Third-party application message encryption

Forcepoint Email Security supports the use of third-party software for message encryption. Enable this encryption method by selecting the option Third-party application in the pull-down menu Encryption method (Settings > Inbound/Outbound > Encryption). The third-party application must support the use of x-headers for communication with the Email Security module.

Forcepoint Email Security can be configured to add an x-header to a message that triggers an encryption policy. Other x-headers can indicate encryption success or failure. These x-headers facilitate communication between the email protection system and the third-party encryption software. You must ensure that the x-header settings made on the Encryption page of the Email Security module match the corresponding settings in the third-party software configuration. See Forcepoint Email Security Administrator Help for information about configuring the Email Security module for a third-party encryption application.

It is also necessary to configure an outbound email DLP policy in the Data Security module. See Forcepoint DLP Administrator Help for details about configuring an email DLP policy with an encryption action plan. See Creating an email DLP policy for encryption for a sample email DLP policy configuration.

Preparations for using third-party application encryption also involve the following tasks:
  • Setting the encryption gateway IP address
  • Setting the encryption gateway options