Find White Papers
Home
About Us
List Your Papers
    
> x1 > Index Data Security in Microsoft Windows Environments

Index Data Security in Microsoft Windows Environments

White Paper Published By: x1

This paper explains how X1 Enterprise Edition security integrates seamlessly with an existing Microsoft network installation. It describes how X1 security features are configured and deployed, including web server security. It ends by showing how X1 and Microsoft Windows security layers work together at runtime.



Tags : 
data security, web server security, web service security, windows security, x1 security, enterprise security, security software, x1

x1
Published:  Aug 21, 2009
Type:  White Paper
Length:  12 pages

Index Data Security in
Microsoft Windows Environments
®for X1 Enterprise Edition, versions 2.0 and 2.1
Functional Description
October 2005
Dejan Nenov
Vice President, Engineering
X1 Technologies, Inc.Contents
Introduction 3
Microsoft Windows Environment 3
X1 Enterprise Edition Security Layers 4
Windows File Permissions 4
Server Share Security 4
X1 Saved-Search Security 6
Web Server Security 7
Runtime Security 10
How X1 and Windows Security Work Together 11
About the Author and X1 Enterprise Edition 12Index Data Security in Microsoft Windows Environments®for X1 Enterprise Edition, versions 2.0 and 2.1
Introduction
X1 Enterprise Edition lets users search enterprise data with desktop, mobile, or browser clients. The product provides a security design that:. Can be installed without changes to the customer's existing Microsoft Windows security framework;. Adds an additional layer of security to domains managed by Microsoft Active Directory;. Results in a smaller index size than products from other vendors;. Is extensible to data stores outside Microsoft Windows domains. This paper explains how X1 Enterprise Edition security integrates seamlessly with an existing Microsoft network installation.It describes how X1 security features are configured and deployed, including web server security. It ends by showing howX1 and Microsoft Windows security layers work together at runtime.
Microsoft Windows Environment
1This paper assumes that X1 Enterprise Edition has been deployed within a corporate Microsoft Windows environment, sothat end-users, index data, and raw data all reside within the logical bounds of a Microsoft Windows domain managed by2Microsoft Active Directory .
In a Microsoft Windows environment, X1 Enterprise Edition takes advantage of the security facilities offered by theMicrosoft Windows file servers, Microsoft Active Directory infrastructure, and the Microsoft Internet Information Services3(IIS) web application server platform.
All the components in the diagram below must be present for X1 Enterprise Edition to operate in a secure fashion.
rey vx ro erS File ScannerI SPI 1 EX E1X X1 reads and stores theallow and deny lists of X1 Enterprise Client users and groups associated with each file on the server File ServerContains Raw DataX1 Browser Client X1 Enterprise Server with IISContains Index Data Microsoft Active Directory controls Microsoft Active Directory user and group controls user and group access to directories, log-ins and security files and shares
End-User Desktops Active Directory Server
Server RackMicrosoft Windows Infrastructure All trademarks are the property of their respective owners
1 "X1 Enterprise Edition" is used in the rest of this document to refer to X1 Enterprise Edition version 2.0 or version 2.1.2 http://www.microsoft.com/windowsserver2003/technologies/directory/activedirectory/default.mspx3 http://www.microsoft.com/windowsserver2003/iis/default.mspx
X1 Enterprise Edition: Index Data Security in Microsoft Windows Environments 3X1 Security Layers
To determine whether a user is authorized to receive a search result, X1 combines several layers of security, verifying the cre-dentials of the user's search query against the combined security rules of all layers.
Windows File PermissionsIf a user is not able to open a file using the standard Microsoft Windows file explorer, X1 assumes that the user is not author-ized to access the data stored in the file.
Windows file permissions are controlled by the security settings that have been applied to the file or to the directory that con-tains the file. These are settings that the IT administrator sets on the file server, from which X1 reads and indexes data.
These file permissions are managed directly (that is, outside the X1 system), using the standard Microsoft Windows file-securitymanagement tools. These tools are a standard part of the Microsoft Windows operating system and are in the MicrosoftWindows file explorer.
When X1 Enterprise Edition indexes a file from the end-user's server, it gets the list of allowed and denied users and groupsassociated with the file. This information is stored as part of the index. It is used to guarantee that the credentials of the user(or process) issuing a query match the a... [download for more]

Browse Technology Topics

Data Center

Virtualization, Cloud Computing, Infrastructure, Design and Facilities, Power and Cooling, Green Computing  
    

