Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

SafeGuard Enterprise Integration

I am a vendor who is trying to integrate the Sophos product
with ours. We have a Data Discovery Suite, that crawls the cloud we provided
the customer, and other UNC or NFS mount paths, and indexes the files for
e-discovery.

The Sophos customer is just starting to deploy you product,
and we are trying to figure out how our indexing engine can de-crypt files when
it encounters them for indexing.

Is there an API for the client side we can use? They said
they will have a “GOD” key that our equipment can use.

Any other integration tools?

:26241


This thread was automatically locked due to age.
Parents
  • Officially Sophos does NOT have a linux version, they may be working on one however any information would probably be disclosed by a Sophos engineer under NDA.

    Embedded appliance integration REALLY requires doing whatever is required to have Sophos as an integration partner, this isn't a "just buy this, do this to get this to work".

    It might be possible to engineer something if you can get the customer to extract the certs and encryption key the file was encrypted with and you have some encryption gurus, and you have an NDA with the required documentation and consulting from a Sophos Engineer.  That would be key to getting that to work.

    As a backup option I would also suggest setting up an independant vmware player appliance to run on a server (or can be used with ESX if the customer has it) that can decrypt, and your device should moniter, manage, the VM, as well as control push/pull.  This would essentially create a "staging area" to use for encryption/decryption.  I've scene a number of companies use a pre-fabircated VM on a customers server (or your own) as a staging area for embedded linux appliance file transfers.  This two stage process could also do stuff like verify file integrity at both locations in cases of shakey internet connections or broket fiel transfer pipes, heavy packet loss, and other tasks like enforce signing and cert checking, have a deticated VPN tunnel, etc, to make sure the route and file transfers from said VM are secured sense you are decrypting before transport.  Some companies doing encrypted cloud backup integration are using this method to aboid windows to linux integration issues on the customers side.

    :26451
Reply
  • Officially Sophos does NOT have a linux version, they may be working on one however any information would probably be disclosed by a Sophos engineer under NDA.

    Embedded appliance integration REALLY requires doing whatever is required to have Sophos as an integration partner, this isn't a "just buy this, do this to get this to work".

    It might be possible to engineer something if you can get the customer to extract the certs and encryption key the file was encrypted with and you have some encryption gurus, and you have an NDA with the required documentation and consulting from a Sophos Engineer.  That would be key to getting that to work.

    As a backup option I would also suggest setting up an independant vmware player appliance to run on a server (or can be used with ESX if the customer has it) that can decrypt, and your device should moniter, manage, the VM, as well as control push/pull.  This would essentially create a "staging area" to use for encryption/decryption.  I've scene a number of companies use a pre-fabircated VM on a customers server (or your own) as a staging area for embedded linux appliance file transfers.  This two stage process could also do stuff like verify file integrity at both locations in cases of shakey internet connections or broket fiel transfer pipes, heavy packet loss, and other tasks like enforce signing and cert checking, have a deticated VPN tunnel, etc, to make sure the route and file transfers from said VM are secured sense you are decrypting before transport.  Some companies doing encrypted cloud backup integration are using this method to aboid windows to linux integration issues on the customers side.

    :26451
Children
No Data