Alena Reinaldo Cristel Randy Data Leak Prevention Alena Reinaldo Cristel Randy
Enterprise use public clouds Data at rest vulnerable to leaks The number of data breaches is the last 5 years is huge. It includes goverments, retail, credit agencies, movie studios, etc. Encryption of data at rest How to ensure sharing?
Enforcing authorization policies: Magen key server Policy server id server Authentication Authorization User device Encryption Decryption Public cloud File access
Problem Two days ago magen was pushing temporary unencrypted files to the cloud before serving to the user
New flow of interaction Magen key server Policy server id server Authentication Authorization User device Public cloud File access Encryption Decryption
Demo 1. Encryption 7. Decryption Reinaldo’s laptop [Magen Agent] Alena’s laptop [Magen Agent] 3. Upload 6. Download Dropbox 4. Share 2. Encrypt Asset 5. Retrieve key Key Server Policy Server Ingestion Server 3. Push key 4. Retrieve key
DropBox Empty
Create and Publish Encrypted File
Dropbox with Shared File
Shared File is Encrypted at Rest
Share Link
Link Received
Magen Local Agent
Magen Assets Repository
Download Asset to Magen Agent
Asset added to Magen Repo
View Asset without Decrypt
Decrypt Asset and View