SHIELD Drive Function Specification Document
This document describes the features that are actually implemented and provided in SHIELD Drive.User PageWowAdmin PageThis is a functional specification organized by separating with a comma.
RFP Notation Standards
| Notation | Definition |
|---|---|
| Required | As a core feature of SHIELD Drive, it is a basic item that must be provided when building a cloud storage and document management system. |
| specialization | Differentiated features based on the unique security and integration strengths of SHIELD Drive (ZTCAP conditional policies, network separation linkage, Teams integration, multi-storage support, etc.) |
| Selection | Additional features that can be optionally activated based on customer operating environment and requirements |
User Page Features
This is a feature that users can directly use through the SHIELD Drive web client.
| Major Category | Mid-category | Subcategory (Function Name) | Detailed Description | RFP notation |
|---|---|---|---|---|
| File and Folder Management | File Management | File Upload | Upload files to SHIELD Drive from local PC. - Supports drag and drop upload - Provides overwrite / rename options if the same file name exists - Automatically saves encrypted data linked with EKMS during upload (encryption keys are managed by a separate KMS) - Displays upload progress and status | Required |
| File Download | Download files stored on SHIELD Drive to your local PC. - Single file download - Folder-based compressed download (asynchronous processing supported) - Download specific version files - Apply download allow/block based on policy | Required | ||
| generation | File Creation | Create a new file within SHIELD Drive. | Required | |
| Folder Creation | Create a new folder within SHIELD Drive. - Supports folder creation within integrated storage. | Required | ||
| Name Change | Renaming Files/Folders | Rename a file or folder. - Supports renaming resources within unified storage | Required | |
| Move and Copy | File/Folder Move | Moves files or folders to a different path. - Provides a dialog to select the destination folder - Overwrite / rename options if the same file name exists - Supports moving between integrated storages | Required | |
| File/Folder Copy | Copies files or folders to a different path. - Provides a dialog to select the target folder - Overwrite / rename options if the same file name exists - Supports copying between integrated storages | Required | ||
| Deletion and Recovery | Delete File/Folder | Moves files or folders to the recycle bin. - Distinguish between soft delete (move to recycle bin) and permanent delete | Required | |
| Recycle Bin Recovery | Restore items in the recycle bin to their original location. - View and search recycle bin list | Required | ||
| viewing | File Viewing | Viewing file contents. - Viewing secure documents through SHIELD Viewer - Viewing documents through Hancom Web Office - Preview through Document Web Viewer (DMS) - Allow/block viewing according to policy | Required | |
| Folder Exploration | Exploring the folder structure. - Recursive exploration of folder subdirectories - Integrated storage resource pagination query | Required | ||
| Query and Sort | Sorting | Sort by name, date, size, etc. - Ascending / Descending toggle | Required | |
| Check detailed information | Check the detailed information of files or folders. - Provides activity information, comments, and version information tabs in the right sidebar (RNB) - View file lock status and folder usage | Required | ||
| File Locking | File Lock/Unlock | Prevents simultaneous editing by locking the file being edited. - Create and release lock (Fixing) - Check lock status - Automatic locking during WebDAV editing | specialization | |
| Convenience Features | Copy link | Copies the shareable link of the file or folder to the clipboard. | Selection | |
| Fixed at the top | Fix frequently used items at the top of the list. | Selection | ||
| Favorites | Add frequently used items to favorites. - Add and remove favorites - Display favorites tree in the left sidebar (LNB) - Direct access to favorites from the main dashboard | Selection | ||
| Recent Documents | Check the documents you have recently viewed or worked on. - Dedicated page for recent documents - Display recent documents on the main dashboard | Selection | ||
| Search | File/Folder Search | Integrated Search | Search for files and folders in SHIELD Drive. - Conditional search through search filters - Keep recent search history - Search for items in the recycle bin | Required |
| Sharing and Collaboration | File Sharing | Shared Folder Management | Share files or folders with other users. - Configure sharing through the shared folder settings dialog - Support for shared mailbox (Share Common) - ACL-based access rights settings (per user/group) - Policy synchronization based on shared folder owner | Required |
| File Cabinet Invitation | Inviting members to the shared file box. - Invite members and cancel invitations - Send email notifications upon invitation | Required | ||