Data Management

Application Integration, Analytical Applications, Business Intelligence, Configuration Management, Database Development, Data Integration, Data Mining, Data Protection, Data Quality, Data Replication, Database Security, EDI, SOAP, Service Oriented Architecture, Web Service Management, Data Warehousing  
    

Enterprise Applications

Application Integration, Application Performance Management, Best Practices, Business Activity Monitoring, Business Analytics, Business Integration, Business Intelligence, Business Management, Business Metrics, Business Process Automation, Business Process Management, Call Center Management, Call Center Software, Change Management, Corporate Governance, Customer Interaction Service, Customer Relationship Management, Customer Satisfaction, Customer Service, EBusiness, Enterprise Resource Planning, Enterprise Software, EProcurement, Extranets, Groupware Workflow, HIPAA Compliance, IP Faxing, IT Spending, Marketing Automation, Performance Testing, Product Lifecycle Management, Project Management, Return On Investment, Risk Management, Sales & Marketing Software, Sales Automation, Server Virtualization, Simulation Software, Supply Chain Management, System Management Software, Total Cost of Ownership, Video Conferencing, Voice Recognition, Voice Over IP, Workforce Management, Incentive Compensation, Spend Management, Manufacturing Execution Systems, International Computing  

Human Resource Technology

Human Resources Services, Payroll Software, Time and Attendance Software, Workforce Management Software, Financial Management, Employee Monitoring Software, Employee Training Software, Recruiting Software/Services, Employee Performance Management, ELearning, Benefits Management, Expense Management  
    

IT Career Advancement

Cisco Certification, Microsoft Certification, Linux Certification, Network Security Certification, Software Development Certification  

IT Management

Employee Performance, ITIL, Productivity, Project Management, Software Compliance, Sarbanes Oxley Compliance, Service Management, Desktop Management  
    

Knowledge Management

Collaboration, Collaborative Commerce, Contact Management, Content Delivery, Content Integration, Content Management System, Corporate Portals, Customer Experience Management, Document Management, Information Management, Intranets, Messaging, Records Management, Search And Retrieval, Search Engines, Secure Content Management, SLA  

Networking

Active Directory, Bandwidth Management, Convergence, Distributed Computing, Ethernet Networking, Fibre Channel, Gigabit Networking, Governance, Grid Computing, Infrastructure, Internetworking Hardware, Interoperability, IP Networks, IP Telephony, Local Area Networking, Load Balancing, Migration, Monitoring, Network Architecture, Network Management, Network Performance, Network Performance Management, Network Provisioning, Network Security, OLAP, Optical Networking, Quality Of Service, Remote Access, Remote Network Management, Server Hardware, Servers, Small Business Networks, TCP/IP Protocol, Test And Measurement, Traffic Management, Tunneling, Utility Computing, VPN, Wide Area Networks, Green Computing, Cloud Computing, Power and Cooling, Data Center Design and Management, Colocation and Web Hosting  
    

Platforms

AS/400, Domino, Linux, Microsoft Exchange, Oracle, PeopleSoft, SAP, Siebel, Solaris, Tivoli, Unix, Web Sphere, Windows, Windows Server  

Security

Access Control, Anti Spam, Anti Spyware, Anti Virus, Application Security, Auditing, Authentication, Biometrics, Business Continuity, Compliance, DDoS, Disaster Recovery, Email Security, Encryption, Firewalls, Hacker Detection, High Availability, Identity Management, Internet Security, Intrusion Detection, Intrusion Prevention, IPSec, Network Security Appliance, Password Management, Patch Management, Phishing, PKI, Policy Based Management, Security Management, Security Policies, Single Sign On, SSL, Secure Instant Messaging, Web Service Security, PCI Compliance, Vulnerability Management  
    

Software Development

.NET, C++, Database Development, Java, Middleware, Open Source, Software Outsourcing, Quality Assurance, Scripting, SOAP, Software Testing, Visual Basic, Web Development, Web Services, Web Service Security, XML  

Storage

Backup And Recovery, Blade Servers, Clustering, IP Storage, ISCSI, Network Attached Storage, RAID, Storage Area Networks, Storage Management, Storage Virtualization, Email Archiving, Data Deduplication  
    

Wireless

802.11, Bluetooth, CDMA, GPS, Mobile Computing, Mobile Data Systems, Mobile Workers, PDA, RFID, Smart Phones, WiFi, Wireless Application Software, Wireless Communications, Wireless Hardware, Wireless Infrastructure, Wireless Messaging, Wireless Phones, Wireless Security, Wireless Service Providers, WLAN  
Search