Skip to main content

Function Specification Document


This is a functional specification document that organizes the user functions provided by SDF into large, medium, and small categories.

RFP Notation Standards

divisionExplanation
RequiredAs a core security feature of SDF, items that are essential for document encryption/decryption and policy management.
specializationConditional policy engine, SOM export, hidden information, etc. are differentiating features of SDF that serve as advantageous factors during technical evaluation.
SelectionOptional features that can be applied selectively according to the client's work environment and security requirements.
Major CategoryMid-categorySubcategoryDetailed DescriptionNoteRFP
EncryptionDRM EncryptionDAC EncryptionDocument owners can directly specify access permissions for encryption - control individual permissions such as reading, editing, decryption, external transfer, printing, etc. - grant permissions on a user or group basis.Required
MAC EncryptionAutomatic encryption applied according to the organization's security classification policy (Confidential, Restricted, General, etc.)Required
GRADE EncryptionEncryption based on security levels (Classified, Sensitive, Open), multi-DAC permission assignment by levelspecialization
AIP EncryptionApplying AIP ProtectionSelect the Microsoft AIP label defined by the organization to perform encryptionRequired
DecryptionDRM DecryptionSimplificationRemove both AIP + DRM protection from the encrypted document to restore it to the original document.Required
DecryptionSelectively remove only the external encryption layer, while maintaining the internal encryption.Required
AIP DecryptionAIP Protection ReleaseAIP label and decryption, if DRM is applied separately, DRM is maintainedRequired
Encryption VerificationType InquiryCheck Encryption TypeCheck the encryption types applied to the document (MAC, DAC, GRADE, Unencrypted)Required
Document Type IdentificationCheck Document Protection TypeDistinction between DRM documents, AIP documents, and general documentsRequired
Document Information RetrievalHeader QuerySecurity Header Information RetrievalAccess levels of the encryption document, encryption methods, policy information, etc. Security header retrievalRequired
Hidden Information InquiryDocument Tracking Information InquiryRetrieve tracking information such as document ID, author, creation path, security level, etc.specialization
Label ListView All Label ListRetrieve the complete list of AIP labels available in the organizationRequired
Label DetailsIndividual Label Detail ViewView detailed settings, protection policies, and permission information by label IDSelection
Hidden Information ManagementInquiryRetrieving Hidden AttributesQuerying Custom Metadata Inserted in Office Documents (Department, Project Name, etc.)specialization
additionalAdd Hidden AttributeInserting name-value pair custom metadata in Office documentsspecialization
deleteDelete Hidden AttributeDelete specific hidden property by specifying the property namespecialization
Security Level ManagementView Grade ListView Full Grade ListView the complete security classification list set in the organization and the associated label information.Required
Document Grade InquiryDocument Security Level InquiryCheck the current security level and confidentiality level applied to the documentRequired
Document Grade SettingDocument Security Level SettingAssigning, modifying, and deleting security levels in the documentRequired
Creating SOM FileFile CreationCreating files for external transferCreating a Secure Executable File (SOM) That Can Be Accessed Without Document Security Softwarespecialization
Access ControlPassword ProtectionSetting a password (combination of letters and numbers) for the SOM filespecialization
Save AsAllow/Block Save As ControlSelection
Print LimitPrint permission and limit on the number of times (1 to 10), complete blocking possiblespecialization
Access RestrictionView count limit (1 to 99 times or unlimited)specialization
Automatic DestructionAutomatic destruction of documents after expiration datespecialization
Specific PC RestrictionsDocument can only be viewed on designated PC.Selection
Viewer SettingsViewer SupportSelect Office/Image/Text Viewer when opening SOM fileSelection
Conditional PolicyPolicy Basic InformationPolicy Creation/ManagementPolicy name, description, version, activation status, and validity period managementspecialization
App SelectionSet Connection AppSelect the target app for policy applicationspecialization
User AssignmentUser/Group AssignmentSpecify Target Users/Groups for Policy Application and Set Exception Targetsspecialization
General DocumentExtension FilterAll/Not Applied/Select Specific Extensions (.docx, .xlsx, .pdf, etc.)specialization
DRM DocumentDRM Type FilterSelect All/Not Applied/Specific DRM Types (DAC, MAC, GRADE)specialization
AIP DocumentAIP Label FilterSelect All/Not Applied/Specific AIP Labelspecialization
Security LevelGrade/Label FilterApply policies only to documents of a specific security level, combination of level + label is possiblespecialization
Hidden InformationHidden Attribute MatchingApply policy only to documents where the specific hidden attribute name and value matchSelection
Location/IP ConditionsIP-based conditionsApplication of Request Source IP Range-Based Policies (Internal/External Distinction)specialization
Time ConditionTime-based conditionsPolicy Application/Exclusion by Requested Time Zone (Differentiation Between Work/Non-Work Hours)Selection
DRM encryption executionApplication of DAC/MAC/GRADEAutomatic encryption with the selected DRM type when conditions are metspecialization
AIP Encryption ExecutionApplying AIP LabelAutomatic encryption with the selected AIP label when conditions are metspecialization
Normalization ExecutionRemove all protectionsAutomatically remove both AIP and DRM protection when conditions are metspecialization
Decryption executionRemove External ProtectionAutomatically remove external encryption layer only when conditions are met, keep internal encryption.specialization
Capsule ExportCreating SOM FileAutomatic generation of SOM files with specified permissions when conditions are metspecialization
Insert Hidden InformationInserting MetadataAutomatic insertion of hidden information for classification/tracking in the document when conditions are metSelection
Applying Security LevelsApplying Security LabelsAutomatically apply security level labels to documents when conditions are metspecialization
Maintain StateException PassMaintain current status without applying additional policies when conditions are metSelection
Document EventsTrigger EventAutomatic execution of follow-up policies upon events such as encryption, decryption, and capsule extraction.specialization