within the access group do not have automatic
access.
Owner of the file can grant protected access.
Users with a protected file can request access.
In the Management Console, if needed, you can revoke key
access that has been granted.
Note: During the transitional period when Auto access for
swept files was enabled, if a user within the access group
opened the file, that user has permanent access, and you
cannot revoke key access.
Internal users within the access group ha
protected files.
If so
meone is removed from
access.
If the owner of a file leaves th
still have access.
Opt-in mode
Opt-in mode - files that Data Guardian swept
Secure documents folder sweep
Basic File Protection sweep (additional file types)
TITUS classification (Windows)
Content Based Protection (Windows)
Same as above.
Same as above.
Opt-in mode files protected through:
Protected Save As
Right-click protect
Basic File Protection - direct save
Protected messages
Internal users within the access group do not have automatic
access.
Owner of the file can grant protected access.
Users with a protected file can request access.
In the Management Console, if needed, you can revoke key
access that has been granted.
Same as above.
Internal users not in the access group and external users
Files created before Access Groups
were enabled
New files created after
were enabled
Force-protected mode
Force-protected mode - files that Data Guardian swept
Force-Protected sweep (Office documents, PDFs)
Basic File Protection sweep (additional file types)
Note: Sweeping only applies to internal users. External users'
computers are not swept.
Internal users outside the access group and external users do
not have automatic access.
Owner of the file can grant protected access.
Users with a protected file can request access.
In the Management Console, if needed, you can revoke key
access that has been granted.
Note: During the transitional period when Auto access for
swept files was enabled, if a user within the access group
opened the file, that user has permanent access, and you
Internal users outside the access group a
not have automatic access.
Owner of the file can grant p
Users with a new protected f
In the Management Console, if needed, y
access that has been granted.
Note:
During the transitional period whe
swept files
was enabled, if a user within t
opened the file, that user has permanent