Is there any way to confine data files within a directory? I think this is referred to as "confinement" or "type enforcement". I want to allow certain users the ability to access and change the data, but not be able to copy outside a particular folder. This would effectively mean any program that opens a file in the ‘confined’ folder would not be allowed to write to anywhere other than to a file in the same directory. Naturally we would need the ability to override this restriction – e.g. authorised users or password.
The issue is we have confidential information that staff need access to in order to view, change and process through batch programs, but we want to prevent the data being disclosed (accidently or deliberately) via web transfer, email, USB, CD, etc. I’m not able to block all access to the internet or prohibit email attachments, because these are services we need for other business requirements.
The environment is Windows Terminal Services. The type of files would include text, Excel & Access.
Does anyone have any suggestions?