Protected Trust Journaling Guide. Privacy Security Compliance

Similar documents
Sonian Getting Started Guide October 2008

Backup & Restore Guide

8.7. NET SatisFAXtion Gateway Installation Guide. For NET SatisFAXtion 8.7. Contents

Configuring Thunderbird with UEA Exchange 2007:

White Paper. Installation and Configuration of Fabasoft Folio IMAP Service. Fabasoft Folio 2015 Update Rollup 3

8.6. NET SatisFAXtion Gateway Installation Guide. For NET SatisFAXtion 8.6. Contents

Using Microsoft Windows Authentication for Microsoft SQL Server Connections in Data Archive

PineApp Surf-SeCure Quick

escan SBS 2008 Installation Guide

Alert Notification of Critical Results (ANCR) Public Domain Deployment Instructions

Nokia for Business. Nokia and Nokia Connecting People are registered trademarks of Nokia Corporation

User s Manual. Management Software for ATS

Configuring Cisco CallManager IP Phones to Work With IP Phone Agent

Client configuration and migration Guide Setting up Thunderbird 3.1

Technical Note. Configuring Outlook Web Access with Secure WebMail Proxy for eprism

3. On the Accounts wizard window, select Add a new account, and then click Next.

User guide. Business

Help for System Administrators

Archiving with MS Exchange Server

Windows Live Mail Setup Guide

Fax User Guide 07/31/2014 USER GUIDE

Architecture and Data Flow Overview. BlackBerry Enterprise Service Version: Quick Reference

NeoMail Guide. Neotel (Pty) Ltd

Getting Started with your Hosted Microsoft Exchange 2010 Administrators Quick Start Guide to Hosted Exchange 2010

Webmail. Setting up your account

Issue 2EN. Nokia and Nokia Connecting People are registered trademarks of Nokia Corporation

Toll Free: International:

How to setup your iphone client

Neoteris IVE Integration Guide

OneLogin Integration User Guide

Exchange Outlook Profile/POP/IMAP/SMTP Setup Guide

Cloud Control Panel (CCP) Installation Guide

DESKTOP CLIENT CONFIGURATION GUIDE BUSINESS

Steps for: POP (Post Office Protocol) and IMAP (Internet Message Access Protocol) setup on MAC Platforms

Protected Trust Setup Guide for Brother MFC Devices

How To Use Gfi Mailarchiver On A Pc Or Macbook With Gfi From A Windows 7.5 (Windows 7) On A Microsoft Mail Server On A Gfi Server On An Ipod Or Gfi.Org (

Converting Prospects to Purchasers.

Install and configure server

Initial Setup of Mozilla Thunderbird with IMAP for Windows 7

Installation Notes for Outpost Network Security (ONS) version 3.2

BlackShield ID Agent for Terminal Services Web and Remote Desktop Web

BlackShield ID Agent for Remote Web Workplace

CHAPTER 1 Exploring Mobile Devices with IMail 1

Neoteris IVE Integration Guide

Upgrade Guide BES12. Version 12.1

Device Log Export ENGLISH

WEBROOT ARCHIVING SERVICE. Getting Started Guide North America. The best security in an unsecured world. TM

User Guide Online Backup

Initial Setup of Mozilla Thunderbird with IMAP for OS X Lion

SharePoint Password Change & Expiration 3.0 User Guide

This information is provided for informational purposes only.

Request Manager Installation and Configuration Guide

Defender Token Deployment System Quick Start Guide

Installation & Configuration Guide Version 1.0. TekSMTP Version Installation & Configuration Guide

Before starting to use the new system you will need to know the password to your e-wire account.

Mail Programs. Manual

Standard Mailbox Software Setup Guide

Workspot Configuration Guide for the Cisco Adaptive Security Appliance

Configuration Task 3: (Optional) As part of configuration, you can deploy rules. For more information, see "Deploy Inbox Rules" below.

Migration User Guides: The Console Application Setup Guide

TSM for Windows Installation Instructions: Download the latest TSM Client Using the following link:


1 Thunderbird v3 and IMAP/SMTP Configuration

setup information for most domains hosted with InfoRailway.

