Hancom Office Policy Settings
[Policy] > [Basic Decontamination Policy] > [Hancom Office] Settings
This is a security settings tab specialized for Hancom Office (HWP, etc.) documents.
By removing scripts, objects, hyperlinks, etc., document-based threats can be blocked, and policies to address compatibility issues or non-standard format problems that may arise due to Hancom document characteristics are also included.
⚠️ The basic declassification policy setting authority is granted to [Administrator Type - Super Administrator], and
Administrator permission settings can be done in [Administrator] > [Administrator List].
Detailed Description of Settings Items
| Policy Name | Explanation |
|---|---|
| Removing Objects in Hancom Office Documents | Set whether to remove OLE objects (spreadsheets, charts, videos, etc.) inserted in Hancom Office documents. OLE objects are external linked objects within the document, and they can execute external programs when the document is viewed, posing a risk of malware execution. |
| Removing Hyperlink Settings in Hancom Office Document | Set whether to remove hyperlinks included in Hancom Office documents. Hyperlinks can lead to malicious sites or cause security threats through external connections. |
| Hancom Office Document Script Removal Settings | Set whether to remove scripts included in Hancom Office documents. Scripts are codes that automatically execute when the document is viewed and are a major pathway for the execution of malicious code. |
| Hancom Office Distribution Document Blocking Settings | Set the blocking status of the Korean document saved for distribution. Distribution documents are in a format with restricted modifications, which may have security vulnerabilities and the possibility of malicious code being inserted. |
| Blocking the creation of non-standard MS Office files in Hancom Office settings | Set the blocking status for Microsoft Office format documents created in Hancom Office. Hancom Office has structural differences due to its independent implementation of some MS formats, making it difficult to guarantee consistency during sanitization. |
Input Rules and Precautions
- Specify the object to maintainis 'Hancom Office Document Object Removal Settings'
ONIt operates only in a state, and the object name must use an accurate name that the system can recognize. - Scripts in Hancom Office documents are generally not executed automatically, but they are treated as security threats, so removal is recommended.
- Non-standard MS Office files created in Hancom Office may have the appearance of MS format, but their actual structure may not be compatible, so a blocking policy may be necessary.
Reference Note
| Terminology | Definition | Security Threats and Policy Considerations | example |
|---|---|---|---|
| OLE Object (Object Linking and Embedding) | External content included in the document (images, documents, executable files, etc.) | If an executable file object is included, there is a possibility of malicious code execution when viewing the document. | Inserted in HWP document.exeExecutable file, external document link |
| hyperlink | within the documentWebsite, network path, fileLink connected to | Risk of information leakage due to malicious URL connections or phishing site inducement. | "Click here for more details" type of link |
| script | Inserted to automate document actionsCustom Code | Abnormal command execution or system access is possible, so removal for security reasons is necessary. | Calculation code that runs automatically when the document is opened |
| Deployment Document | Generated for printing in Hancom OfficeEditing Restriction Document | There may be errors in de-identification due to encryption protection, output restrictions, etc., and security settings may be changed internally. | Contract document saved as 'for distribution' |
| Non-standard MS Office files | Saved in Hancom Office.doc, .xlsand so onIncompatible MS Office format documents | not compatible with actual MS Office or structurally unstableDecontamination error or threat concealment possibilityexistence | Saved in HWP.docDocument, a file that only looks like an MS document in appearance |
- This setting is
.hwp,.hwt,.hwpxIt is limited to Hancom Office documents. - All related policy changes can be managed and restored in the [Policy Change History] menu.