ABBYY FlexiCapture 12 has no encryption mechanisms of its own. Instead, it works with the standard encryption technologies offered by well-known operating system and database vendors.
Database encryption
ABBYY FlexiCapture 12 supports Transparent Data Encryption (TDE), a technology for encrypting databases and protection of keys. Data are encrypted at the server level, and backups cannot be decrypted without a valid key.
Detailed information about how to encrypt data using SQL and Oracle is available on the Microsoft and Oracle websites.
File and temporary folder encryption
ABBYY FlexiCapture 12 supports Windows Encryption File System (EFS), a file encryption technology offered by Microsoft. EFS is used for encrypting files and folders on servers and client computers. It protects confidential information contained in files and folders by generating a unique key that uses a combination of server and user credentials.
For instructions on enabling EFS, see file encryption in the Microsoft documentation.
EFS in ABBYY FlexiCapture 12 covers four sets of folders. Each one is encrypted under a different account.
Access requirements for the export and import folders
The Processing Station needs read access to the import folder files. It also needs write permission on the export folder, so it can create files there.
To encrypt the import folder, give the user running the Processing Station access permissions to those files.
To encrypt files on their way to the export folder, the Processing Station must use the key of the user running it. That user can then decrypt the files later.
Each file in an encrypted folder is encrypted separately per user. Add files to the import folder under the account that runs the Processing Station.
To give other users access to encrypted files, use the Cipher.exe command-line tool.