|
Security has three components: Encryption, Authentication, and Signing.
Encryption
Encryption is necessary for the protection, privacy and non-repudiation of electronic forms and data. In addition, encryption prevents any changes of form data.
Formatta's encryption algorithms are used to control form security and access, so data is always protected whether it's posted to a website or sent via email.
If a third party intercepts a form on the client, in transit, or on the server - Formatta's native 128-bit encryption prevents the form from being viewed or altered.
- Users can choose their own unique passwords
- Passwords don't need to be shared
- Encrypted forms can be emailed or posted to a website
- Only the form author (agency or business) and the person who filled out the form can decrypt it
Algorithms
Formatta utilizes algorithms for hashing, key exchange, and Triple DES. These encryption algorithms are used to convert your plain data (e.g., account numbers or other financial data) into encrypted data, or cipher text.
This conversion is accomplished using an encryption key, or set of keys (usually very large prime numbers) along with the encryption algorithm (the set of instructions on how to use the key to encrypt the data). Once encrypted, the data can only be decrypted using one of the specified keys.
Field Locking
Formatta allows groups of fields to be locked while other groups are unlocked. This type of encryption allows the locked data to be visible while maintaining encryption applied by the user. This is particularly useful when there is a chain of custody or when multiple users exchange the same form and need to lock and un-lock their own sections.
Form Verification
Formatta's Form Verification function gives you the ability to prevent unauthorized changes to forms posted on the web. This feature allows organizations to determine if a received form was altered in any way. When completed forms are sent back to a company via the Internet, Formatta can automatically determine if the completed forms are authentic. This eliminates form tampering and allows a business to control form propagation. This means your electronic forms can't be copied or decrypted by unauthorized third parties.
Secure Attachments
Formatta Filler permits other files to be attached to e-forms, thus creating a secure container for other types of documents via email or the web.
Non-Repudiation
Formatta’s architecture keeps the form and data together during submission, allowing regulated industries to keep legally binding, non-repudiable copies of the form and data as they were originally presented and submitted.
Authentication
Authentication is necessary when the agency / business must be assured of the identity of the sender.
Formatta Server connects data sources or LDAP's to incorporate common authentication and secure pre-fill capabilities from your existing systems. In addition, Formatta supports X.509 digital certificate technology.
Signing
Signing adds a physical layer of identification since an X.509 digital certificate resides on a user’s machine. Formatta Filler accepts X.509 certificates allowing multiple users to digitally sign and un-sign a single form.
|