| Inviting External Users | Invite external users for collaboration. - Enable/disable external invitations according to admin settings. | Selection | ||
| Collaborative Editing | Real-time collaborative editing | Multiple users edit files simultaneously. - Office 365-based collaborative editing (DRM service integration) - Hancom Web Office-based document editing - App-based editing through WebDAV protocol - Automatic file locking during editing | specialization | |
| Editing General Storage Document | Edit documents from general storage in the local app. - Provided in personal and shared folders of NAS storage - Edit permissions can only be set on NAS that supports locking (ReadOnly lock) - Overwrite blocking via SHIELD Drive during editing - Overwrite blocking on direct access to NAS when using SFTP connection (scope varies by NAS model) | specialization | ||
| Comment | Write a comment | Share your opinions by commenting on the file. - Write, edit, and delete comments - Pagination view of comments by file - Check in the comments tab on the right sidebar | Selection | |
| Version Control | File Version Control | Check and manage previous versions of files. - View file version history - Download a specific version - Restore to the latest version | Required | |
| Notification | User Notification | Notification Confirmation | You will receive notifications about file and folder changes. - Check the notification list through the notification menu - Mark as read / Mark all as read - Display the number of unread notifications | Selection |
| Subscription | Subscribe to changes in specific files or folders. - Add and remove subscriptions - Receive notifications when subscription items change | Selection | ||
| Disaster Recovery | Manganese File Transfer | Inter-network Transmission | Perform file transfer of registered manganese. - Send to the integration target after selecting the file - View integration shared folder | specialization |
| Document Grade (N2SF) | Grade Display | Check Document Grade | Check the security grade (C/S/O) assigned to documents and storage. - Display grade badges in the file list and detailed information - Provide storage grade badges and tooltip guidance - Provided when the security grade feature is activated in the Security365 management center | specialization |
| Grade Control | Grade-based Import and Export Control | Controls operations by comparing document grade and storage grade. - If the file grade is higher than the storage grade, upload, move, and copy are blocked - Moving and copying between graded storage and ungraded storage are blocked - Uploading and downloading of ungraded files are subject to administrator settings - Display a notification message indicating the reason for the block | specialization | |
| Upload/Download Approval | Approval Request | Upload Approval Request | When uploading a file to storage with approval applied, it goes through the approval process. - Automatic creation of approval request upon upload - Display of approval request status in the upload modal - Automatic saving upon approval completion, disposal upon rejection or request cancellation | specialization |
| Download Approval Request | When downloading files from approved storage, the approval process is followed. - An approval request is created and a copy is kept when the download request is made - After approval is completed, the file is received from the approval request box - Repeated receipt is possible within the download period - Folders are requested in units of compressed files | specialization | ||
| Approval Request Form | Approval Request Inquiry | Verifying the approval request you submitted. - Provide entry point in the top bar (exposed to users with approval storage) - Distinguish between upload request / download request tabs - Status display (Pending approval·Approved·Rejected·Request canceled) - Expand row details to check path·reason - Receive notification of approval results and view the request when clicking the notification | specialization | |
| Bypass Blocking | Move·Copy Control | Blocks the export of approved target storage. - Prevents moving/copying from approved storage to non-approved locations - Blocks importing from non-approved storage to approved locations - Disables reason guidance and execution button on the location selection screen | specialization | |
| User Settings | Profile | Profile Management | Manage your own profile information. - View and edit profile information - Support for custom profiles | Selection |
| External Integration (User) | Teams Integration | Using the Teams Tab | Use SHIELD Drive within Microsoft Teams. - Provides file explorer with Teams tab - Attach and share files in Teams channels - Integrate Teams SSO authentication - Add, configure, and remove tabs | specialization |
Admin Page Features
This is the feature that allows the administrator to configure and manage the system through the SHIELD Drive management console.
