ViewONE Pro Security Module

ViewONE Pro Security Module

Free to ViewONE Pro's customers, the Security Module offers a higher level of data protection for environments where security is paramount.

Even if you are currently using https/SSL connections to encrypt your data in transit between your server and the client, the Security Module can provide additional protection by encrypting the document location, configuration parameters and image data on the server before transmission, and it can only be decrypted by an appropriately-authorised client copy of ViewONE Pro.

Traditional https/SSL connections can only protect the data during transmission. In the event that you are using proxy or distributed caching servers, the ViewONE Pro Security Modules ensures that the data is still protected at this half-way stage before it reaches the client, preventing it becoming inadvertantly accessible to unauthorized personnel with access to the proxy server.

The Security Module provides the ability to encrypt the process locations, parameters and image data (whether or not SSL is used) through the use of an additional parameter, the 'encConfig' parameter, which contains all the encrypted parameter data. Once this parameter is enabled, ViewONE Pro will only accept data from this one parameter and will ignore any other parameters.

To use the Security Module, Daeja will supply a server-side Java class library for use with servlets and/or JSP, which will be used to perform the encryption. For further protection, a new license file is supplied, which ensures that the viewer will thereafter only accept encrypted data. So even if someone attempted to strip out the 'encConfig' parameter and pass other parameter information to the viewer, ViewONE Pro would ignore it.

For more information on how to set up the Security Module, please contact us at sales@daeja.com. To download the Security Module servlet, please visit our servlets download page.