Jump to content

Recommended Posts

Posted (edited)

Hi ,

 

I am trying to setup a restriction to a file ( Eg. Excel , Engg file). The users in the LAN should be able to open it view it, but cannot save them on their local machine.

 

Please provide me step by step ..

can this be done in GPO

Can it be done using third party software...

 

Note: The file resides on Windows 2008 Server ( Our File/Data Server )

 

File types:asm, cmp, dft, dtf, dwg, dxf, jt, mod, model, par, par, pcf, pcf, plmxml, prt, psm, pwd, pwd

these are the files created from Solidedge or Bently.

 

Thanks

Karna

Edited by karna_gk77
Posted
Or AD Federation Services (ADFS) if you're up to 2008/R2. Very cool stuff, but probably more effort than you want to go to. There's a lot of management overhead involved with this.
Posted

ADFS is more for allowing external users to authenticate to resources inside your organisation or allowing your users to use their credentials on external services as far as I recall.

 

RMS is the tech that the OP is after and I think it is a built in roal on Win 2k8 servers that can just be enabled.

Posted

Thanks for the response...

My Engineer team do their design using solidedge and bently software and these designs are stored on Design server....

There is other team who are supposed open that design and check it...and they are not to change or saved it on the local machine or any sort of external devices....

Posted

Have you got MS Sharepoint or WSS deployed?

 

You mentioned the file types, can you convert the designs into MS format such as word?

Posted
Have you got MS Sharepoint or WSS deployed?

 

You mentioned the file types, can you convert the designs into MS format such as word?

 

We dont use Sharepoint and the file format cannot be changed to any other formats

Posted

Using W2K8 server on its own won't allow you to achieve what you want.

 

You have to decide on a product to use, a MSFT product or a 3rd party product.

 

The challenge is the non MSFT documents.

 

I have recommended WSS and Share point.

 

Sukh

Posted

I don't think this will be easy. It needs not just a server product but something on the client. For example, Microsoft have their Windows Rights Management Service. You can use this on Windows Server or on Sharepoint as @sukh has said but (as far as I know) this only works with Microsoft Office documents - when the file is served, it's altered in such a way that it can only be opened when Word, Excel etc can contact the RMS server to check that you're allowed to access the file.

 

Other systems are available for other kinds of file - eg © CopySafe PDF Converter - Copy protect Adobe PDF documents is a package that claims to protect PDF files (I've not used it so I don't know how good it is but I've seen similar products where the PDF file is encrypted and can only be read if you have the appropriate client and rights to access the file)

 

For your Solidedge files I think you're going to need something from the manufacturer. I wouldn't be surprised if such a thing exists - your needs are not going to be unique - but it's pretty specialist. I think you'd be best talking to your dealer about how this can be done (but I've got a horrible feeling that it won't be cheap; these sort of things rarely are).

Posted
Using W2K8 server on its own won't allow you to achieve what you want.

 

You have to decide on a product to use, a MSFT product or a 3rd party product.

 

The challenge is the non MSFT documents.

 

I have recommended WSS and Share point.

 

Sukh

 

Suggest me 3rd party sw

Posted

With sharepoint you can provide custom file types to protect and I'm sure you can with WSS 3.0

 

On the clients side with Office you have IRM which works with RMS. There's a client which needs to be installed too.

 

However, this doesn't offer complete protection such as preventing a user from physically writing down the contents of a word document or using a 3rd party screen capture program. It will prevent the standard windows print screen and office apps such as OneNote etc... For this you will have to deploy the infrastructure and allow access in appropriate way, for example only allow access when on LAN and no access remotely.

 

Sukh

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...