SDF Function Specification
This is a feature specification document that organizes the user functions provided by SDF into large, medium, and small categories.
| Major Category | Mid-category | Subcategory | Detailed Description | Note |
|---|---|---|---|---|
| Encryption | DRM Encryption | DAC Encryption | The document owner directly specifies access permissions for encryption - Control individual permissions such as reading, editing, decrypting, external transmission, and printing. - Granting permissions on a user or group basis | |
| MAC Encryption | Automatic encryption applied according to the organization's security classification policy (Confidential, Restricted, General, etc.) | |||
| GRADE Encryption | Encryption based on security levels (Classified, Sensitive, Open), multi-DAC authorization assignment by level | |||
| AIP Encryption | Applying AIP Protection | Select the Microsoft AIP label defined by the organization to perform encryption | ||
| Decryption | DRM Decryption | Simplification | Remove both AIP + DRM protection from the encrypted document to restore it to the original document. | |
| Decryption | Optionally remove only the external encryption layer, while maintaining the internal encryption. | |||
| AIP Decryption | AIP Protection Release | AIP label and decryption, if DRM is applied separately, DRM is maintained | ||
| Encryption Verification | Type Inquiry | Check Encryption Type | Check the encryption types applied to the document (MAC, DAC, GRADE, Unencrypted) | |
| Document Type Identification | Check Document Protection Type | Distinguishing between DRM documents, AIP documents, and general documents | ||
| Document Information Retrieval | Header Retrieval | Security Header Information Retrieval | Access level of the encryption document, encryption method, policy information, etc. Security header query | |
| Hidden Information Inquiry | Document Tracking Information Inquiry | Retrieve tracking information such as document ID, author, creation path, security level, etc. | ||
| Label List | View All Label List | View the complete list of AIP labels available in the organization | ||
| Label Details | Individual Label Detail View | View detailed settings, protection policies, and permission information by label ID | ||
| Hidden Information Management | Inquiry | Retrieving Hidden Attributes | Retrieving Custom Metadata Inserted in Office Documents (Department, Project Name, etc.) | |
| additional | Add Hidden Attribute | Inserting Name-Value Type Custom Metadata in Office Documents | ||
| delete | Delete Hidden Attribute | Delete specific hidden attribute by specifying attribute name | ||
| Security Level Management | Grade List Inquiry | View All Grade List | View the complete security classification list set in the organization and the associated label information. | |
| Document Grade Inquiry | Document Security Level Inquiry | Check the current security level and confidentiality level applied to the document | ||
| Document Grade Setting | Document Security Level Settings | Assigning, Modifying, and Deleting Security Levels in the Document | ||
| Creating SOM File | File Creation | Creating files for external transmission | Creating a Secure Executable File (SOM) That Can Be Accessed Without Document Security Software | |
| Access Control | Password Protection | Setting a password (combination of letters and numbers) for the SOM file | ||
| Save As | Allow/Block Save As Control | |||
| Print Limitations | Print permission and number of times (1-10 times) limit, complete blocking possible | |||
| Access Restriction | View count limit (1 to 99 times or unlimited) | |||
| Automatic Destruction | Automatic destruction of documents after expiration date | |||
| Specific PC Limitations | Document can only be viewed on the designated PC. | |||
| Viewer Settings | Viewer Support | Select Office/Image/Text Viewer when opening the SOM file. | ||
| Conditional Policy | Policy Basic Information | Policy Creation/Management | Policy name, description, version, activation status, and validity period management | |
| App Selection | Connect App Designation | Select the target app for policy application | ||
| User Assignment | User/Group Assignment | Specify Target Users/Groups for Policy Application and Set Exceptions | ||
| General Document | Extension Filter | All/Not Applied/Select Specific Extensions (.docx, .xlsx, .pdf, etc.) | ||
| DRM Document | DRM Type Filter | All/Not Applied/Select Specific DRM Type (DAC, MAC, GRADE) | ||
| AIP Document | AIP label filter | Select All/Not Applied/Specific AIP Label | ||
| Security Level | Grade/Label Filter | Apply policies only to documents of a specific security level, combination of level + label possible | ||
| Hidden Information | Hidden Attribute Matching | Apply policy only to documents where the specific hidden attribute name and value match | ||
| Location/IP Conditions | IP-based conditions | Application of Policy Based on Request Source IP Range (Internal/External Distinction) | ||
| Time Condition | Time-based conditions | Policy Application/Exclusion by Requested Time Zone (Differentiation Between Business/Non-Business Hours) | ||
| DRM Encryption Execution | DAC/MAC/GRADE application | Automatic encryption with the selected DRM type when conditions are met | ||
| AIP encryption execution | Applying AIP Label | Automatic encryption with the selected AIP label when conditions are met | ||
| Standardization Execution | Remove all protections | Automatically remove both AIP + DRM protection when conditions are met | ||
| Decryption Execution | Remove external protection | Automatically remove only the external encryption layer when conditions are met, keep the internal encryption. | ||
| Capsule Export | Creating SOM File | Automatic generation of SOM files with specified permissions when conditions are met | ||
| Insert Hidden Information | Inserting Metadata | Automatic insertion of hidden information for classification/tracking in the document when conditions are met | ||
| Application of Security Levels | Apply Security Label | Automatically apply security level labels to documents when conditions are met | ||
| Maintain State | Exception Pass | Maintain current status without applying additional policies when conditions are met | ||
| Document Events | Trigger Event | Automatic execution of follow-up policies upon events such as encryption, decryption, and capsule extraction. |