Configuring MailArchiva with Insight Server

Enterprise Manager. Version 6.2. Installation Guide

User Manual. Onsight Management Suite Version 5.1. Another Innovation by Librestream

Kerio Connect. Kerio 4D Migration. Kerio Technologies

Nokia E90 Communicator support

Quick Scan Features Setup Guide

NSi Mobile Installation Guide. Version 6.2

Mobility Manager 9.5. Installation Guide

Receiver Updater for Windows 4.0 and 3.x

How to configure your client

Installing The SysAidTM Server Locally

SCOoffice Mail Connector For Microsoft Outlook. Installation Guide Outlook 2002

IRMACS Setup. Your IRMACS is available internally by the IMAP protocol. The server settings used are:

GWARC Add-On User Manual for the Tangent Datacove Server Appliance

POLICY PATROL MFT. Manual

1. Open Thunderbird. If the Import Wizard window opens, select Don t import anything and click Next and go to step 3.

Open Thunderbird. To set up an account in Thunderbird, from the Tools menu select Account Settings; choose account; then click Next.

Integration Client Guide

Using Internet or Windows Explorer to Upload Your Site

Configuring the Cisco ISA500 for Active Directory/LDAP and RADIUS Authentication

Version 1.7. Inbound Integration (POP3 and IMAP) Installation, Configuration and User Guide. Last updated October 2011

Configuration Guide. BES12 Cloud

Basic Exchange Setup Guide

iphone in Business How-To Setup Guide for Users

RoomWizard Synchronization Software Manual Installation Instructions

Domains Help Documentation This document was auto-created from web content and is subject to change at any time. Copyright (c) 2016 SmarterTools Inc.

WEBCONNECT INSTALLATION GUIDE. Version 1.96

HowTo: Logging, reporting, log-analysis and log server setup Version 2007nx Release 3. Log server version 2.0

Information Technology Services. Your mailbox is moving to the cloud. Here is what to expect.

Dell SupportAssist Version 2.0 for Dell OpenManage Essentials Quick Start Guide

Client Configuration Secure Socket Layer. Information Technology Services 2010

Configuring your client to connect to your Exchange mailbox

Installing Policy Patrol on a separate machine

Transcription:

Protected Trust Journaling Guide Privacy Security Compliance

Protected Trust Journaling Guide Summary With Protected Trust Journaling, you can archive all of the Protected Trust messages sent to or from your organization. This can help you meet regulations that require you to archive and retain your messages. Please note that Protected Trust does not by default retain the archive for you you must use a third-party service or your own archive system. Pricing Please contact your account manager to discuss any costs involved to use journaling with your account. How It Works Journaling can be configured to send copies of your messages to either a third-party (hosted) service or an in-house archive appliance or application. The journaling system is designed to be resilient and guarantee that each message intended for journaling is successfully delivered to the archive system. If a message is not successfully delivered to the archive, that message will be retried until it is successful. Protected Trust system engineers monitor the system and will inform you if we detect a problem processing your journal queue. Limitations Due to limitations in the existing SMTP protocol, the journal agent is not able to archive very large file attachments (typically 25 MB). Any attachments that cause a message to become larger than the value specified by the /maxmessagesize argument will not be archived. If this occurs, the message will still be archived without those attachments and will contain an attachment called ProtectedTrust.txt. This file will indicate if any attachments were unable to be archived. Configuration Scenarios Protected Trust journaling can be configured in a number of ways. The best choice depends on your specific setup and needs. The scenarios described in this document are listed below, but there are additional possibilities. Cloud-Based Scenario 1: SMTP push to public-facing archive service Scenario 2: Archive service pulls from POP3 or IMAP mailbox hosted by Protected Trust Local Protected Trust Journal Agent Scenario 3: SMTP push to archive service that is behind your datacenter s firewall Scenario 4: Archive service pulls from POP3 or IMAP mailbox on your email server Scenario 5: Drop.eml files into specific folder on your own file store

Cloud-based These scenarios do not require you to install or maintain any software in your own datacenter. The diagram below shows the high-level architecture: Scenario 1: SMTP Push to Hosted Third-Party Archive Service You utilize a hosted third-party archive service. To enable this, please contact your archive service provider and ask them for the following information: SMTP server hostname SMTP server port for STARTTLS SMTP username and password Once you have collected that information, contact Protected Trust Support. We will work with you and configure Protected Trust to push messages to your archive service. Scenario 2: Archive Service Pulls from POP3 or IMAP hosted by Protected Trust You utilize a hosted third-party archive service. Or, if have a local archive appliance running in your own datacenter.

