HP MFP Digital Sending Software (DSS) 5.0 - Security Features
17
The screenshot below shows a workflow form being configured and a secure URL being provided for the
SharePoint destination.
Server certificate validation for communication with SharePoint servers is enabled in the Configuration
Utility UI on the Security tab shown earlier in this paper. If the DSS administrator wants server certificate
validation on in general but wants to exclude communication with a SharePoint server then the
SharePoint server should be added to the Server / Device exceptions list box.
Device Access of Address Book Information in the DSS Database
FutureSmart devices directly access the DSS database for addressing information. When a FutureSmart
device is bound to DSS it is given the SQL connection string needed to directly access the DSS database.
This connection string is passed to the device using the encryption scheme described earlier in this
paper in the section “SSL/TLS Encryption with FutureSmart Devices”.
Security for the data exchange between FutureSmart devices and the DSS database is provided by the
username and password that are part of the connection string. Once the connection is made the data is
transferred without being encrypted. This data can include names, physical addresses, fax numbers,
phone numbers and email addresses.
Pre-FutureSmart devices do not exchange data directly with the DSS database. Pre-FutureSmart devices
request address information from the DSS service which in turn collects the information from its
database and returns it to the device. This information exchanged is encrypted using the scheme
described earlier in this paper in the section “Data encryption with pre-FutureSmart Devices”.
E-mail Signing and Encryption
In addition to SLL / TLS protocol security provided by DSS for communication to SMTP servers, there are
two other security mechanisms available for e-mail jobs when the e-mail is sent from a FutureSmart
device via DSS. These are e-mail encryption and e-mail signing. Email encryption and signing operate on
the data of the e-mail message, while SSL / TLS protocols encrypt the entire communication channel
between DSS and SMTP servers. These three security mechanisms can be used individually or in any
combination with each other.