Image Policy Settings
[Policy] > [Basic Demilitarization Policy] > [Image] Settings
The image tab sets the balance between security and quality preservation during the sanitization of image files, as well as the level of extension forgery verification.
⚠️ The basic declassification policy setting authority is granted to [Administrator Type - Super Administrator], and
Administrator permission settings can be done in [Administrator] > [Administrator List].
Detailed Description of Settings Items
| Policy Name | Explanation |
|---|---|
| Image Processing Intensity Settings | Set the image processing intensity. (Currently, this policy applies only to PNG files.) The 'Maximum Security' mode enhances security by removing even steganography. Image quality degradation is minimized, but there may be slight differences compared to the original. --- The 'Maximum Integrity' mode may retain steganography and preserves the original image quality as much as possible. |
| Image Extension Forgery Verification Level Setting | Set the criteria for determining tampering when the extension and actual format do not match in image files (JPEG, PNG, GIF, BMP, TIFF, HEIC). ('Standard Validation' recommended) --- The 'Standard Validation' mode determines tampering if the extension and actual format do not match and processes according to the value of 'Extension Tampering Prevention Settings' in the [Common] tab. --- The 'Flexible Validation' mode does not determine tampering only for format conversion between image types, and the sanitization engine handles it directly. (e.g., a PNG → JPEG converted file is not considered tampered) |
Input Rules and Precautions
- The 'Maximum Security' mode enhances security by removing hidden information, including steganography, but may result in slight differences from the original.
- 'Maximum Consistency' mode preserves the original quality as much as possible, but it may allow for steganography to be maintained, which can pose security risks.
- 'Flexible verification' relaxes forgery judgment only for images, so in environments with high security requirements, 'Standard verification' is recommended.
- When applying 'flexible validation', some format combinations may fall outside the processing scope of the decontamination engine.
Reference Note
| Terminology | Definition | Security Threats |
|---|---|---|
| Steganography | A technique for hiding information within image files, typically concealing data in a form that is not visible to the naked eye. | It can be used as an attack technique to deliver malicious code or confidential information hidden in image files. |
- After changing the settings, you can check the records and restore them in the [Policy Change History] menu.