To enable this, contact Protected Trust Support and ask for journaling to be configured for POP3 or IMAP pull hosted by Protected Trust. Once configuration is complete on our system, we will provide the following information to you: Username and password for the mailbox One of the following endpoints should then be used to fetch messages from your Protected Trust Journal queue: POP3+SSL: journal-outbound.protectedtrust.com (port 995) IMAP+SSL: journal-outbound.protectedtrust.com (port 993) Local Protected Trust Journal Agent If these cloud-based scenarios do not fit your requirements, the Protected Trust Journal Agent can also be downloaded and installed on one or more designated servers. Once installed, you can configure it to push messages to your internal archive system, a journal mailbox on your own email server, or drop the messages in a directory. Scenario 3: SMTP Push to Archive Service behind Your Datacenter s Firewall You have an archive system installed within your company s internal network. To push messages to your archive system, you will need to install the Protected Trust Journal Agent on one or more of your own servers. Please see the section How To: Download and Install the Protected Trust Journal Agent for more information.

Scenario 4: Archive Service Pull from POP3 or IMAP Mailbox on your Email Server You would like journaled protected messages sent to a mailbox on your own email server, which an archive system (local or hosted) then fetches from. To push messages to a specific journal mailbox, you will need to install the Protected Trust Journal Agent on one or more of your own servers. Please see the section How To: Download and Install the Protected Trust Journal Agent for more information. Scenario 5: Drop.eml Files into Specific Folder on Your Own File Store Your archive system can monitor a folder on your own server or you can archive them appropriately. When configuring the drop folder delivery method, you can choose to have the message wrapped (similar to Microsoft Exchange Journal Report/Envelope Journaling) or unwrapped (as the original message would look). Please see the section How To: Download and Install the Protected Trust Journal Agent for more information. How To: Download and Install the Protected Trust Journal Agent You only need to install the Journal Agent if we cannot push messages to your archive service via SMTP. Step 1: Download Download the Journal Agent from the Journaling section of our website at https://protectedtrust.com/organization/ Journaling. You will be required to login as an administrator to download the agent. Once you download the agent, install it on the server (or servers) you would like to use. Please ensure you have the following prerequisites installed: Microsoft Windows (Server edition is recommended) Microsoft.NET Framework 4.0 Depending on your message volume and availability requirements, you may install and configure the journal agent on multiple servers. When using multiple agents, configure each agent with the same configuration; there are no additional settings when using multiple agents. Step 2: Create Windows Account for the Agent Like any scheduled task, it must run as a Windows user. Please create a user in either your Active Directory domain, or on the local computer. Take note of its full username (DOMAIN\Username) and password. Step 3: Configuration of the Journal Agent Open the Command Prompt (Protected Trust Journal Agent) shortcut located in the Windows Start Menu. The working directory will default to the installation location of the Journal Agent (typically c:\program Files\Protected Trust\Tools or c:\ Program Files (x86)\protected Trust\Tools ).

