Traffic Encryption and Compression |
Dr.Web Enterprise Security Suite anti-virus network allows encrypting the traffic between Dr.Web Server and workstations (Dr.Web Agents), between Dr.Web Servers (in multi-server anti-virus network configuration) and between Dr.Web Server the Network Installers. This mode is used to avoid leakage of user keys and also information on environment and anti-virus network users during components interaction. Dr.Web Enterprise Security Suite anti-virus network uses reliable tools of encryption and digital signature based on the concept of pairs of public and private keys. The encryption policy is set separately for each component of the anti-virus network, at this, settings of other components should be compatible with the settings of the Server. As traffic between components, in particular the traffic between Dr.Web Servers, can be considerable, the anti-virus network provides for compression of this traffic. The setting of the compression policy and the compatibility of settings on different components are the same as those for encryption.
To set the encryption and compression policies for Dr.Web Server 1.Select the item in the main menu. 2.Click in the control menu. 3.On the tab, select the necessary variant in the and drop-down lists: •—enables obligatory traffic encryption (or compression) with all components (is set by default for encryption, if the parameter has not been modified during the Server installation), •—instructs to encrypt (or compress) traffic with those components those settings do not prohibit it, •—encryption (or compression) is not supported (is set by default for compression, if the parameter has not been modified during the Server installation). When coordinating the settings of the encryption policy on the Server and other components (the Agent or the Network Installer), one should remember, that certain combinations are incompatible and, if selected, will result in disconnecting the corresponding component from the Server. Table below describes what settings provide for encryption between the Server and the components (+), when the connection will be non-encrypted (–) and what combinations are incompatible (). Compatibility of the encryption policy settings
|