Can a PoC/Trail include scanning of a fileserver

This document outlines the Proof of Concept (PoC) process for Data & More's Compliance Solution that include scanning of a fileshare server.

The PoC is designed to provide customers with a clear understanding of how the solution can address their specific privacy and compliance needs. It involves a structured approach that includes data scanning, analysis, and a demonstration of the clean-up flow. The document also details the prerequisites, activities involved, and the expected outcomes of the PoC. 

In addition to scanning email accounts, Data & More's Compliance Solution can also scan fileshares to identify and locate non-compliant privacy data. This process involves establishing a secure connection to the customer's fileshares, typically via OpenVPN, and then performing a comprehensive scan of the designated fileshares. The results of the scan will provide valuable insights into the amount and type of privacy data stored on the fileshares, helping customers assess their compliance posture and take necessary remediation steps.

Scanning Fileshares with OpenVPN

Scanning fileshares, especially when an OpenVPN connection is involved, can present unique challenges. Here's a breakdown of the process and considerations:

  • Establish OpenVPN Connection:

    • Ensure a stable and secure OpenVPN connection is established between the Data & More scanning server and the customer's fileshare server.
    • Collaborate with the customer's IT security team to configure the OpenVPN connection with appropriate authentication and encryption protocols. See: https://support.dataandmore.com/en/knowledge/onpremise-data
  • Fileshare Access:

  • Technical Complications:

    • Latency: OpenVPN connections can introduce latency, potentially impacting scanning speed. It's important to set expectations with the customer regarding potential delays.
    • Bandwidth: Large fileshares may require significant bandwidth during scanning. It's crucial to coordinate with the customer's IT team to avoid disrupting normal network operations.
    • Firewall Rules: Ensure that firewall rules are properly configured to allow Data & More's scanning infrastructure to access the fileshares over the OpenVPN connection.
    • Authentication: Verify that the OpenVPN connection supports the necessary authentication mechanisms required to access the fileshares.
  • Testing and Validation:

    • Conduct thorough testing to validate that Data & More can successfully connect to the fileshares via OpenVPN and perform scanning operations.
    • Work closely with the customer's IT team to troubleshoot any connectivity or access issues that may arise during testing.
  • Security:

    • Emphasize that all data transmitted over the OpenVPN connection is encrypted to maintain confidentiality and integrity.
    • Reiterate Data & More's commitment to data security and compliance with relevant regulations.

By accepting and addressing these technical complications and working closely with the Data & More, we can ensure a smooth and successful fileshare scanning process, even with the added complexities of an OpenVPN connection.