The command you will need to execute is: C:\Program Files\Protected Trust\Tools> ptjournal configure [arguments] The ptjournal program will create or update a Windows Scheduled Task. The scheduled task will periodically retrieve and process your journal queue. If the agent is unable to process certain messages, the failed messages will be retried at a later time until successful. When a failure occurs, it will be reported as an error in your Windows Application Event Log. The following arguments are available when configuring a journal task: General /server= Protected Trust web service base URL. Optional /journal= Ten-digit identifier of the journal to configure. View your configured Required journals at https://protectedtrust.com/organization/journaling /accessid= An access ID associated with the journal s authorized agent user. Required /accesskey= The access key associated with the access ID Required /interval= The interval, in hours, between how often the agent processes the Default: 0.5 journal queue. /runasusername= The username of the Windows user to run the scheduled task as. The Required program will prompt you for the password when creating the task, or can be passed in with the /runaspassword argument. /threads= The number of concurrent threads that should process the journal Default: 2 queue. /timeout= The maximum time, in hours, for a single task execution to run. Default: 6 /maxmessagesize= The max size, in megabytes, of all attachments per message. Note that Default: 25 this cannot exceed the Protected Trust server limit, which is currently 50 MB. /deliverymethod= How the messages are delivered to the archive system. Can be one Default: SmtpWrapped of: SmtpWrapped, DropFolderWrapped, or DropFolderUnwrapped SMTP Push (/deliverymethod=smtpwrapped) /smtphost= The hostname or IP address of the SMTP endpoint Required /smtpport= The port of the SMTP endpoint Default: 25 /smtpusername= Username to authenticate to the SMTP endpoint with Optional /smtppassword= Password to authenticate to the SMTP endpoint with Optional /smtptransport= Can be either STARTTLS or None. Default: STARTTLS /smtpignorecertificate= Set to True to ignore errors in the SMTP endpoint s TLS/SSL certificate Default: False /smtpbinding= Outgoing IP address to use when connecting to the SMTP endpoint Optional /mailbox= The email address to send the journaled messages to Required Drop Folder, Wrapped (/deliverymethod=dropfolderwrapped) /dropfolder= Directory to write the journaled messages to Required /mailbox= The email address that the wrapper message should be addressed to Required Drop Folder, Unwrapped (/deliverymethod=dropfolderunwrapped) /dropfolder= Directory to write the journaled messages to Required Example: Execute the following command: C:\Program Files\Protected Trust\Tools> ptjournal configure /journal=7yfmvwzi3l / accessid=6r8hkrhb0nerz1jz /accesskey=cfh4mbxl03swfpirtgwp /runasusername=mydomain\ptjournalagent /deliverymethod=smtpwrapped /smtphost=archive.mydomain.local /smtpusername=archiveuser / smtppassword=12345xyz /mailbox=journal@journal.mydomain.local

You will then see a screen similar to this: ------------------------------------------------------------------------------- Configure Journal Task ------------------------------------------------------------------------------- /server https://ws.protectedtrust.com/ /journal 7yFMVWZi3l /accessid 6r8HkrHb0neRZ1jz /accesskey cfh4mbxl03swfpirtgwp /deliverymethod SmtpWrapped /smtphost archive.mydomain.local /smtpport 25 /smtptransport STARTTLS /smtpusername ArchiveUser /smtppassword 12345xyz /mailbox journal@journal.mydomain.local /maxmessagesize 25 MB /threads 2 /interval 0.5 hour /runasusername MYDOMAIN\PTJournalAgent (C)reate Task, (A)rguments, (D)isplay Task, (N)ew Task, (E)xit, (H)elp > You are now in the interactive configuration mode of the program. If you need to change any of the values you supplied, you can type A then enter, and type in the arguments you d like to modify. Only arguments that you supply will be updated; all others will not be changed. When you have supplied the appropriate properties, type C and then press enter. You will be prompted for the run as password and any other values you did not supply. (C)reate Task, (A)rguments, (D)isplay Task, (N)ew Task, (E)xit, (H)elp > c Verifying access credential...ok Verifying journal authorization...ok Journal is for mydomain.com Windows password for MYDOMAIN\PTJournalAgent (required)> ******** SMTP Bind to local IP (optional)> Creating Windows scheduled task...ok > If the task was successfully created, the last line will say Creating Windows scheduled task...ok. You can confirm by opening the Task Scheduler and navigating to the ProtectedTrust folder. Exit by typing e then pressing enter. Maintenance Once configured, the Journal Agent does not require much maintenance. Protected Trust monitors the configured journal queues and sends notification if journaling falls behind.

Support To get support for journaling, please contact the Protected Trust Support Team through the standard support channels: Web: https://protectedtrust.com/support Protected Trust Message: support@protectedtrust.com (preferred) Email: support@protectedtrust.com Phone: (863) 594-1141 Copyright 2012 Protected Trust. All rights reserved. Protected Trust logos are registered trademarks of Protected Trust in United States and other countries. All other trademarks, service marks, registered marks, or registered service marks are property of their respective owners. Protected Trust reserves the right to change, modify, transfer or otherwise revise this publication without notice. January 2012