| Major Category | Mid-category | Subcategory (Function Name) | Detailed Description | RFP notation |
|---|---|---|---|---|
| Dashboard | Status Monitoring | Admin Dashboard | You can grasp the overall status of the system at a glance. - Display of key indicator status cards - Storage usage chart - Storage activity chart - User activity chart - Policy usage status chart - Statistics inquiry through period selection - Increase and decrease rate tracking display | Required |
| User Management | Account Management | User Account Management | Manage user accounts within the organization. - View and search user list - Check and edit user details - Organize list through sorting feature - Access after password authentication (enhanced security) - Azure AD user/group synchronization integration | Required |
| Storage Management | Storage Registration | NAS Registration | Register NAS (General/Security) storage. - Enter NAS connection information and test the connection - Set storage classification in Personal/Shared/Teams tabs - Set capacity limits (Total/User-specific) | Required |
| SharePoint Registration | Register SharePoint Online storage. - Web URL based integration settings - Access type settings | specialization | ||
| Google Drive Registration | Registering Google Drive storage. - Google OAuth authentication integration | specialization | ||
| S3 Registration | Registering Amazon S3 storage. - Enter S3 connection information - Set distinction between personal/shared storage | specialization | ||
| Specify Storage Method | Specifies the storage method of the storage. - Secure storage (encryption·obfuscation storage) / Regular storage (original preservation) - Regular storage can only be selected in the personal folder and common folder of NAS·secure NAS - Can only be set at the time of registration and cannot be changed afterwards - Regular storage does not support search·version management·link sharing·recycle bin·network linkage | specialization | ||
| Storage Configuration | Edit/Delete | Change or delete the registered storage settings. - Modify storage metadata - Activate/Deactivate storage - Search and filter storage list | Required | |
| Check NAS Lock Support | Diagnosing the support for ReadOnly lock of general storage NAS. - The range of lockability varies depending on the connection type (WebDAV / SFTP) - Edit permission settings are allowed only for storage that supports locking. | specialization | ||
| Storage Monitoring | Capacity Monitoring | Monitor storage capacity and usage status. - Visualize capacity bars by storage - Manage capacity allocation by user - Display remaining capacity compared to total usage | Required | |
| Storage Policy | Policy Application | Policies are applied at the storage unit level. - Access control policy settings by storage - Storage role management - Shared folder policy synchronization | Required | |
| Document Grade Setting | Storage Class Designation | Assign security levels (C/S/O) and labels to storage. - Can only be specified when registering secure storage and cannot be changed after registration - Exposed when the security level feature is enabled in the Security365 management center - Unspecified storage is excluded from grade control targets | specialization | |
| Control of Unclassified Files | Set the handling method for files without a designated grade. - Allow / Block upload of files without a grade - Allow / Block download of files without a grade - Automatic assignment of storage grade when upload is allowed - Cannot set if both upload and download are completely disabled | specialization | ||
| Approval Settings | Upload/Download Approval Use | Set the approval process usage by storage unit. - Select Use / Do Not Use - Actual approval applies only when the approval action of the conditional policy is also set - Edge environment (secure NAS) is not supported | specialization | |
| Conditional Policy (ZTCAP) | Policy Creation | Policy Creation | Create a conditional access policy. - Create condition value-based / condition reference-based policies - Check for duplicate policy names | specialization |
| Policy Conditions | Principal | Specify the user or group to which the policy will be applied. | specialization | |
| Usage Control (Usage) | Set permissions for uploading, downloading, viewing, editing, deleting, sharing, moving/copying, etc. | specialization | ||
| Condition | Specifies the conditions under which the policy will apply. - Location (IP), Time (Day of the week · Time zone), Device (PC/Mobile/Teams), Document properties (File type · Document grade) conditions provided - AND combination between conditions - If there is overlap between target assignment and exclusion, exclusion takes precedence | specialization | ||
| Execution Action (Action) | Specifies the actions to be performed when conditions are met. - Allow / Block / CDR / Transform / Approve - Integrate the EDO execution workflow with an iframe to allow or block events based on the results - Display a notification if the target includes edge environment storage | specialization | ||
| Policy Management | Edit/Delete | Modify or delete the generated policy. | specialization | |
| Change Priority | Change the priority of policy application. | specialization | ||
| Target Application Inquiry | Retrieve the list of users to whom the policy is applied. | specialization | ||
| Edge Server Management | Server Management | Edge Server Registration/Management | Manage Edge servers for external-internal network interconnection. - Add/modify/delete Edge servers - Configure server settings - Access after password authentication (enhanced security) | specialization |
| Cluster Service Management | Register and manage external cluster services. - Register/modify/delete cluster services - Activate/deactivate | specialization | ||
| log | Activity Log | User Log | View user activity logs. - Date range filtering - Display InfoLineage service integration logs | Required |
| Admin Log | View the administrator's activity log. - Date range filtering | Required | ||
| Recycle Bin (Admin) | Admin Trash Bin | Managing Deleted Items | Manages deleted items of the entire system. - View and search deleted item list - Restore items - Permanently delete items | Required |
| Settings | Settings | General Usage Settings | Set company-wide usage policies. - Shared folder owner synchronization settings - External user invitation settings - Automatic logout settings - Unsupported file extension settings - SHIELD Viewer enable/disable | Required |
| File Settings | File Management Settings | Configure settings related to file management. - Set personal file organization period - Set deletion method | Required | |
| Works Settings | SHIELD Works Settings | Manage SHIELD Works agents. - Upload and manage agent files - Upload and manage patch files - Download agents - Activate/Deactivate SHIELD Works | specialization | |
| Teams Management | Teams ACL | Permission Management | Manage ACL when integrating with Microsoft Teams. - Team/Channel member synchronization - Folder selection and ACL settings - Access after password authentication (enhanced security) | specialization |
| Teams Settings | Tab/Sync Settings | Manage settings related to Teams. - Teams tab automatic creation settings - Teams tab name settings - Teams NAS storage designation - Teams synchronization group management | specialization |