Sunday, 14 December 2014

Walkthrough Azure Right Management

 

Azure Right Management help protect organizational sensitive information from unauthorized access and control how information is used. Right Management uses encryption, identity and authorization policies to help secure files and email.

How RMS is different compare with NTFS permission?

Well, protection that is applied by using RMS stays with the files and email, independently of the location. You remain in control of your data even it is shared to other people.

[ RMS Template Configuration – Azure ]

Click Active Directory | Right Management | Directory | Templates | Create Right Policy Template

image

Modify policy by adding users/ group and permission.

image

Finally publish the policy.

[ Assign RMS License– Office365]

Login to Office365 Portal :- https://portal.office.com

Go to Admin | Office365 | Users | Active User | Select a user and assign RMS license

image

[RMS Sharing Application]

RMS sharing app enabled you to securely collaborate with others. You can view protected files that others have shared with you. You can also take pictures or choose from your camera roll, protect with RMS template policy and share them. This app also allow you to open RMS protected PDF files, pictures, text files and any other file format protected as a .pfile. Sign in to this app must use business email address (Gmail / Hotmail) is not allowed.

Download RMS Sharing application from https://portal.aadrm.com and install on your devices.

image

Currently the following was the supported RMS Application during our testing:-

 

2a

[ RMS Apps on devices ]

Depend on your Mobile device platform, download “RMS Sharing” from

  • Android – Google Play
  • Apple – ITunes
  • Windows Phone – Windows Store

3

4

5

[ Screenshot RMS Sharing on Android Devices ]

Take picture or select photo from Library

IMG_20141214_131348

Apply RMS Policy Template

IMG_20141214_131604

Send the photo by email

IMG_20141214_131745

 

[ Testing – MS Office Document ]

Open an existing word document and configure restrict access by select policy that you’ve configure in Microsoft Azure. Go to File | Info | Click Protect Document | Set Restrict Access | Select RMS Policy

image

View Permission. By default owner has full control

image

To further secure it, we can configure additional setting such as content expire and notify owner when unauthorized user open the document. Click on Share Protection

image

image

[ Testing – Email ]

You can configure policy to prevent recipient from forward the email, send to internal email account, etc (Click on Options | Permission)

image

image

[ Error ]

Open an attachment without permission

image

[ Updated on 16 Dec 2014]

Added Support for RMS protected PDF and PPDSs in Adobe Reader – Check out http://blogs.technet.com/b/rms/archive/2014/12/16/rms-in-adobe-reader.aspx

No comments:

Post a Comment