Use Case 3: Directory-Level GuardPoints
Protect structured or unstructured data stored in data files. The data files are organized inside one or multiple directories or folders within a file system namespace, such as NTFS or ReFS, where the entire file system namespace is guarded with one policy as a Directory GuardPoint. In this use case, the file system resides in a device guarded as ES GuardPoint.
All Data in file system Device Encrypted through an ES GuardPoint
The second policy protecting the device is the same policy as use case 2.
Example
In this example, Jane Doe is a member of the Accounting team and John Fredricks is a member of the IT team. There are two folders on the guarded disk called G:\Data\Accounting-Specific-Files
and G:\Data\IT-Specific-Files
. Even though the disk is protected by an Efficient Storage GuardPoint, both Jane and John can see the files in either folder. For example:
Then the Administrator applies the policy to G:\Data
.
Now when Jane Doe logs into the server, she can see the files in the Accounting-Specific-Files
directory but she cannot access the files in the IT-Specific-Files
directory, even if her account has Administrator-level access. For example:
Similarly, when John Fredricks logs in he will be able to access the files in the IT-Specific-Files
directory but he will be unable to access the Accounting-Specific-Files
directory.