tj2419 Posted February 7, 2018 Posted February 7, 2018 (edited) Does anyone know if we can class HAP as GDPR compliant? All the data resides on our own servers but are the levels of encryption / security enough to satisfy the GDPR? Also with it no longer being updated / actively worked on I'm guessing it will at some point be out of date / security risks may occur. Wanted to check before I tell staff to use it instead of USBs. Edited February 8, 2018 by tj2419 more information
KK20 Posted March 10, 2018 Posted March 10, 2018 It uses IIS and SSL; No different from sharepoint or OWA. It only uses 1 factor authentication though.
synaesthesia Posted March 10, 2018 Posted March 10, 2018 It's a policy thing more than anything else; HAP practically invites people to need to download data to work on it, then re-upload. (unless you trust directedit). Copies therefore end up made on local machines which you can police against but can't stop.
nickbro Posted March 12, 2018 Posted March 12, 2018 If you use Azure Application Proxy you can do 2FA
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now